[selinux-policy] Allow block_suspend cap for samba-net

Daniel J Walsh dwalsh at fedoraproject.org
Wed Sep 11 12:31:31 UTC 2013


commit cffdc1cb9969c5eee5dc9f022ac57c0375306f6a
Author: Dan Walsh <dwalsh at redhat.com>
Date:   Wed Sep 11 08:31:18 2013 -0400

    Allow block_suspend cap for samba-net
    
    - Allow t-mission-control to manage gabble cache files
    - Allow nslcd to read /sys/devices/system/cpu
    - Allow selinux_store to use symlinks
    - Allow xdm_t to transition to itself
    - Call neutron interfaces instead of quantum
    - Allow init to change targed role to make uncofined services (xrdp which now has own systemd unit file) working. We want them to have in unconfined_t
    - Make sure directories in /run get created with the correct label
    - Make sure /root/.pki gets created with the right label
    - try to remove labeling for motion from zoneminder_exec_t to bin_t
    - Allow inetd_t to execute shell scripts
    - Allow cloud-init to read all domainstate
    - Fix to use quantum port
    - Add interface netowrkmanager_initrc_domtrans
    - Fix boinc_execmem
    - Allow t-mission-control to read gabble cache home
    - Add labeling for ~/.cache/telepathy/avatars/gabble
    - Allow memcache to read sysfs data
    - Cleanup antivirus policy and add additional fixes
    - Add boolean boinc_enable_execstack
    - Add support for couchdb in rabbitmq policy
    - Add interface couchdb_search_pid_dirs
    - Allow firewalld to read NM state
    - Allow systemd running as git_systemd to bind git port
    - Fix mozilla_plugin_rw_tmpfs_files()

 config.tgz |  Bin 3264 -> 3189 bytes
 1 files changed, 0 insertions(+), 0 deletions(-)
---
diff --git a/config.tgz b/config.tgz
index 39e26e7..c4a79da 100644
Binary files a/config.tgz and b/config.tgz differ


More information about the scm-commits mailing list