diff --git a/.gitignore b/.gitignore index d946176..92e8885 100644 --- a/.gitignore +++ b/.gitignore @@ -260,3 +260,5 @@ serefpolicy* /selinux-policy-contrib-fbc0290.tar.gz /selinux-policy-contrib-ce817e6.tar.gz /selinux-policy-370bcfb.tar.gz +/selinux-policy-4b1f9bd.tar.gz +/selinux-policy-contrib-d2dd0ad.tar.gz diff --git a/selinux-policy.spec b/selinux-policy.spec index 42a745c..a27963e 100644 --- a/selinux-policy.spec +++ b/selinux-policy.spec @@ -1,11 +1,11 @@ # github repo with selinux-policy base sources %global git0 https://github.com/fedora-selinux/selinux-policy -%global commit0 370bcfb1069571c033bcc061b95a626724fb4110 +%global commit0 4b1f9bdcc030b57ec7e714768450d3c5feadf276 %global shortcommit0 %(c=%{commit0}; echo ${c:0:7}) # github repo with selinux-policy contrib sources %global git1 https://github.com/fedora-selinux/selinux-policy-contrib -%global commit1 ce817e6dd5c114871380864383bd98a1bea6ff31 +%global commit1 d2dd0adcc8bc01f7cd1c6b31f2159bdf40912def %global shortcommit1 %(c=%{commit1}; echo ${c:0:7}) %define distro redhat @@ -29,7 +29,7 @@ Summary: SELinux policy configuration Name: selinux-policy Version: 3.14.1 -Release: 14%{?dist} +Release: 15%{?dist} License: GPLv2+ Group: System Environment/Base Source: %{git0}/archive/%{commit0}/%{name}-%{shortcommit0}.tar.gz @@ -714,6 +714,16 @@ exit 0 %endif %changelog +* Tue Mar 20 2018 Lukas Vrabec - 3.14.1-15 +- Update screen_role_template() to allow also creating sockets in HOMEDIR/screen/ +- Allow newrole_t dacoverride capability +- Allow traceroute_t domain to mmap packet sockets +- Allow netutils_t domain to mmap usmmon device +- Allow netutils_t domain to use mmap on packet_sockets +- Allow traceroute to create icmp packets +- Allos sysadm_t domain to create tipc sockets +- Allow confined users to use new socket classes for bluetooth, alg and tcpdiag sockets + * Thu Mar 15 2018 Lukas Vrabec - 3.14.1-14 - Allow rpcd_t domain dac override - Allow rpm domain to mmap rpm_var_lib_t files diff --git a/sources b/sources index d59abc0..15f3081 100644 --- a/sources +++ b/sources @@ -1,3 +1,3 @@ -SHA512 (selinux-policy-contrib-ce817e6.tar.gz) = 4381d93f6ee94c539ffbcfd49415afbd95926e0a9a9e0059906dd2a8dca2b0cdd99e490c0ac9393b0e90f16fb9ed84aed5ffa92cd15a291f6e93c75c4aca85f6 -SHA512 (selinux-policy-370bcfb.tar.gz) = d515ecf3acd9a6be69df5791fc764a6558fcdf60382d10b8fc28a94eb47fabcadd26afce3852196cdc400e10054564b1f4eab2a0f389df7205e5a2621963ade3 -SHA512 (container-selinux.tgz) = 87c974b279f36847b6c6a2cfa6d64272d0ecce1cbde72960d16356a7962e7473e3aa7da90419b95e3db6638976adc6bd68700a9989132524ce979b96318d68fc +SHA512 (selinux-policy-4b1f9bd.tar.gz) = 8d86d4a273985bd654cebe90f70a4c50b57e37fd271d556e6f6cc12cdc1d33205435266a35b28dca682d06e522b0f2d8a49a8470faeefcf6e0bc61593ed8e9fd +SHA512 (selinux-policy-contrib-d2dd0ad.tar.gz) = 25372e3afddd5e6457221884158b50ea7dedbafbc0466b85f333f8c5e90eb79a0ea3cedcb68e37173a67ed13a26997aa0d23703f735f450bd604fabff2e970bc +SHA512 (container-selinux.tgz) = 039fc33c749a1d12d0673b073a1bb701e888b43e88dcdbf07279b500ff398f7f24b80fa762f7ed46cd933fdb03c1e9013ff33637561c0f43c5f6af535803b912