Changelog for
selinux-policy-strict-1.19.10-2.noarch.rpm :
Thu Dec 2 23:00:00 2004 Dan Walsh
1.19-10-2
- Bump for FC3
Thu Dec 2 23:00:00 2004 Dan Walsh 1.19-10-1
- Update to latest from NSA
- Fix tty devices from IBM Platforms
Thu Dec 2 23:00:00 2004 Dan Walsh 1.19-9-1
- Update to add execmem and execmod
Wed Dec 1 23:00:00 2004 Dan Walsh 1.19-8-4
- Allow boolloader to can_exec_any
Wed Dec 1 23:00:00 2004 Dan Walsh 1.19-8-3
- Add ipx support
- Fix portmap
Tue Nov 30 23:00:00 2004 Dan Walsh 1.19-8-2
- Make htdig work
Tue Nov 30 23:00:00 2004 Dan Walsh 1.19-8-1
- Cleanup several network_client calls
- Update from upstream
Tue Nov 30 23:00:00 2004 Dan Walsh 1.19-7-2
- Remove root_dir_type, fix hotplug
Tue Nov 30 23:00:00 2004 Dan Walsh 1.19-7-1
- Update to Upstream
Mon Nov 29 23:00:00 2004 Dan Walsh 1.19-6-1
- Update to Upstream
Wed Nov 24 23:00:00 2004 Dan Walsh 1.19-5-1
- Update to Upstream
- Convert to new network_macros.te
Tue Nov 23 23:00:00 2004 Dan Walsh 1.19-4-4
- Add proc_net for unconfined_t
Mon Nov 22 23:00:00 2004 Dan Walsh 1.19-4-3
- Fix location of selinuxenabled
Mon Nov 22 23:00:00 2004 Dan Walsh 1.19-4-2
- Add some rules to allow httpd_sys_content_t to access to httpdcontent if httpd_unified is set
o
* Sun Nov 21 2004 Dan Walsh 1.19-4-1
- Upgrade to match upstream
- Require policycoreutils
Fri Nov 19 23:00:00 2004 Dan Walsh 1.19-3-1
- Upgrade to upstream
- Add fixes for postgres and apache
Thu Nov 18 23:00:00 2004 Dan Walsh 1.19-2-1
- Upgrade to upstream
Wed Nov 17 23:00:00 2004 Dan Walsh 1.19-1-14
Add back in zebra
Wed Nov 17 23:00:00 2004 Dan Walsh 1.19-1-13
- don\'t transition from sysadm_t (unconfined_t) to system_mail_t when
executing sendmail in targeted policy
Wed Nov 17 23:00:00 2004 Dan Walsh 1.19-1-12
- Fixes for crond fifo file, httpd_unified, and cups
Tue Nov 16 23:00:00 2004 Dan Walsh 1.19-1-11
- Fixed for /dev/pmu and printconf
Tue Nov 16 23:00:00 2004 Dan Walsh 1.19-1-10
- Add boolean to allow httpd to communicate with tty
Sat Nov 13 23:00:00 2004 Dan Walsh 1.19-1-9
- Minor fixes
- Add postgresql.te to targeted
Fri Nov 12 23:00:00 2004 Dan Walsh 1.19-1-8
- tighten security on squirrelmail
Fri Nov 12 23:00:00 2004 Dan Walsh 1.19-1-7
- Fixes to get squirrelmail working in targeted policy
Thu Nov 11 23:00:00 2004 Dan Walsh 1.19-1-6
- Remove unwanted te files to make policy smaller
Thu Nov 11 23:00:00 2004 Dan Walsh 1.19-1-5
- Add allow_kerberos for targeted policy and fix ntpd for targetd
Wed Nov 10 23:00:00 2004 Dan Walsh 1.19-1-4
- Fix mysql.te
Wed Nov 10 23:00:00 2004 Dan Walsh 1.19-1-3
- Cleanup of Dovecot and squirrelmail
Wed Nov 10 23:00:00 2004 Dan Walsh 1.19-1-2
- Allow httpd to read bin_t lnk_files
Tue Nov 9 23:00:00 2004 Dan Walsh 1.19-1-1
- Update from NSA
Mon Nov 8 23:00:00 2004 Dan Walsh 1.18.2-4
- Add /dev/pmu and privoxy fixes
Mon Nov 8 23:00:00 2004 Dan Walsh 1.18.2-3
- Complete lockdev and test with mincom
Sat Nov 6 23:00:00 2004 Dan Walsh 1.18.2-2
- Add preliminary lockdev defs
Sat Nov 6 23:00:00 2004 Dan Walsh 1.18.2-1
- Allow gpg to read/write user homedir files
Sat Nov 6 23:00:00 2004 Dan Walsh 1.18.2-1
- Merge with upstream
- Allow users to read xdm pid files
- Allow sysadm_t to communicate with xdm fifo file.
Thu Nov 4 23:00:00 2004 Dan Walsh 1.18.1-3
- ooffice is crashing because it needs to getattr on a dri device.
Wed Nov 3 23:00:00 2004 Dan Walsh 1.18.1-2
- Eliminate single user domain
Tue Nov 2 23:00:00 2004 Dan Walsh 1.18.1-1
- Update from NSA
Tue Nov 2 23:00:00 2004 Dan Walsh 1.17.37-2
- Many fixes for tighter can_network policy and nscd_client_domain
Mon Nov 1 23:00:00 2004 Dan Walsh 1.17.37-1
- Merge with upstream
Sat Oct 30 00:00:00 2004 Dan Walsh 1.17.36-3
- Eliminate ability to read tmp_t lnk_files
Fri Oct 29 00:00:00 2004 Dan Walsh 1.17.36-2
- Add ability to specify port to can_tcp_network
Thu Oct 28 00:00:00 2004 Dan Walsh 1.17.36-1
- Break out can_network in to can_tcp_network and can_udp_network
- Add lots of nscd_client_domain
Wed Oct 27 00:00:00 2004 Dan Walsh 1.17.35-2
- Add russells patch for ntpdate
- Add Colins batch for dbus_macro
Wed Oct 27 00:00:00 2004 Dan Walsh 1.17.35-1
- New fixes for fowner in setfiles and restorecon
Tue Oct 26 00:00:00 2004 Dan Walsh 1.17.34-2
- Fix spec file
Tue Oct 26 00:00:00 2004 Dan Walsh 1.17.34-1
- Update to latest from NSA
Thu Oct 21 00:00:00 2004 Dan Walsh 1.17.33-2
- Add some squid fixes and add disable_games boolean
Wed Oct 20 00:00:00 2004 Dan Walsh 1.17.33-1
- Update to latest from NSA
- Add apache unified patch
Tue Oct 19 00:00:00 2004 Dan Walsh 1.17.32-2
- fixes for nscd
- Fixes for /var/run file contexts
Thu Oct 14 00:00:00 2004 Dan Walsh 1.17.32-1
- Latest from NSA
Thu Oct 14 00:00:00 2004 Dan Walsh 1.17.31-2
- Begin fixing bugs when turning off unlimitedinitrc
Thu Oct 14 00:00:00 2004 Dan Walsh 1.17.31-1
- Small fixes to cleanup reboot
- FTP RLOGIN RSH
- Update with NSA
Wed Oct 13 00:00:00 2004 Dan Walsh 1.17.30-2
- Cleanup patch
- Add removable_t associate
Sun Oct 10 00:00:00 2004 Dan Walsh 1.17.30-1
- Upstream merge from NSA
- Add arpwatch.
- Turned on every service on machine and got multiple avc messages.
Sat Oct 9 00:00:00 2004 Dan Walsh 1.17.29-4
- Change allow_ypbind to be a boolean.
Fri Oct 8 00:00:00 2004 Dan Walsh 1.17.29-3
- Add reserved_port_type
Fri Oct 8 00:00:00 2004 Dan Walsh 1.17.29-2
- minor fixes
- Fix nfsd and ypbind
Fri Oct 8 00:00:00 2004 Dan Walsh 1.17.29-1
- Update for latest from NSA
Thu Oct 7 00:00:00 2004 Dan Walsh 1.17.28-2
- Add reiser fix
- allow syslog_t to access tmpfs_t for minilog
Thu Oct 7 00:00:00 2004 Dan Walsh 1.17.28-1
- Update from NSA
- Rearrange rpm.te file for targeted policy
Wed Oct 6 00:00:00 2004 Dan Walsh 1.17.27-1
- Update from NSA
Tue Oct 5 00:00:00 2004 Dan Walsh 1.17.26-3
- Fix inetd_child stuff.
Tue Oct 5 00:00:00 2004 Dan Walsh 1.17.26-2
- Cleanup sendmail policy.
Sat Oct 2 00:00:00 2004 Dan Walsh 1.17.26-1
- Update with NSA
Fri Oct 1 00:00:00 2004 Dan Walsh 1.17.25-1
- Update from NSA
- more inetd fixes, mozilla fixes
Fri Oct 1 00:00:00 2004 Dan Walsh 1.17.24-4
- Minor fixes
- Fix snmpd.te to allow creation of /var/net-snmp
Thu Sep 30 00:00:00 2004 Dan Walsh 1.17.24-3
- Add tvtime
Thu Sep 30 00:00:00 2004 Dan Walsh 1.17.24-2
- New fixes for comsat
- Add removable_context
Thu Sep 30 00:00:00 2004 Dan Walsh 1.17.24-1
- New location for mailman
- Update from NSA
- Fixes for ktalkd
Wed Sep 29 00:00:00 2004 Dan Walsh 1.17.23-2
- add vpnc policy
Tue Sep 28 00:00:00 2004 Dan Walsh 1.17.23-1
- Add changes for homedir
- Update to latest from NSA
Tue Sep 28 00:00:00 2004 Dan Walsh 1.17.22-2
- added ktalkd and other patches form Russell
Tue Sep 28 00:00:00 2004 Dan Walsh 1.17.22-1
- Remove screensaver stuff
Sat Sep 25 00:00:00 2004 Dan Walsh 1.17.21-1
- Latest from NSA
- Added inetd_macros.te and swat, in.comcast, ktalkd, rsync policy
- Many fixes for strict policy
Fri Sep 24 00:00:00 2004 Dan Walsh 1.17.20-3
- Apply Russell\'s patch
Fri Sep 24 00:00:00 2004 Dan Walsh 1.17.20-2
- Change nfs tunables into booleans for reading exported file systems
Fri Sep 24 00:00:00 2004 Dan Walsh 1.17.20-1
- Update with NSA fixes.
Wed Sep 22 00:00:00 2004 Dan Walsh 1.17.19-2
- Many fixes for nscd
Wed Sep 22 00:00:00 2004 Dan Walsh 1.17.19-1
- Update to latest from NSA
Sat Sep 18 00:00:00 2004 Dan Walsh 1.17.18-3
- Add associate file_type nfs_t for mv command
Sat Sep 18 00:00:00 2004 Dan Walsh 1.17.18-2
- Change targeted policy to use devfs.
Fri Sep 17 00:00:00 2004 Dan Walsh 1.17.18-1
- Fix rhgb and console
Fri Sep 17 00:00:00 2004 Dan Walsh 1.17.17-3
- Allow nscd to read context files
Fri Sep 17 00:00:00 2004 Dan Walsh 1.17.17-2
- Add removable_t for all removable media
Fri Sep 17 00:00:00 2004 Dan Walsh 1.17.17-1
- Update from NSA
Thu Sep 16 00:00:00 2004 Dan Walsh 1.17.16-3
- add context for /lib/tls/i486
- Fix /etc/mozpluggerrc
Thu Sep 16 00:00:00 2004 Dan Walsh 1.17.16-2
- Cleanup patch
Thu Sep 16 00:00:00 2004 Dan Walsh 1.17.16-1
- Update to match NSA Policy
- Added proc_fs attributes
Wed Sep 15 00:00:00 2004 Dan Walsh 1.17.15-3
- More nscd fixes
Wed Sep 15 00:00:00 2004 Dan Walsh 1.17.15-2
- New changes for nscd in targeted policy. Small cleanup of can_ypbind
Wed Sep 15 00:00:00 2004 Dan Walsh 1.17.15-1
- Update from NSA
Sat Sep 11 00:00:00 2004 Dan Walsh 1.17.14-1
- Update from NSA
Sat Sep 11 00:00:00 2004 Dan Walsh 1.17.13-1
- Update from NSA
- Fixed for dbus
Fri Sep 10 00:00:00 2004 Dan Walsh 1.17.12-1
- Add media context file
- Add ncsd.te to targeted policy
Thu Sep 9 00:00:00 2004 Dan Walsh 1.17.11-2
- Many changes to get X and dbus to work with /dev on tmpfs
Thu Sep 9 00:00:00 2004 Dan Walsh 1.17.11-1
- Update from NSA
Wed Sep 8 00:00:00 2004 Dan Walsh 1.17.10-2
- Fix named file context and add dbus patch from Colin
- Fix udev and tmpfs boot problems
Sun Sep 5 00:00:00 2004 Dan Walsh 1.17.10-1
- Update from NSA
Fri Sep 3 00:00:00 2004 Dan Walsh 1.17.9-2
- Clean up patch
Fri Sep 3 00:00:00 2004 Dan Walsh 1.17.9-1
- Latest from NSA
- Merge in Russell Changes
Thu Sep 2 00:00:00 2004 Jeremy Katz - 1.17.8-2
- use underlying context for tmpfs
Wed Sep 1 00:00:00 2004 Dan Walsh 1.17.8-1
- Update from NSA
* Added reserved_port_t type and portcon entries to map all other
reserved ports to this type.
* Added distro_ prefix to distro tunables to avoid conflicts.
* Merged diffs from Russell Coker.
Tue Aug 31 00:00:00 2004 Dan Walsh 1.17.7-1
- Update with uli\'s fixes
Tue Aug 31 00:00:00 2004 Dan Walsh 1.17.6-1
- Update for NSA
- Add ssh policy fixes
Sat Aug 28 00:00:00 2004 Dan Walsh 1.17.5-2
- Fix spec file
Sat Aug 28 00:00:00 2004 Dan Walsh 1.17.5-1
- Update from NSA
- Add ftpd_is_daemon=1 boolean
Sat Aug 28 00:00:00 2004 Dan Walsh 1.17.4-5
- Fix patch and spec file
Fri Aug 27 00:00:00 2004 Dan Walsh 1.17.4-4
- Add cdrom check for makefile
- Add some patches from Russell
Thu Aug 26 00:00:00 2004 Dan Walsh 1.17.4-3
- Fix directory ownership
Thu Aug 26 00:00:00 2004 Dan Walsh 1.17.4-2
- Fix portmap name_bind to reserved_port_t
Thu Aug 26 00:00:00 2004 Dan Walsh 1.17.4-1
- More changes to make named work
- Added can_ypbind to several te files
Wed Aug 25 00:00:00 2004 Dan Walsh 1.17.3-2
- Russell Changes to Named
- Add unrestricted attribute
Wed Aug 25 00:00:00 2004 Dan Walsh 1.17.3-1
- Latest from NSA
- Portmap change
Tue Aug 24 00:00:00 2004 Dan Walsh 1.17.2-1
- Colin patch to check file_contexts
- Add rssh policy
- Latest from NSA
Mon Aug 23 00:00:00 2004 Dan Walsh 1.17.1-1
- Update from NSA
Fri Aug 20 00:00:00 2004 Colin Walters 1.15.16-2
- Add printer_device_t to types/devices.te, remove from lpd.te.
Thu Aug 19 00:00:00 2004 Dan Walsh 1.15.16-1
- Update from NSA, fixes for udev
Wed Aug 18 00:00:00 2004 Dan Walsh 1.15.15-1
- Update from NSA, remove unused te files
Sat Aug 14 00:00:00 2004 Dan Walsh 1.15.14-1
- Update from NSA
Thu Aug 12 00:00:00 2004 Dan Walsh 1.15.13-4
- Make booleans specific to policy type
Thu Aug 12 00:00:00 2004 Dan Walsh 1.15.13-3
- Fix booleans
Thu Aug 12 00:00:00 2004 Dan Walsh 1.15.13-2
- Fix bind to work in targeted policy
Mon Aug 9 00:00:00 2004 Dan Walsh 1.15.13-1
- Latest changes from NSA including more booleans changes.
Wed Aug 4 00:00:00 2004 Dan Walsh 1.15.12-1
- Update to latest from NSA
- Major rewrite to use booleans
Wed Aug 4 00:00:00 2004 Dan Walsh 1.15.11-2
- Fix targeted policy to create tun file
Sun Aug 1 00:00:00 2004 Dan Walsh 1.15.11-1
- Update to latest from NSA
- Rename tunables to .tun
Fri Jul 30 00:00:00 2004 Dan Walsh 1.15.10-1
- Update to latest from NSA
Thu Jul 29 00:00:00 2004 Dan Walsh 1.15.9-1
- Fix audit2allow by adding auditallow load_policy to unconfined_t
Wed Jul 28 00:00:00 2004 Dan Walsh 1.15.8-3
- Fix tunables
Wed Jul 28 00:00:00 2004 Dan Walsh 1.15.8-1
- Latest from NSA
Tue Jul 27 00:00:00 2004 Dan Walsh 1.15.7-6
- New policy for bind, fix net_contexts
Thu Jul 22 00:00:00 2004 Dan Walsh 1.15.7-4
- Fixes for ptal
Wed Jul 21 00:00:00 2004 Dan Walsh 1.15.7-3
- Fix udev spec
Tue Jul 20 00:00:00 2004 Dan Walsh 1.15.7-2
- Add patches for NFS Home dirs and some suse patches
Tue Jul 20 00:00:00 2004 Dan Walsh 1.15.7-1
- Latest version from NSA
Sat Jul 17 00:00:00 2004 Dan Walsh 1.15.6-2
- Fix firefox spec and other problems with bootloader
Fri Jul 16 00:00:00 2004 Dan Walsh 1.15.6-1
- Rewrite Tunables comments for system-config-securitylevel
Thu Jul 15 00:00:00 2004 Dan Walsh 1.15.5-2
- Add device_type create_file_perms to unconfined_t
Thu Jul 15 00:00:00 2004 Dan Walsh 1.15.5-1
- add rpm_t for unconfined_t
Tue Jul 13 00:00:00 2004 Dan Walsh 1.15.4-1
- Break out unlimitedServices in to multiple tunables
Tue Jul 13 00:00:00 2004 Dan Walsh 1.15.3-1
- Fixes for sudo and userhelper.
Thu Jul 8 00:00:00 2004 Dan Walsh 1.15.2-1
* Wed Jul 7 2004 Dan Walsh 1.15.1-1
- Update with latest from NSA
Thu Jul 8 00:00:00 2004 Dan Walsh 1.14.1-5
- Add allow for syslog looking at /initrd
Wed Jul 7 00:00:00 2004 Dan Walsh 1.14.1-3
- Fix automount file system
- More fixes for postgress
Thu Jul 1 00:00:00 2004 Dan Walsh 1.14.1-2
- Fixes for postgres
- Lots of fixes from Fedora list
Thu Jul 1 00:00:00 2004 Dan Walsh 1.14.1-1
- Update with latest from NSA
Sun Jun 27 00:00:00 2004 Dan Walsh 1.13.10-3
- Fix some problems generated by turning off tunables
Sun Jun 27 00:00:00 2004 Dan Walsh 1.13.10-2
- Fix post scripts
Sun Jun 27 00:00:00 2004 Dan Walsh 1.13.10-1
- Update with latest NSA
Sat Jun 26 00:00:00 2004 Dan Walsh 1.13.9-1
- Update with latest NSA
- Add more Colin patches
Thu Jun 24 00:00:00 2004 Dan Walsh 1.13.8-1
- Add Kerberos policy
- Update with latest from NSA
Sat Jun 19 00:00:00 2004 Dan Walsh 1.13.7-1
- NSA Update
Fri Jun 18 00:00:00 2004 Dan Walsh 1.13.6-1
- Another NSA update.
- Added Russell\'s rpm patch
- Added netlink patches
Thu Jun 17 00:00:00 2004 Dan Walsh 1.13.5-1
- Add postfix and mdadm fix from Colin
- Update to match latest from NSA
Thu Jun 17 00:00:00 2004 Dan Walsh 1.13.4-8
- Add nlclass patch
Wed Jun 16 00:00:00 2004 Elliot Lee
- rebuilt
Tue Jun 15 00:00:00 2004 Dan Walsh 1.13.4-6
- Keep version with strict policy
- Remove uwimapd patch
Thu Jun 10 00:00:00 2004 Dan Walsh 1.13.4-5
- Fix patch
Thu Jun 10 00:00:00 2004 Dan Walsh 1.13.4-4
- Add Additional Russell fixes
Wed Jun 9 00:00:00 2004 Dan Walsh 1.13.4-3
- Add Hotplug fixes
Tue Jun 8 00:00:00 2004 Dan Walsh 1.13.4-2
- Add most of Russell\'s mods
Tue Jun 8 00:00:00 2004 Dan Walsh 1.13.4-1
- Handle newrole changes for new design
- Update to latest from NSA
Fri Jun 4 00:00:00 2004 Dan Walsh 1.13.3-3
- Handle updating /etc/selinux/config
Thu Jun 3 00:00:00 2004 Dan Walsh 1.13.3-1
- Update to latest from NSA
- Fix numerous bugs
Thu Jun 3 00:00:00 2004 Dan Walsh 1.13.2-7
- Fix su policy for terminal rename with new pam_selinux.
Thu Jun 3 00:00:00 2004 Dan Walsh 1.13.2-6
- Fix policy for setfiles and restorecon
Thu Jun 3 00:00:00 2004 Dan Walsh 1.13.2-5
- Add tunables subdir
Wed Jun 2 00:00:00 2004 Dan Walsh 1.13.2-4
- Fix hotplug and udev
Wed Jun 2 00:00:00 2004 Dan Walsh 1.13.2-3
- Fix handling of selinux_config_t and default_context_t
Sat May 29 00:00:00 2004 Dan Walsh 1.13.2-2
- Only update policy if this policy is running
Sat May 29 00:00:00 2004 Dan Walsh 1.13.2-1
- Update to match NSA
Fri May 28 00:00:00 2004 Dan Walsh 1.13.1-2
- Change location of file_contexts and add new security contexts
Tue May 25 00:00:00 2004 Dan Walsh 1.13.1-1
- Initial version created from policy.spec