Changelog for
audit-2.8.5-3.2.x86_64.rpm :
* Mon Feb 01 2021 dimstarAATTopensuse.org- Do not explicitly provide group(audit) in system-users-audit: this is automatically handled by rpm/providers.
* Thu Jan 28 2021 ematsumiyaAATTsuse.com- Create new \"audit\" group for read access to logs (bsc#1178154)
* add change-default-log_group.patch
* update audit-secondary.spec
* Wed Dec 02 2020 abergmannAATTsuse.com- Enable Aarch64 processor support. (bsc#1179515 bsc#1179806)
* Fri Oct 16 2020 lnusselAATTsuse.de- prepare usrmerge (boo#1029961)
* Mon Jan 13 2020 tonyjAATTsuse.com- Update to version 2.6.5:
* Fix segfault on shutdown
* Fix hang on startup (#1587995)
* Add sleep to script to dump state so file is ready when needed
* Add auparse_normalizer support for SOFTWARE_UPDATE event
* Mark netlabel events as simple events so that get processed quicker
* When audispd is reconfiguring, only SIGHUP plugins with valid pid (#1614833)
* Add 30-ospp-v42.rules to meet new Common Criteria requirements
* Update lookup tables for the 4.18 kernel
* In aureport, fix segfault in file report
* Add auparse_normalizer support for labeled networking events
* Fix memory leak in audisp-remote plugin when using krb5 transport. (#1622194)
* Event aging is off by a second
* In ausearch/auparse, correct event ordering to process oldest first
* auparse_reset was not clearing everything it should
* Add support for AUDIT_MAC_CALIPSO_ADD, AUDIT_MAC_CALIPSO_DEL events
* In ausearch/report, lightly parse selinux portion of USER_AVC events
* In ausearch/report, limit record size when malformed
* In auditd, fix extract_type function for network originating events
* In auditd, calculate right size and location for network originating events
* Treat all network originating events as VER2 so dispatcher doesn\'t format it
* In audisp-remote do an initial connection attempt (#1625156)
* In auditd, allow expression of space left as a percentage (#1650670)
* On PPC64LE systems, only allow 64 bit rules (#1462178)
* Make some parts of auditd state report optional based on config
* Fix ausearch when checkpointing a single file (Burn Alting)
* Fix scripting in 31-privileged.rules wrt filecap (#1662516)
* In ausearch, do not checkpt if stdin is input source
* In libev, remove __cold__ attribute for functions to allow proper hardening
* Add tests to configure.ac for openldap support
* Make systemd support files use /run rather than /var/run (Christian Hesse)
* Fix minor memory leak in auditd kerberos credentials code
* Fix auditd regression where keep_logs is limited by rotate_logs 2 file test
* In ausearch/report fix --end to use midnight time instead of now (#1671338)- Fix build errors when using gcc-10 no-common default (bsc#1160384) New patch: audit-fno-common.patch- Refresh audit-allow-manual-stop.patch
* Thu Mar 21 2019 jengelhAATTinai.de- Reduce scriptlets\' hard dependency on systemd.
* Sat Jun 23 2018 antoine.belvireAATTopensuse.org- Update to version 2.8.4:
* Generate checkpoint file even when not results are returned (Burn Alting).
* Fix log file creation when file logging is disabled entirely (Vlad Glagolev).
* Use SIGCONT to dump auditd internal state (rh#1504251).
* Fix parsing of virtual timestamp fields in ausearch_expression (rh#1515903).
* Fix parsing of uid & success for ausearch.
* Hide lru symbols in auparse.
* Fix aureport summary time range reporting.
* Allow unlimited retries on startup for remote logging.
* Add queue_depth to remote logging stats and increase default queue_depth size.
* Sun Jun 17 2018 antoine.belvireAATTopensuse.org- Update to version 2.8.3:
* Correct msg function name in lru debug code.
* Fix a segfault in auditd when dns resolution isn\'t available.
* Make a reload legacy service for auditd.
* In auparse python bindings, expose some new types that were missing.
* In normalizer, pickup subject kind for user_login events.
* Fix interpretation of unknown ioctcmds (rh#1540507).
* Add ANOM_LOGIN_SERVICE, RESP_ORIGIN_BLOCK, & RESP_ORIGIN_BLOCK_TIMED events.
* In auparse_normalize for USER_LOGIN events, map acct for subj_kind.
* Fix logging of IPv6 addresses in DAEMON_ACCEPT events (rh#1534748).
* Do not rotate auditd logs when num_logs < 2 (brozs).
* Tue Apr 03 2018 kukukAATTsuse.de- Use %license instead of %doc [bsc#1082318]
* Fri Mar 16 2018 tonyjAATTsuse.com- Change openldap dependency to client only (bsc#1085003)- Resolve issue with previous change if both Python2 and Python3 are present, tests were failing as python2 bindings are preferred in this case.
* Thu Feb 22 2018 meissnerAATTsuse.com- reverted -j1 force ppc specific only
* Wed Feb 07 2018 tchvatalAATTsuse.com- Add patch to fix test run without python2 interpreter:
* audit-python3.patch- Update to 2.8.2 release:
* Update tables for 4.14 kernel
* Fixup ipv6 server side binding
* AVC report from aureport was missing result column header (#1511606)
* Add SOFTWARE_UPDATE event
* In ausearch/report pickup any path and new-disk fields as a file
* Fix value returned by auditctl --reset-lost (Richard Guy Briggs)
* In auparse, fix expr_create_timestamp_comparison_ex to be numeric field
* Fix building on old systems without linux/fanotify.h
* Fix shell portability issues reported by shellcheck
* Auditd validate_email should not use gethostbyname
* Tue Feb 06 2018 normandAATTlinux.vnet.ibm.com- force -j1 for PowerPC make check to avoid build failure (lookup_test.o: file not recognized: File truncated)
* Wed Jan 17 2018 tchvatalAATTsuse.com- Add conditions around python plugins to allow us to conditionalize them in enviroment without python2
* Thu Nov 09 2017 mpluskalAATTsuse.com- Rename python binding packages to match current python packaging standards- Update python build dependencies to resolve future split of python2/3
* Sat Nov 04 2017 aavindraaAATTgmail.com- Update to version 2.8.1. See audit.spec (libaudit1) for upstream changelog- Remove audit-implicit-writev.patch (fixed upstream across 2 commits)
* 3b30db20ad983274989ce9a522120c3c225436b3
* 07132c22314e9abbe64d1031fd8734243285bb3f- Cleanup with spec-cleaner
* Fri Aug 18 2017 dimstarAATTopensuse.org- Add audit-implicit-writev.patch: include sys/uio.h to ensure readv and writev are declared.
* Mon Jul 24 2017 jengelhAATTinai.de- Rectify RPM groups, diversify descriptions.- Remove mentions of static libraries because they are not built.
* Tue Jul 18 2017 tonyjAATTsuse.com- Update to version 2.7.7. See audit.spec (libaudit1) for upstream changelog Since commit 6cf57d27 (2.7.4) audit is now started as an non-forking service (bsc#1042781). Add config: audit-stop.rules Refresh patch: audit-allow-manual-stop.patch Refresh patch: audit-no-gss.patch
* Fri Apr 01 2016 tchvatalAATTsuse.com- Version update to 2.5. See audit.spec (libaudit1) for upstream changelog- Cleanup with spec-cleaner- Sort out bit /sbin /usr/sbin/ installation- Install the rules as documentation- Remove needless %py_requires from python subpkgs
* Fri Aug 21 2015 tonyjAATTsuse.com- Update to version 2.4.4. See audit.spec (libaudit1) for upstream changelog- Add python3 bindings for libaudit and libauparse- Remove patch \'audit-no_m4_dir.patch\' (added Fri Apr 26 11:14:39 UTC 2013 by mmeisterAATTsuse.com) No idea what earlier \'automake\' build error this was trying to fix but it broke the handling of \"--without-libcap-ng\". Anyways, no build error occurs now and m4 path is also needed in v2.4.4 to find ax_prog_cc_for_build