diff --git a/.gitignore b/.gitignore
index 944e3a6..6b7da1b 100644
--- a/.gitignore
+++ b/.gitignore
@@ -1,3 +1,3 @@
 SOURCES/container-selinux.tgz
-SOURCES/selinux-policy-19769ed.tar.gz
-SOURCES/selinux-policy-contrib-b9c6eb1.tar.gz
+SOURCES/selinux-policy-8e93320.tar.gz
+SOURCES/selinux-policy-contrib-1ef4c53.tar.gz
diff --git a/.selinux-policy.metadata b/.selinux-policy.metadata
index e384319..1ccd00c 100644
--- a/.selinux-policy.metadata
+++ b/.selinux-policy.metadata
@@ -1,3 +1,3 @@
-1d2b6a93cd175c199f543bbc9897db87aa2ba4d2 SOURCES/container-selinux.tgz
-e9cad03eba1618c8f1dbfbb55e9be2ad72ff34a0 SOURCES/selinux-policy-19769ed.tar.gz
-b26e936f044a896930cfd4e6dad23a5bec7c842a SOURCES/selinux-policy-contrib-b9c6eb1.tar.gz
+bf033b99c53be8019f5a945a1c9cee153b9ef1cc SOURCES/container-selinux.tgz
+d9ea971389217f0f3d9f29aac3034053caec3097 SOURCES/selinux-policy-8e93320.tar.gz
+4edfe8cb63c0c33c8a22d3ecefe2febe221dd170 SOURCES/selinux-policy-contrib-1ef4c53.tar.gz
diff --git a/SPECS/selinux-policy.spec b/SPECS/selinux-policy.spec
index c9dd99c..df6d944 100644
--- a/SPECS/selinux-policy.spec
+++ b/SPECS/selinux-policy.spec
@@ -1,11 +1,11 @@
 # github repo with selinux-policy base sources
 %global git0 https://github.com/fedora-selinux/selinux-policy
-%global commit0 19769ed88ef78eb60160d3047bb8e3d8be24bbab
+%global commit0 8e9332098553984c6c21948019c82aed13bbd572
 %global shortcommit0 %(c=%{commit0}; echo ${c:0:7})
 
 # github repo with selinux-policy contrib sources
 %global git1 https://github.com/fedora-selinux/selinux-policy-contrib
-%global commit1 b9c6eb1ef235cf77bdd1565dd0ab3bcedbd38108
+%global commit1 1ef4c53e1475b95ddfc146a0d0fd5b096c5a1d7b
 %global shortcommit1 %(c=%{commit1}; echo ${c:0:7})
 
 %define distro redhat
@@ -29,7 +29,7 @@
 Summary: SELinux policy configuration
 Name: selinux-policy
 Version: 3.14.3
-Release: 70%{?dist}
+Release: 71%{?dist}
 License: GPLv2+
 Source: %{git0}/archive/%{commit0}/%{name}-%{shortcommit0}.tar.gz
 Source29: %{git1}/archive/%{commit1}/%{name}-contrib-%{shortcommit1}.tar.gz
@@ -715,6 +715,16 @@ exit 0
 %endif
 
 %changelog
+* Tue Jun 15 2021 Zdenek Pytela <zpytela@redhat.com> - 3.14.3-71
+- Allow nmap create and use rdma socket
+Resolves: rhbz#1844530
+- Label /.k5identity file allow read of this file to rpc.gssd
+Resolves: rhbz#1951093
+- Label /var/lib/kdump with kdump_var_lib_t
+Resolves: rhbz#1965985
+- Label /run/libvirt/common with virt_common_var_run_t
+Resolves: rhbz#1966842
+
 * Wed Jun 09 2021 Zdenek Pytela <zpytela@redhat.com> - 3.14.3-70
 - Allow using opencryptoki for ipsec
 Resolves: rhbz#1894132