954aa1 * Tue Feb 12 2019 Lukas Vrabec <lvrabec@redhat.com> - 3.14.2-49

Authored and Committed by lvrabec 9 months ago
    * Tue Feb 12 2019 Lukas Vrabec <lvrabec@redhat.com> - 3.14.2-49
    - Allow glusterd_t to write to automount unnamed pipe Resolves: rhbz#1674243
    - Allow ddclient_t to setcap Resolves: rhbz#1674298
    - Add dac_override capability to vpnc_t domain
    - Add dac_override capability to spamd_t domain
    - Allow ibacm_t domain to read system state and label all ibacm sockets and symlinks as ibacm_var_run_t in /var/run
    - Allow ibacm_t domain to send dgram sockets to kernel processes
    - Allow dovecot_t to connect to MySQL UNIX socket
    - Fix typo bug in sensord policy
    - Update ibacm_t policy after testing lastest version of this component
    - Allow sensord_t domain to mmap own log files
    - Update policy with multiple allow rules to make working installing VM in MLS policy
    - Allow all user domains to read realmd_var_lib_t files and dirs to check if IPA is configured on the system
    - Allow syslogd_t domain to send null signal to all domains on system Resolves: rhbz#1673847
    - Allow systemd-logind daemon to remove shared memory during logout Resolves: rhbz#1674172
    - Fix typos in userdomain policy
    - Update mount_read_pid_files macro to allow also list mount_var_run_t dirs
    - Fix typo bug in userdomain SELinux policy
    - Allow user domains to stop systemd user sessions during logout process
    - Add s_manage_fusefs_named_sockets interface
    - Allow systemd-journald to receive messages including a memfd
  • Build completed
    Built as selinux-policy-3.14.2-49.fc29
    9 months ago
file modified
+2 -0
file modified
+25 -3
file modified
+3 -3