757d64d * Thu Aug 12 2021 Zdenek Pytela <zpytela@redhat.com> - 34.16-1

Authored and Committed by zpytela 2 years ago
    * Thu Aug 12 2021 Zdenek Pytela <zpytela@redhat.com> - 34.16-1
    - Allow systemd-timesyncd watch system dbus pid socket files
    - Allow firewalld drop capabilities
    - Allow rhsmcertd execute gpg
    - Allow lldpad send to kdump over a unix dgram socket
    - Allow systemd-gpt-auto-generator read udev pid files
    - Set default file context for /sys/firmware/efi/efivars
    - Allow tcpdump run as a systemd service
    - Allow nmap create and use netlink generic socket
    - Allow nscd watch system db files in /var/db
    - Allow cockpit_ws_t get attributes of fs_t filesystems
    - Allow sysadm acces to kernel module resources
    - Allow sysadm to read/write scsi files and manage shadow
    - Allow sysadm access to files_unconfined and bind rpc ports
    - Allow sysadm read and view kernel keyrings
    - Allow journal mmap and read var lib files
    - Allow tuned to read rhsmcertd config files
    - Allow bootloader to read tuned etc files
    - Label /usr/bin/qemu-storage-daemon with virtd_exec_t
    
        
file modified
+22 -2
file modified
+2 -2