7d08f6b - Make systemd_hostnamed_t as unconfined domain in F18

Authored and Committed by mgrepl 11 years ago
    - Make systemd_hostnamed_t as unconfined domain in F18
    - Call rhcs_manage_cluster_pid_files() instead of rgmanger_manage_pid_files() i
    - Allow sshd to stream connect to an lxc domain
    - Allow nsswitch_domains to read /etc/hostname
    - xdm_t will try to list any directory mounted, we should just dontaudit them
    - Fix systemd_filetrans_named_content() interface
    - Allow postgresql to manage rgmanager pid files
    - Allow postgresql to read ccs data
    - Allow systemd_domain to send dbus messages to policykit
    - Add labels for /etc/hostname and /etc/machine-info and allow systemd-hostname
    - All systemd domains that create content are reading the file_context file and
    - Systemd domains need to search through init_var_run_t
    - Allow sshd to communicate with libvirt to set containers labels
    - Add labeling for /var/run/hplip
    - Allow iscsid to read /dev/urandom
    - Allow sshd to log a user directly into a container
    - Allow screen domains to configure tty and setup sock_file in ~/.screen direct
    - ALlow setroubleshoot to read default_context_t, needed to backport to F18
    - Label /etc/owncloud as being an apache writable directory
    - Add interface to manage pid files
    - Allow NetworkManger_t to read /etc/hostname
    - Allow virtual machines to setrlimit and send itself signals.
    - Dontaudit chrome_sandbox_nacl_t using user terminals
    - Allow gluster to manage all directories as well as files
    
        
file modified
+128 -44
file modified
+128 -50
file modified
+27 -1