diff --git a/.gitignore b/.gitignore index 629ed8d..815b61d 100644 --- a/.gitignore +++ b/.gitignore @@ -1,3 +1,3 @@ SOURCES/container-selinux.tgz -SOURCES/selinux-policy-a872c0a.tar.gz -SOURCES/selinux-policy-contrib-1bb6b5d.tar.gz +SOURCES/selinux-policy-contrib-9113916.tar.gz +SOURCES/selinux-policy-eda68ed.tar.gz diff --git a/.selinux-policy.metadata b/.selinux-policy.metadata index ce8038e..e85adaa 100644 --- a/.selinux-policy.metadata +++ b/.selinux-policy.metadata @@ -1,3 +1,3 @@ -0672d81ce36ecf0cd3909b5ea73eca95f4e89e1d SOURCES/container-selinux.tgz -aecffa2fc4ba4105d7f71c980700953d126deb54 SOURCES/selinux-policy-a872c0a.tar.gz -ba0dd435f3d48783320fe8d823716e5370396699 SOURCES/selinux-policy-contrib-1bb6b5d.tar.gz +3286c577223504e4e992d5939ac38c16cd886060 SOURCES/container-selinux.tgz +e8f9579c1fa8ee2ababe89014d0051219bd43da0 SOURCES/selinux-policy-contrib-9113916.tar.gz +3674766fdf8b1f1ce0d7ad4fce817984ef13f9fc SOURCES/selinux-policy-eda68ed.tar.gz diff --git a/SPECS/selinux-policy.spec b/SPECS/selinux-policy.spec index 4b55ec4..66fb595 100644 --- a/SPECS/selinux-policy.spec +++ b/SPECS/selinux-policy.spec @@ -1,11 +1,11 @@ # github repo with selinux-policy base sources %global git0 https://github.com/fedora-selinux/selinux-policy -%global commit0 a872c0a80e32612bd2fb406f63d1cfc61355c9d3 +%global commit0 eda68eda5ea48acdb448057f5ba995b60a3b919b %global shortcommit0 %(c=%{commit0}; echo ${c:0:7}) # github repo with selinux-policy contrib sources %global git1 https://github.com/fedora-selinux/selinux-policy-contrib -%global commit1 1bb6b5d8d840a2f4619d521faca8d5e7195792f2 +%global commit1 91139161ec640e9e95484eec1ad530ac05881e28 %global shortcommit1 %(c=%{commit1}; echo ${c:0:7}) %define distro redhat @@ -29,7 +29,7 @@ Summary: SELinux policy configuration Name: selinux-policy Version: 3.14.3 -Release: 59%{?dist} +Release: 60%{?dist} License: GPLv2+ Source: %{git0}/archive/%{commit0}/%{name}-%{shortcommit0}.tar.gz Source29: %{git1}/archive/%{commit1}/%{name}-contrib-%{shortcommit1}.tar.gz @@ -715,6 +715,22 @@ exit 0 %endif %changelog +* Wed Jan 13 2021 Zdenek Pytela - 3.14.3-60 +- Allow wireshark create and use rdma socket +Resolves: rhbz#1844370 +- Allow to use nnp_transition in pulseaudio_role +Resolves: rhbz#1854471 +- Allow certmonger fsetid capability +Resolves: rhbz#1873211 +- Add rsync_sys_admin tunable to allow rsync sys_admin capability +Resolves: rhbz#1889673 +- Allow sysadm read and write /dev/rfkill +Resolves: rhbz#1831630 +- Allow staff_u run pam_console_apply +Resolves: rhbz#1817690 +- Label /dev/vhost-vdpa-[0-9]+ as vhost_device_t +Resolves: rhbz#1907485 + * Thu Dec 17 2020 Zdenek Pytela - 3.14.3-59 - Add cron_dbus_chat_system_job() interface Resolves: rhbz#1883906