rpms/selinux-policy/F-7 policy-20070501.patch, 1.74, 1.75 selinux-policy.spec, 1.504, 1.505

Daniel J Walsh (dwalsh) fedora-extras-commits at redhat.com
Mon Nov 12 23:04:20 UTC 2007


Author: dwalsh

Update of /cvs/extras/rpms/selinux-policy/F-7
In directory cvs-int.fedora.redhat.com:/tmp/cvs-serv18218

Modified Files:
	policy-20070501.patch selinux-policy.spec 
Log Message:
* Tue Nov 6 2007 Dan Walsh <dwalsh at redhat.com> 2.6.4-56
- Allow saslauthd to use nis_authentication


policy-20070501.patch:

Index: policy-20070501.patch
===================================================================
RCS file: /cvs/extras/rpms/selinux-policy/F-7/policy-20070501.patch,v
retrieving revision 1.74
retrieving revision 1.75
diff -u -r1.74 -r1.75
--- policy-20070501.patch	8 Nov 2007 21:07:44 -0000	1.74
+++ policy-20070501.patch	12 Nov 2007 23:04:14 -0000	1.75
@@ -10059,7 +10059,7 @@
  ')
 diff --exclude-from=exclude -N -u -r nsaserefpolicy/policy/modules/services/sasl.te serefpolicy-2.6.4/policy/modules/services/sasl.te
 --- nsaserefpolicy/policy/modules/services/sasl.te	2007-05-07 14:51:01.000000000 -0400
-+++ serefpolicy-2.6.4/policy/modules/services/sasl.te	2007-08-07 09:42:35.000000000 -0400
++++ serefpolicy-2.6.4/policy/modules/services/sasl.te	2007-11-10 07:54:11.000000000 -0500
 @@ -63,6 +63,7 @@
  selinux_compute_access_vector(saslauthd_t)
  
@@ -10077,6 +10077,17 @@
  miscfiles_read_localization(saslauthd_t)
  miscfiles_read_certs(saslauthd_t)
  
+@@ -112,6 +113,10 @@
+ ')
+ 
+ optional_policy(`
++	nis_authenticate(saslauthd_t)
++')
++
++optional_policy(`
+ 	seutil_sigchld_newrole(saslauthd_t)
+ ')
+ 
 diff --exclude-from=exclude -N -u -r nsaserefpolicy/policy/modules/services/sendmail.if serefpolicy-2.6.4/policy/modules/services/sendmail.if
 --- nsaserefpolicy/policy/modules/services/sendmail.if	2007-05-07 14:51:01.000000000 -0400
 +++ serefpolicy-2.6.4/policy/modules/services/sendmail.if	2007-08-07 09:42:35.000000000 -0400
@@ -10980,7 +10991,7 @@
  ')
 diff --exclude-from=exclude -N -u -r nsaserefpolicy/policy/modules/system/authlogin.if serefpolicy-2.6.4/policy/modules/system/authlogin.if
 --- nsaserefpolicy/policy/modules/system/authlogin.if	2007-05-07 14:51:01.000000000 -0400
-+++ serefpolicy-2.6.4/policy/modules/system/authlogin.if	2007-10-18 17:07:12.000000000 -0400
++++ serefpolicy-2.6.4/policy/modules/system/authlogin.if	2007-11-10 08:59:37.000000000 -0500
 @@ -27,11 +27,9 @@
  	domain_type($1_chkpwd_t)
  	domain_entry_file($1_chkpwd_t,chkpwd_exec_t)
@@ -11091,13 +11102,17 @@
  	init_rw_utmp($1)
  
  	logging_send_syslog_msg($1)
-@@ -221,6 +229,16 @@
+@@ -221,6 +229,20 @@
  	seutil_read_config($1)
  	seutil_read_default_contexts($1)
  
 +	userdom_set_rlimitnh($1)
 +
 +	optional_policy(`
++		mount_domtrans($1)
++	')
++
++	optional_policy(`
 +		nis_authenticate($1)
 +	')
 +
@@ -11108,7 +11123,7 @@
  	tunable_policy(`allow_polyinstantiation',`
  		files_polyinstantiate_all($1)
  	')
-@@ -320,10 +338,6 @@
+@@ -320,10 +342,6 @@
  		type system_chkpwd_t, chkpwd_exec_t, shadow_t;
  	')
  
@@ -11119,7 +11134,7 @@
  	corecmd_search_bin($1)
  	domtrans_pattern($1,chkpwd_exec_t,system_chkpwd_t)
  
-@@ -332,6 +346,8 @@
+@@ -332,6 +350,8 @@
  	dev_read_rand($1)
  	dev_read_urand($1)
  
@@ -11128,7 +11143,7 @@
  	miscfiles_read_certs($1)
  
  	sysnet_dns_name_resolve($1)
-@@ -357,6 +373,37 @@
+@@ -357,6 +377,37 @@
  
  ########################################
  ## <summary>
@@ -11166,7 +11181,7 @@
  ##	Get the attributes of the shadow passwords file.
  ## </summary>
  ## <param name="domain">
-@@ -1337,6 +1384,8 @@
+@@ -1337,6 +1388,8 @@
  	allow $1 var_auth_t:dir list_dir_perms;
  	allow $1 var_auth_t:file manage_file_perms;
  	files_list_var_lib($1)
@@ -11175,7 +11190,7 @@
  
  	miscfiles_read_certs($1)
  
-@@ -1357,6 +1406,8 @@
+@@ -1357,6 +1410,8 @@
  
  	optional_policy(`
  		samba_stream_connect_winbind($1)
@@ -11184,7 +11199,7 @@
  	')
  ')
  
-@@ -1391,3 +1442,114 @@
+@@ -1391,3 +1446,114 @@
  	typeattribute $1 can_write_shadow_passwords;
  	typeattribute $1 can_relabelto_shadow_passwords;
  ')


Index: selinux-policy.spec
===================================================================
RCS file: /cvs/extras/rpms/selinux-policy/F-7/selinux-policy.spec,v
retrieving revision 1.504
retrieving revision 1.505
diff -u -r1.504 -r1.505
--- selinux-policy.spec	8 Nov 2007 21:07:44 -0000	1.504
+++ selinux-policy.spec	12 Nov 2007 23:04:14 -0000	1.505
@@ -17,7 +17,7 @@
 Summary: SELinux policy configuration
 Name: selinux-policy
 Version: 2.6.4
-Release: 55%{?dist}
+Release: 56%{?dist}
 License: GPL
 Group: System Environment/Base
 Source: serefpolicy-%{version}.tgz
@@ -363,6 +363,9 @@
 %endif
 
 %changelog
+* Tue Nov 6 2007 Dan Walsh <dwalsh at redhat.com> 2.6.4-56
+- Allow saslauthd to use nis_authentication
+
 * Tue Nov 6 2007 Dan Walsh <dwalsh at redhat.com> 2.6.4-55
 - Add policy.xml
 




More information about the fedora-extras-commits mailing list