2c0e38f * Fri May 17 2019 Lukas Vrabec <lvrabec@redhat.com> - 3.14.3-36

Authored and Committed by lvrabec 4 years ago
    * Fri May 17 2019 Lukas Vrabec <lvrabec@redhat.com> - 3.14.3-36
    - Alow nrpe_t to send signull to sssd domain when nagios_run_sudo boolean is turned on
    - Allow nrpe_t domain to be dbus cliennt
    - Add interface sssd_signull()
    - Label /usr/bin/tshark as wireshark_exec_t
    - Fix typo in dbus_role_template()
    - Allow userdomains to send data over dgram sockets to userdomains dbus services BZ(1710119)
    - Allow userdomains dbus domain to execute dbus broker. BZ(1710113)
    - Allow dovedot_deliver_t setuid/setgid capabilities BZ(1709572)
    - Allow virt domains to access xserver devices BZ(1705685)
    - Allow aide to be executed by systemd with correct (aide_t) domain BZ(1648512)
    - Dontaudit svirt_tcg_t domain to read process state of libvirt BZ(1594598)
    - Allow pcp_pmie_t domain to use fsetid capability BZ(1708082)
    - Allow pcp_pmlogger_t to use setrlimit BZ(1708951)
    - Allow gpsd_t domain to read udev db BZ(1709025)
    - Add sys_ptrace capaiblity for  namespace_init_t domain
    - Allow systemd to execute sa-update in spamd_update_t domain BZ(1705331)
    - Allow rhsmcertd_t domain to read rpm cache files
    - Label /efi same as /boot/efi boot_t BZ(1571962)
    - Allow transition from udev_t to tlp_t BZ(1705246)
    - Remove initrc_exec_t for /usr/sbin/apachectl file
    
        
  • Build completed
    success
    Built as selinux-policy-3.14.3-36.fc30
    4 years ago
file modified
+2 -0
file modified
+25 -3
file modified
+3 -3