37bb67 * Tue Feb 12 2019 Lukas Vrabec <lvrabec@redhat.com> - 3.14.3-21

Authored and Committed by Lukas Vrabec 5 years ago
    * Tue Feb 12 2019 Lukas Vrabec <lvrabec@redhat.com> - 3.14.3-21
    - Allow glusterd_t to write to automount unnamed pipe Resolves: rhbz#1674243
    - Allow ddclient_t to setcap Resolves: rhbz#1674298
    - Add dac_override capability to vpnc_t domain
    - Add dac_override capability to spamd_t domain
    - Allow ibacm_t domain to read system state and label all ibacm sockets and symlinks as ibacm_var_run_t in /var/run
    - Allow read network state of system for processes labeled as ibacm_t
    - Allow ibacm_t domain to send dgram sockets to kernel processes
    - Allow dovecot_t to connect to MySQL UNIX socket
    - Fix CI for use on forks
    - Fix typo bug in sensord policy
    - Update ibacm_t policy after testing lastest version of this component
    - Allow sensord_t domain to mmap own log files
    - Allow virt_doamin to read/write dev device
    - Add dac_override capability for ipa_helper_t
    - Update policy with multiple allow rules to make working installing VM in MLS policy
    - Allow syslogd_t domain to send null signal to all domains on system Resolves: rhbz#1673847 - Merge branch 'rawhide' of github.com:fedora-selinux/selinux-policy into rawhide - Allow systemd-logind daemon to remove shared memory during logout Resolves: rhbz#1674172 - Always label /home symlinks as home_root_t - Update mount_read_pid_files macro to allow also list mount_var_run_t dirs - Fix typo bug in userdomain SELinux policy - Merge branch 'rawhide' of github.com:fedora-selinux/selinux-policy into rawhide - Allow user domains to stop systemd user sessions during logout process - Fix CI for use on forks - Label /dev/sev char device as sev_device_t - Add s_manage_fusefs_named_sockets interface - Allow systemd-journald to receive messages including a memfd
    
        
file modified
+2 -0
file modified
+21 -3
file modified
+3 -3