99f32fe * Fri Oct 04 2019 Lukas Vrabec <lvrabec@redhat.com> - 3.14.3-48

Authored and Committed by lvrabec 4 years ago
    * Fri Oct 04 2019 Lukas Vrabec <lvrabec@redhat.com> - 3.14.3-48
    - Update aide_t domain to allow this tool to analyze also /dev filesystem
    - Add net_broadcast capability to openvswitch_t domain BZ(1716044)
    - Allow exim_t to read mysqld conf files if exim_can_connect_db is enabled. BZ(1756973)
    - Label /var/log/collectd.log as collectd_log_t
    - Allow boltd_t domain to manage sysfs files and dirs BZ(1754360)
    - Add fowner capability to the pcp_pmlogger_t domain BZ(1754767)
    - networkmanager: allow NetworkManager_t to create bluetooth_socket
    - Add new interface udev_getattr_rules_chr_files()
    - Allow systemd(init_t) to load kernel modules
    - Allow xdm_t setpcap capability in user namespace BZ(1756790)
    - Allow xdm_t domain to user netlink_route sockets BZ(1756791)
    - Allow sudo userdomain to run rpm related commands
    - Add sys_admin capability for ipsec_t domain
    - Allow systemd_modules_load_t domain to read systemd pid files
    - Add new interface init_read_pid_files()
    - Allow systemd labeled as init_t domain to manage faillog_t objects
    - Add file context ipsec_var_run_t for /var/run/charon\.dck to ipsec.fc
    
        
  • Build completed
    success
    Built as selinux-policy-3.14.3-48.fc30
    4 years ago
file modified
+2 -0
file modified
+22 -3
file modified
+3 -3