From b79416f42db174b04ff495dabf67f7a9bbdc50fe Mon Sep 17 00:00:00 2001 From: Miroslav Grepl Date: Jun 16 2010 10:32:08 +0000 Subject: - Allow sysadm to run ncftool --- diff --git a/policy-F13.patch b/policy-F13.patch index a889915..58292fd 100644 --- a/policy-F13.patch +++ b/policy-F13.patch @@ -10760,7 +10760,7 @@ diff --exclude-from=exclude -N -u -r nsaserefpolicy/policy/modules/roles/staff.t +') diff --exclude-from=exclude -N -u -r nsaserefpolicy/policy/modules/roles/sysadm.te serefpolicy-3.7.19/policy/modules/roles/sysadm.te --- nsaserefpolicy/policy/modules/roles/sysadm.te 2010-04-13 20:44:37.000000000 +0200 -+++ serefpolicy-3.7.19/policy/modules/roles/sysadm.te 2010-06-15 18:40:03.060767978 +0200 ++++ serefpolicy-3.7.19/policy/modules/roles/sysadm.te 2010-06-16 12:29:00.917864530 +0200 @@ -28,17 +28,29 @@ corecmd_exec_shell(sysadm_t) @@ -10911,7 +10911,7 @@ diff --exclude-from=exclude -N -u -r nsaserefpolicy/policy/modules/roles/sysadm. ') optional_policy(` -+ iptables_run(sysadm_t, sysadm_r) ++ ncftool_run(sysadm_t, sysadm_r) +') + +optional_policy(` diff --git a/selinux-policy.spec b/selinux-policy.spec index b133944..3a0da96 100644 --- a/selinux-policy.spec +++ b/selinux-policy.spec @@ -20,7 +20,7 @@ Summary: SELinux policy configuration Name: selinux-policy Version: 3.7.19 -Release: 29%{?dist} +Release: 30%{?dist} License: GPLv2+ Group: System Environment/Base Source: serefpolicy-%{version}.tgz @@ -469,6 +469,9 @@ exit 0 %endif %changelog +* Wed Jun 16 2010 Miroslav Grepl 3.7.19-30 +- Allow sysadm to run ncftool + * Tue Jun 15 2010 Miroslav Grepl 3.7.19-29 - Allow abrt sigkill - Add ncftool policy