683acc7 * Tue Jul 14 2015 Lukas Vrabec <lvrabec@redhat.com> 3.13.1-128.7

Authored and Committed by lvrabec 8 years ago
    * Tue Jul 14 2015 Lukas Vrabec <lvrabec@redhat.com> 3.13.1-128.7
    - Add samba_unconfined_script_exec_t to samba_admin header.
    - Add jabberd_lock_t label to jabberd_admin header.
    - Add rpm_var_run_t label to rpm_admin header.
    - Make all interfaces related to openshift_cache_t as deprecated.
    - Remove non exits nfsd_ro_t label.
    - Label /usr/afs/ as afs_files_t Allow afs_bosserver_t create afs_config_t and afs_dbdir_t dirs under afs_files_t Allow afs_bosserver_t read kerberos config
    - Fix *_admin intefaces where body is not consistent with header.
    - Allow networkmanager read rfcomm port.
    - Fix nova_domain_template interface, Fix typo bugs in nova policy
    - Create nova sublabels.
    - Merge all nova_* labels under one nova_t.
    - Add cobbler_var_lib_t to "/var/lib/tftpboot/boot(/.*)?"
    - Allow dnssec_trigger_t relabelfrom dnssec_trigger_var_run_t files.
    - Fix typo in nova policy
    - Allow nova_t to bind on geneve tcp port, and all udp ports
    - Fix label openstack-nova-metadata-api binary file
    - Label swift-container-reconciler binary as swift_t.
    - Allow glusterd to execute showmount in the showmount domain.
    - Allow NetworkManager_t send signull to dnssec_trigger_t.
    - Add support for openstack-nova-* packages.
    - Allow audisp-remote searching devpts.
    - Label 6080 tcp port as geneve
    
        
file modified
+26 -20
file modified
+269 -407
file modified
+25 -1