[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Please unblock refpolicy/0.0.20061018-5



Hi,

        These are mostly small tweaks of the SELinux policy for
 Debian --  instances where Debian differs from fedora core. Most of
 these patches are simple changes (the xconsole  change does not
 reflect any code change, it just has a bunch of lines that moved from
 the xserver policy to more general policy modules, which are loaded
 even if the xserver module is not loaded in the local policy). These
 are fairly low risk changes, and have been tested by at least two
 people (Erich and myself). All policy modules compile, and they load.

        manoj

refpolicy (0.0.20061018-5) unstable; urgency=high

  * Add policy for log and lock files for aptitude. This is needed for
    proper function; so one does not need to go into permissive mode to
    run aptitude.  Stolen from Erich. This is a low risk change.
  * Debian puts grub in /usr/sbin/grub. Reflect that in the initial file
    context. 
  * Debian creates /dev/xconsole independently of whether or not a xserver
    has been installed or not. So move the policy related to /dev/sconsole
    out of the xserver policy, and into places where relevant (init.te,
    logging.fc), to reflect the status that /dev/console is present
    anyway.
  * Add support for /etc/network/run  and /dev/shm/network, which seem to
    be Debian specific as well.
  * Allow udev to manage configuration files.

 -- Manoj Srivastava <srivasta@debian.org>  Fri,  9 Mar 2007 00:22:19 -0600

-- 
OVER the underpass!  UNDER the overpass!  Around the FUTURE and BEYOND
REPAIR!!
Manoj Srivastava <srivasta@acm.org> <http://www.golden-gryphon.com/>
1024D/BF24424C print 4966 F272 D093 B493 410B  924B 21BA DABB BF24 424C



Reply to: