0a14f8 * Mon Feb 12 2024 Zdenek Pytela <zpytela@redhat.com> - 40.13-1

Authored and Committed by Zdenek Pytela 9 months ago
    * Mon Feb 12 2024 Zdenek Pytela <zpytela@redhat.com> - 40.13-1
    - Only allow confined user domains to login locally without unconfined_login
    - Add userdom_spec_domtrans_confined_admin_users interface
    - Only allow admindomain to execute shell via ssh with ssh_sysadm_login
    - Add userdom_spec_domtrans_admin_users interface
    - Move ssh dyntrans to unconfined inside unconfined_login tunable policy
    - Update ssh_role_template() for user ssh-agent type
    - Allow init to inherit system DBus file descriptors
    - Allow init to inherit fds from syslogd
    - Allow any domain to inherit fds from rpm-ostree
    - Update afterburn policy
    - Allow init_t nnp domain transition to abrtd_t
    
        
file modified
+0 -1
file modified
+15 -2
file modified
+2 -3
file added
+80