diff --git a/.gitignore b/.gitignore index 95a8a30..4191a5a 100644 --- a/.gitignore +++ b/.gitignore @@ -304,3 +304,5 @@ serefpolicy* /selinux-policy-contrib-96516df.tar.gz /selinux-policy-d3879ff.tar.gz /selinux-policy-contrib-77702b6.tar.gz +/selinux-policy-contrib-0ba1eea.tar.gz +/selinux-policy-0986607.tar.gz diff --git a/selinux-policy.spec b/selinux-policy.spec index 31ece6a..ec01d14 100644 --- a/selinux-policy.spec +++ b/selinux-policy.spec @@ -1,11 +1,11 @@ # github repo with selinux-policy base sources %global git0 https://github.com/fedora-selinux/selinux-policy -%global commit0 d3879ff6b068edeb991ae699951790e1cb364147 +%global commit0 09866077249068744d567bdcdf01fc85c89c32ae %global shortcommit0 %(c=%{commit0}; echo ${c:0:7}) # github repo with selinux-policy contrib sources %global git1 https://github.com/fedora-selinux/selinux-policy-contrib -%global commit1 77702b60237ff5550c3c14c4132ba7d5c6fd7bae +%global commit1 0ba1eeafdeb4e9cbaa3c5c58529ab04a3e7cef52 %global shortcommit1 %(c=%{commit1}; echo ${c:0:7}) %define distro redhat @@ -29,7 +29,7 @@ Summary: SELinux policy configuration Name: selinux-policy Version: 3.14.1 -Release: 39%{?dist} +Release: 40%{?dist} License: GPLv2+ Group: System Environment/Base Source: %{git0}/archive/%{commit0}/%{name}-%{shortcommit0}.tar.gz @@ -718,6 +718,22 @@ exit 0 %endif %changelog +* Fri Aug 10 2018 Lukas Vrabec - 3.14.1-40 +- Fix issue with aliases in apache interface file +- Add same context for symlink as binary +- Allow boltd_t to send logs to journal +- Allow colord_use_nfs to allow colord also mmap nfs_t files +- Allow mysqld_safe_t do execute itself +- Allow smbd_t domain to chat via dbus with avahi daemon +- cupsd_t domain will create /etc/cupsd/ppd as cupsd_etc_rw_t +- Update screen_role_template to allow caller domain to have screen_exec_t as entrypoint do new domain +- Add alias httpd__script_t to _script_t to make sepolicy generate working +- Allow gpg_t domain to mmap gpg_agent_tmp_t files +- label /var/lib/pgsql/data/log as postgresql_log_t +- Allow sysadm_t domain to accept socket +- Allow systemd to manage passwd_file_t +- Allow sshd_t domain to mmap user_tmp_t files + * Tue Aug 07 2018 Lukas Vrabec - 3.14.1-39 - Rebuild with support for boltd diff --git a/sources b/sources index bd49ef5..09ec5dc 100644 --- a/sources +++ b/sources @@ -1,3 +1,3 @@ -SHA512 (selinux-policy-d3879ff.tar.gz) = 4b4fc8a907f2f3721bbf0967251183dd7ff5d38e14e8f9c8cb6f2d1332c1222c117f233ab7d6812b8b1ff047f143e185def275023aea601c8acbf779b220b895 -SHA512 (selinux-policy-contrib-77702b6.tar.gz) = 20def4b46c9ec36c13793c557d4434135aa32f786d2675bc274de835c554875597488efad2a5a047ec1868d213131e5f7ccde725b82b7cbf6d6224ec8ede9246 -SHA512 (container-selinux.tgz) = d1db426e0d3515beee019c4874fe28e02c776ab9810f19de7e9a5e53bab427bcd538576d746d819cd738a842db1eafb06cad60c5afbf5b12b2c53010341516b4 +SHA512 (selinux-policy-contrib-0ba1eea.tar.gz) = 3b70bd20a602c292e4d6eb9d44ae31d8a5bece1fb66fa6325f9bd4ce86aa0b15458ec07423cfc63ae0f7b17073dd177d452375d5c43012ad68fa32b8f5c27b5c +SHA512 (selinux-policy-0986607.tar.gz) = 71555621d788fb1d79fd70b05772048d7c8995693b0d8d12b056262ec06defb72002db7318d8fb2232e1de25c7f3de2183bdc95781fe7bd4d44048ea5df633a9 +SHA512 (container-selinux.tgz) = 1e084f3df917b68bb4647fb2a954b262c43370b7456582d6f00f9ba2be1eeb1719aa7b22799382638062388d6b3c26b34d85d2f02c48bbba39d15a5fe051c3fc