6a2602 * Mon Jul 22 2024 Zdenek Pytela <zpytela@redhat.com> - 41.10-1

Authored and Committed by Zdenek Pytela 4 months ago
    * Mon Jul 22 2024 Zdenek Pytela <zpytela@redhat.com> - 41.10-1
    - Update afterburn file transition policy
    - Allow systemd_generator read attributes of all filesystems
    - Allow fstab-generator read and write cryptsetup-generator unit file
    - Allow cryptsetup-generator read and write fstab-generator unit file
    - Allow systemd_generator map files in /etc
    - Allow systemd_generator read init's process state
    - Allow coreos-installer-generator read sssd public files
    - Allow coreos-installer-generator work with partitions
    - Label /etc/mdadm.conf.d with mdadm_conf_t
    - Confine coreos generators
    - Label /run/metadata with afterburn_runtime_t
    - Allow afterburn list ssh home directory
    - Label samba certificates with samba_cert_t
    - Label /run/coreos-installer-reboot with coreos_installer_var_run_t
    - Allow virtqemud read virt-dbus process state
    - Allow staff user dbus chat with virt-dbus
    - Allow staff use watch /run/systemd
    - Allow systemd_generator to write kmsg
    
        
file modified
+23 -0
file modified
+3 -6
file modified
+2 -2