c756c1 - condor_collector uses tcp/9000

Authored and Committed by mgrepl 6 years ago
    - condor_collector uses tcp/9000
    - Label /usr/sbin/virtlockd as virtd_exec_t for now
    - Allow cobbler to execute ldconfig
    - Allow NM to execute ssh
    - Allow mdadm to read /dev/crash
    - Allow antivirus domains to connect to snmp port
    - Make amavisd-snmp working correctly
    - Allow nfsd_t to mounton nfsd_fs_t
    - Add initial snapper policy
    - We still need to have consolekit policy
    - Dontaudit firefox attempting to connect to the xserver_port_t if run within
    - Dontaudit sandbox apps attempting to open user_devpts_t
    - Allow dirsrv to read network state
    - Fix pki_read_tomcat_lib_files
    - Add labeling for /usr/libexec/nm-ssh-service
    - Add label cert_t for /var/lib/ipa/pki-ca/publish
    - Lets label /sys/fs/cgroup as cgroup_t for now, to keep labels consistant
    - Allow nfsd_t to mounton nfsd_fs_t
    - Dontaudit sandbox apps attempting to open user_devpts_t
    - Allow passwd_t to change role to system_r from unconfined_r
    
        
file modified
+120 -67
file modified
+169 -49
file modified
+23 -1