From e7bae02f22a872e2a41e2a9b50e27041fc7b6422 Mon Sep 17 00:00:00 2001 From: Lukas Vrabec Date: Jan 19 2018 11:48:25 +0000 Subject: * Fri Jan 19 2018 Lukas Vrabec - 3.14.1-3 - Merge pull request #45 from jlebon/pr/rot-sd-dbus-rawhide - Allow virt_domains to acces infiniband pkeys. - Allow systemd to relabelfrom tmpfs_t link files in /var/run/systemd/units/ BZ(1535180) - Label /usr/libexec/ipsec/addconn as ipsec_exec_t to run this script as ipsec_t instead of init_t - Allow audisp_remote_t domain write to files on all levels --- diff --git a/.gitignore b/.gitignore index c26a702..91fd92e 100644 --- a/.gitignore +++ b/.gitignore @@ -239,3 +239,5 @@ serefpolicy* /selinux-policy-f6aa4d6.tar.gz /selinux-policy-cc4a892.tar.gz /selinux-policy-contrib-68a780b.tar.gz +/selinux-policy-0087f3e.tar.gz +/selinux-policy-contrib-93c9a53.tar.gz diff --git a/selinux-policy.spec b/selinux-policy.spec index d4fa8d4..c6d2cd9 100644 --- a/selinux-policy.spec +++ b/selinux-policy.spec @@ -1,11 +1,11 @@ # github repo with selinux-policy base sources %global git0 https://github.com/fedora-selinux/selinux-policy -%global commit0 cc4a89232bf2da1ca582fcd25003b83274f691d9 +%global commit0 0087f3e102d17ccd709e91873493ad4367a4604e %global shortcommit0 %(c=%{commit0}; echo ${c:0:7}) # github repo with selinux-policy contrib sources %global git1 https://github.com/fedora-selinux/selinux-policy-contrib -%global commit1 68a780b819ad5aa501d9f9a5e043c92628839a06 +%global commit1 93c9a53f55dfee388e5b7e945fc19b4283fe9b3a %global shortcommit1 %(c=%{commit1}; echo ${c:0:7}) %define distro redhat @@ -29,7 +29,7 @@ Summary: SELinux policy configuration Name: selinux-policy Version: 3.14.1 -Release: 2%{?dist} +Release: 3%{?dist} License: GPLv2+ Group: System Environment/Base Source: %{git0}/archive/%{commit0}/%{name}-%{shortcommit0}.tar.gz @@ -719,6 +719,13 @@ exit 0 %endif %changelog +* Fri Jan 19 2018 Lukas Vrabec - 3.14.1-3 +- Merge pull request #45 from jlebon/pr/rot-sd-dbus-rawhide +- Allow virt_domains to acces infiniband pkeys. +- Allow systemd to relabelfrom tmpfs_t link files in /var/run/systemd/units/ BZ(1535180) +- Label /usr/libexec/ipsec/addconn as ipsec_exec_t to run this script as ipsec_t instead of init_t +- Allow audisp_remote_t domain write to files on all levels + * Mon Jan 15 2018 Lukas Vrabec - 3.14.1-2 - Allow aide to mmap usr_t files BZ(1534182) - Allow ypserv_t domain to connect to tcp ports BZ(1534245) diff --git a/sources b/sources index 66d7984..bdb8535 100644 --- a/sources +++ b/sources @@ -1,3 +1,3 @@ -SHA512 (container-selinux.tgz) = e1c2d6757378eb930e65838d3e0a623d037e6734ae708202fe1d715e176131a251a76f190a483292ea9d4dba76df43cab59a66364f4b62b49d41c4bf336ebf14 -SHA512 (selinux-policy-cc4a892.tar.gz) = 7e3876249bc0659739f6edcfe4f4053d503c7f4e09a895463adf838cc722dca9e92af65f62b1e8fed3371408b0326b79eebb232ce7f8868c5c88c31e600a36d6 -SHA512 (selinux-policy-contrib-68a780b.tar.gz) = 17680ca2c6f49ea253e219346017d80b21edc8efaf94cec576073f49ab3ad7902e61ecef97bfcccf180921b14de60cea74443753381efcdd272ecba1bbf0199e +SHA512 (selinux-policy-0087f3e.tar.gz) = fed487abb21eb46d80ddae7686fabdaf107163d0b372d757ea7f60e4d5bb32e635ea46bf81ba602fff46281f230e4a273d3d5abaf7107bf4d5c72a845ca7cec9 +SHA512 (selinux-policy-contrib-93c9a53.tar.gz) = b2e3b29d30e418a766a9a4eeb1833c9bb6ab3e9ad599bfa88694978ca3e32e3ec97e9317095e08b97d92a0705536e423ac6e6f7d726d7150d341bcd9122afc58 +SHA512 (container-selinux.tgz) = 2e026f683942fd5dc73a107fd3a143b843e0af70abe939a2859dfcc28bad2e283094b2a13dafa0f7ae1a0fd65d3fda3cff33fbaade6097c9b6781e25da8ee582