b3c781 * Wed Jan 12 2022 Zdenek Pytela <zpytela@redhat.com> - 35.9-1

Authored and Committed by Zdenek Pytela 2 years ago
    * Wed Jan 12 2022 Zdenek Pytela <zpytela@redhat.com> - 35.9-1
    - Allow sshd read filesystem sysctl files
    - Revert "Allow sshd read sysctl files"
    - Allow tlp read its systemd unit
    - Allow gssproxy access to various system files.
    - Allow gssproxy read, write, and map ica tmpfs files
    - Allow gssproxy read and write z90crypt device
    - Allow sssd_kcm read and write z90crypt device
    - Allow smbcontrol read the network state information
    - Allow virt_domain map vhost devices
    - Allow fcoemon request the kernel to load a module
    - Allow sshd read sysctl files
    - Ensure that `/run/systemd/*` are properly labeled
    - Allow admin userdomains use socketpair()
    - Change /run/user/[0-9]+ to /run/user/%{USERID} for proper labeling
    - Allow lldpd connect to snmpd with a unix domain stream socket
    - Dontaudit pkcsslotd sys_admin capability
    
        
file modified
+20 -2
file modified
+2 -2