Please unblock refpolicy/0.0.20061018-5
Hi,
These are mostly small tweaks of the SELinux policy for
Debian -- instances where Debian differs from fedora core. Most of
these patches are simple changes (the xconsole change does not
reflect any code change, it just has a bunch of lines that moved from
the xserver policy to more general policy modules, which are loaded
even if the xserver module is not loaded in the local policy). These
are fairly low risk changes, and have been tested by at least two
people (Erich and myself). All policy modules compile, and they load.
manoj
refpolicy (0.0.20061018-5) unstable; urgency=high
* Add policy for log and lock files for aptitude. This is needed for
proper function; so one does not need to go into permissive mode to
run aptitude. Stolen from Erich. This is a low risk change.
* Debian puts grub in /usr/sbin/grub. Reflect that in the initial file
context.
* Debian creates /dev/xconsole independently of whether or not a xserver
has been installed or not. So move the policy related to /dev/sconsole
out of the xserver policy, and into places where relevant (init.te,
logging.fc), to reflect the status that /dev/console is present
anyway.
* Add support for /etc/network/run and /dev/shm/network, which seem to
be Debian specific as well.
* Allow udev to manage configuration files.
-- Manoj Srivastava <srivasta@debian.org> Fri, 9 Mar 2007 00:22:19 -0600
--
OVER the underpass! UNDER the overpass! Around the FUTURE and BEYOND
REPAIR!!
Manoj Srivastava <srivasta@acm.org> <http://www.golden-gryphon.com/>
1024D/BF24424C print 4966 F272 D093 B493 410B 924B 21BA DABB BF24 424C
Reply to: