diff --git a/www/html/status.html b/www/html/status.html index 2068aa9..2bc8d48 100644 --- a/www/html/status.html +++ b/www/html/status.html @@ -162,12 +162,11 @@

Policy Conversion

This phase of reference policy development involves the conversion of policies -from the example strict policy. We have been using the Fedora strict policy -version 1.23.2-1 as a baseline for policy conversion, which is available -on the download page. Then after these policies -are added to reference policy, it can be updated to be in line with current -versions of the NSA example policy. For those who wish to contribute, here -is a listing of modules which need to be converted: +from the example strict policy. We are updating the baseline to NSA CVS. +Modules that are in the targeted policy are the first priority, and modules +in the strict policy, but not targeted are second priority. +For those who wish to contribute, here is a listing of modules which need to be +converted:

@@ -180,329 +179,616 @@ is a listing of modules which need to be converted: - + - + - + + + + + + - + - + + + + + + + + + + + + + + + + - + + + + + + + - + - + - + + + + + + - + - + + + + + + + + + + + + + + + + - + - + + + + + + + + + + + + + + + + + + + + + - + + + + + + + + + + + - + + + + + + + + + + + - + - + + + + + + - + - + - + - + + + + + + - + - + + + + + + - + - + + + + + + - + + + + + + - + + + + + + - + - + + + + + + - + + + + + + - + + + + + + - + - + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + - + - + + + + + + + + + + + - + - + - + - + - + + + + + + + + + + + + + + + + - + - + + + + + + + + + + + + + + + + - + + + + + + + + + + + - + + + + + + - + - + - - + + + + + + + - + - + + + + + + - + + + + + + - + - + - + - + + + + + + + + + + + + + + + + - - + + - + + + + + + + + + + + - + - + - + + + + + + - - + + + + + + - + - + - + - + - + + + + + + + + + + + + + + + + +
Assigned To
amandaamanda *+ amanda.te amanda.fc
anacondaanaconda *+ anaconda.te anaconda.fc
apacheamavisamavis.te amavis.fc
apache *+ apache.te apache.fc apache_macros.te Tresys
arpwatcharpwatch *+ arpwatch.te arpwatch.fc
automountasteriskasterisk.te asterisk.fc
audio-entropyaudio-entropyd.te audio-entropyd.fc
authbindauthbind.te authbind.fc
automount + automount.te automount.fc
bluetooth
backupbackup.te backup.fc
bluetooth *+ bluetooth.te bluetooth.fc
bonobobonobo + bonobo.te bonobo.fc bonobo_macros.te
browserbrowser + mozilla.te mozilla.fc mozilla_macros.te
cdrecordcalamariscalabaris.te calamaris.fc
cdrecord + cdrecord.te cdrecord.fc cdrecord_macros.te
certwatchcertwatch + certwatch.te certwatch.fc
cvscipeciped.te ciped.fc
clamavclamav.te clamav.fc
couriercourier.te courier.fc
cvs *+ cvs.te cvs.fc
cyruscyrus *+ cyrus.te cyrus.fc
ddcprobedaemontoolsdaemontools.te daemontools.fc daemontools_macros.teTresys
dantedante.te dante.fc
dccdcc.te dcc.fc
ddclientddclient.te ddclient.fc
ddcprobe + ddcprobe.te ddcprobe.fc
dmidecodedistccdistcc.te distcc.fcTresys
djbdnsdjbdns.te djbdns.fc
dmidecode *+ dmidecode.te dmidecode.fc
dovecotdnsmasqdnsmasq.te dnsmasq.fc
dpkgdpkg.te dpkg.fc
dovecot *+ dovecot.te dovecot.fc
etherealethereal + ethereal.te ethereal.fc ethereal_macros.te
fetchmailevolution +evolution.te evolution.fc evolution_macros.te
fetchmail + fetchmail.te fetchmail.fc
fingerfinger *+ fingerd.te fingerd.fc fingerd_macros.te
fontconfigfontconfig + fontconfig.te fontconfig.fc
ftpftp *+ ftpd.te ftpd.fc
gconfgatekeepergatekeeper.te gatekeeper.fc
gconf + gconf.te gconf.fc gconf_macros.te
gamesgames + games.te games.fc games_domain.te
gnomegiftgift.te gift.fc gift_macros.te
gnome + gnome.te gnome.fc gnome_macros.te gnome_vfs.te gnome_vfs.fc gnome_vfs_macros.te gnome-pty-helper.te gnome-pty-helper.fc gph_macros.te
iceauthiceauth + iceauth.te iceauth.fc iceauth_macros ice_macros.te(?)
ircimazesrvimazesrv.te imazesrv.fc
irc + irc.te irc.fc irc_macros.te
irqbalanceircdircd.te ircd.fc
irqbalance + irqbalance.te irqbalance.fc
javajabberjabberd.te jabberd.fc
java + java.te java.fc java_macros.te
kudzukudzu *+ kudzu.te kudzu.fc
lockdevlcdlcd.te lcd.fc
lockdev + lockdev.te lockdev.fc lockdev_macros.te
mailmanlrrlrrd.te lrrd.fc
mailman *+ mailman.te mailman.fc
mplayermonopmonopd.te monopd.fc
mplayer + mplayer.te mplayer.fc mplayer_macros.te
mrtgmrtg + mrtg.te mrtg.fc
openctnagiosnagios.te nagios.fc nrpe.te nrpe.fc
nessusnessusd.te nessusd.fc
networkmanager *+NetworkManager.te NetworkManager.fc
nsdnsd.te nsd.fc
nxnx_server.te nx_server.fc
oav-updateoav-update.te oav-update.fc
opencaopenca-ca.te openca-ca.fc
openct + openct.te openct.fc
orbitorbit + orbit.te orbit.fc orbit_macros.te
postfixperditionperdition.te perdition.fc
portslaveportslave.te portslave.fc
postfix + postfix.te postfix.fc
pppppp *+ pppd.te pppd.fc
prelinkprelink + prelink.te prelink.fc
printprint *+ cups.te cups.fc lpd.te lpd.fc lpr_macros.te Tresys
procmailprocmail + procmail.te procmail.fc
radiuspublicfilepublicfile.te publicfile.fc
pxepxe.te pxe.fc
pyzorpyzor.te pyzor.fc
radius *+ radius.te radius.fc
radvdradvd *+ radvd.te radvd.fc
rloginrazorrazor.te razor.fc
rdiscrdisc.te rdisc.fc
resmgrresmgrd.te resmgrd.fc
rlogin *+ rlogind.te rlogind.fc login_macros.te Tresys
saslrpc *+rpcd.te rpcd.fc
rsshrssh.te rssh.fc
sasl *+ saslauthd.te saslauthd.fc
screenscannerdaemonscannerdaemon.te scannerdaemon.fc
screen + screen.te screen.fc screen_macros.te
slocateslocate + slocate.te slocate.fc slocate_macros.te
slrnpullslrnpull + slrnpull.te slrnpull.fc
soundalsa.te alsa.fc sound.te sound.fcsnortsnort.te snort.fc
sound +alsa.te alsa.fc sound.te sound.fc sound-server.te sound-server.fc
spamassassinspamassassin + spamassassin.te spamc.te spamd.te spamassassin.fc spamc.fc spamd.fc spamassassin_macros.te
stunnelspeedtouchspeedmgmt.te speedmgmt.fc
stunnel *+ stunnel.te stunnel.fc
sysstatsxidsxid.te sxid.fc
sysstat + sysstat.te sysstat.fc
telnettelnet *+ telnetd.te telnetd.fc
thunderbirdthunderbird + thunderbird.te thunderbird.fc thunderbird_macros.te mail_client_macros.te
timiditytimidity + timidity.te timidity.fc
tvtimetinydnstinydns.te tinydns.fc
transproxytransproxy.te transproxy.fc
tripwiretripwire.te tripwire.fc
tvtime + tvtime.te tvtime.fc tvtime_macros.te
umluml.te uml.fc uml_macros.teucspi-tcpucspi-tcp.te ucspi-tcp.fc
userhelperuml +uml.te uml.fc uml_macros.te uml_net.te uml_net.fc
uptimeduptimed.te uptimed.fc
userhelper + userhelper.te userhelper.fc userhelper_macros.te
usernetctlusernetctl + usernetctl.te usernetctl.fc
uucpuucp *+ uucpd.te uucpd.fc
vmwareuwimapuwimapd.te uwimapd.fc
vmware + vmware.te vmware.fc vmware_macros.te
vpnvpnc.te vpnc.fcvpn +vpnc.te vpnc.fc openvpn.te openvpn.fc/td> +
watchdogwatchdog.te watchdog.fc
webalizerwebalizer *+ webalizer.te webalizer.fc
winbindwinbind *+ winbind.te winbind.fc
xdmxdm *+ xdm.te xdm.fc xdm_macros.te
xfsxfs + xfs.te xfs.fc
xserverxprintxprint.te xprint.fc
xserver + xserver.te xserver.fc xserver_macros.te xauth.te xauth.fc xauth_macros.te
yamyam.te yam.fc
(*) Modules in the Fedora targeted policy
(+) Modules in the Fedora strict policy

Testing Status