rpms/selinux-policy/devel policy-20061106.patch,1.23,1.24

fedora-cvs-commits at redhat.com fedora-cvs-commits at redhat.com
Mon Nov 20 23:45:25 UTC 2006


Author: dwalsh

Update of /cvs/dist/rpms/selinux-policy/devel
In directory cvs.devel.redhat.com:/tmp/cvs-serv25568

Modified Files:
	policy-20061106.patch 
Log Message:
* Mon Nov 20 2006 Dan Walsh <dwalsh at redhat.com> 2.4.5-3
- Fix load_policy to be able to mls_write_down so it can talk to the terminal


policy-20061106.patch:
 Rules.modular                           |   10 +
 policy/flask/access_vectors             |    2 
 policy/global_tunables                  |   36 ++++
 policy/mls                              |    3 
 policy/modules/admin/acct.te            |    1 
 policy/modules/admin/amanda.te          |    1 
 policy/modules/admin/consoletype.te     |   10 -
 policy/modules/admin/dmesg.te           |    1 
 policy/modules/admin/firstboot.if       |    6 
 policy/modules/admin/logwatch.te        |    1 
 policy/modules/admin/netutils.te        |    2 
 policy/modules/admin/prelink.te         |    5 
 policy/modules/admin/quota.te           |    1 
 policy/modules/admin/rpm.fc             |    3 
 policy/modules/admin/rpm.if             |   24 ++
 policy/modules/admin/rpm.te             |   37 +---
 policy/modules/apps/java.fc             |    2 
 policy/modules/kernel/corecommands.if   |   17 +
 policy/modules/kernel/corenetwork.if.in |   12 +
 policy/modules/kernel/corenetwork.te.in |   15 +
 policy/modules/kernel/corenetwork.te.m4 |    4 
 policy/modules/kernel/devices.fc        |    5 
 policy/modules/kernel/devices.te        |    6 
 policy/modules/kernel/domain.te         |    7 
 policy/modules/kernel/files.if          |   90 +++++++++-
 policy/modules/kernel/filesystem.te     |    6 
 policy/modules/kernel/terminal.fc       |    1 
 policy/modules/kernel/terminal.te       |    1 
 policy/modules/services/apache.fc       |   10 +
 policy/modules/services/apache.te       |   16 +
 policy/modules/services/automount.te    |    1 
 policy/modules/services/clamav.te       |    2 
 policy/modules/services/cron.if         |   26 --
 policy/modules/services/cron.te         |    5 
 policy/modules/services/cups.fc         |    2 
 policy/modules/services/cups.te         |    4 
 policy/modules/services/cvs.te          |    1 
 policy/modules/services/dbus.fc         |    1 
 policy/modules/services/dbus.if         |    1 
 policy/modules/services/ftp.te          |    1 
 policy/modules/services/hal.fc          |    4 
 policy/modules/services/hal.te          |    8 
 policy/modules/services/kerberos.if     |    1 
 policy/modules/services/kerberos.te     |   11 +
 policy/modules/services/lpd.if          |   52 +++--
 policy/modules/services/mta.if          |    1 
 policy/modules/services/mta.te          |    1 
 policy/modules/services/nscd.if         |   20 ++
 policy/modules/services/nscd.te         |    3 
 policy/modules/services/oddjob.te       |    3 
 policy/modules/services/pegasus.if      |   31 +++
 policy/modules/services/pegasus.te      |    5 
 policy/modules/services/postfix.te      |   13 +
 policy/modules/services/procmail.te     |   16 +
 policy/modules/services/rsync.te        |    1 
 policy/modules/services/samba.if        |    2 
 policy/modules/services/samba.te        |    8 
 policy/modules/services/sasl.te         |    2 
 policy/modules/services/snmp.te         |    4 
 policy/modules/services/spamassassin.te |    4 
 policy/modules/services/ssh.te          |    3 
 policy/modules/services/telnet.te       |    1 
 policy/modules/services/tftp.te         |    2 
 policy/modules/services/uucp.fc         |    1 
 policy/modules/services/uucp.if         |   67 +++++++
 policy/modules/services/uucp.te         |   44 ++++-
 policy/modules/services/xserver.if      |   40 ++++
 policy/modules/system/authlogin.if      |    7 
 policy/modules/system/authlogin.te      |    2 
 policy/modules/system/clock.te          |    5 
 policy/modules/system/fstools.fc        |    1 
 policy/modules/system/fstools.te        |    2 
 policy/modules/system/getty.te          |    3 
 policy/modules/system/hostname.te       |    6 
 policy/modules/system/init.fc           |    3 
 policy/modules/system/init.te           |   14 +
 policy/modules/system/iptables.te       |    6 
 policy/modules/system/libraries.fc      |   16 +
 policy/modules/system/libraries.te      |    6 
 policy/modules/system/locallogin.if     |   37 ++++
 policy/modules/system/logging.te        |    1 
 policy/modules/system/lvm.fc            |    1 
 policy/modules/system/lvm.te            |   48 +++++
 policy/modules/system/miscfiles.fc      |    1 
 policy/modules/system/modutils.te       |    5 
 policy/modules/system/mount.te          |   19 +-
 policy/modules/system/raid.te           |    7 
 policy/modules/system/selinuxutil.if    |    4 
 policy/modules/system/selinuxutil.te    |   38 ++--
 policy/modules/system/unconfined.fc     |    4 
 policy/modules/system/unconfined.if     |   19 ++
 policy/modules/system/unconfined.te     |   11 +
 policy/modules/system/userdomain.if     |  280 ++++++++++++++++++++++++++++----
 policy/modules/system/userdomain.te     |   10 +
 policy/modules/system/xen.fc            |    1 
 policy/modules/system/xen.te            |   30 +++
 96 files changed, 1113 insertions(+), 201 deletions(-)

Index: policy-20061106.patch
===================================================================
RCS file: /cvs/dist/rpms/selinux-policy/devel/policy-20061106.patch,v
retrieving revision 1.23
retrieving revision 1.24
diff -u -r1.23 -r1.24
--- policy-20061106.patch	20 Nov 2006 23:24:21 -0000	1.23
+++ policy-20061106.patch	20 Nov 2006 23:45:23 -0000	1.24
@@ -2585,7 +2585,7 @@
  
 diff --exclude-from=exclude -N -u -r nsaserefpolicy/policy/modules/system/userdomain.if serefpolicy-2.4.5/policy/modules/system/userdomain.if
 --- nsaserefpolicy/policy/modules/system/userdomain.if	2006-11-16 17:15:24.000000000 -0500
-+++ serefpolicy-2.4.5/policy/modules/system/userdomain.if	2006-11-20 18:23:10.000000000 -0500
++++ serefpolicy-2.4.5/policy/modules/system/userdomain.if	2006-11-20 18:44:58.000000000 -0500
 @@ -22,9 +22,9 @@
  ## <rolebase/>
  #
@@ -2704,15 +2704,6 @@
  ')
  
  ########################################
-@@ -5162,7 +5152,7 @@
- ##	</summary>
- ## </param>
- #
--interface(`userdom_relabelto_unpriv_users_ptys',`
-+interface(`user.dom_relabelto_unpriv_users_ptys',`
- 	gen_require(`
- 		attribute user_ptynode;
- 	')
 @@ -5488,3 +5478,225 @@
  	allow $1 user_home_dir_t:dir create_dir_perms;
  	files_home_filetrans($1,user_home_dir_t,dir)




More information about the fedora-cvs-commits mailing list