10a06a2 * Tue Jul 26 2016 Lukas Vrabec <lvrabec@redhat.com> 3.13.1-191.7

Authored and Committed by lvrabec 7 years ago
    * Tue Jul 26 2016 Lukas Vrabec <lvrabec@redhat.com> 3.13.1-191.7
    - Allow lsmd_plugin_t to exec ldconfig.
    - Allow vnstatd domain to read /sys/class/net/ files
    - Remove duplicate allow rules in spamassassin SELinux module
    - Allow spamc_t and spamd_t domains create .spamassassin file in user homedirs
    - Allow ipa_dnskey domain to search cache dirs
    - Allow dogtag-ipa-ca-renew-agent-submit labeled as certmonger_t to create /var/log/ipa/renew.log file
    - Allow ipa-dnskey read system state.
    - Allow sshd setcap capability. This is needed due to latest changes in sshd Resolves: rhbz#1356245
    - Allow init_t domain to read rpm db. This is needed due dnf-upgrade process failing. BZ(1349721)
    - Allow systemd_modules_load_t to read /etc/modprobe.d/lockd.conf
    - sysadmin should be allowed to use docker.
    
        
file modified
+0 -0
file modified
+115 -103
file modified
+84 -36
file modified
+14 -1