diff --git a/policy-F13.patch b/policy-F13.patch index 98652ae..9e3961d 100644 --- a/policy-F13.patch +++ b/policy-F13.patch @@ -34433,7 +34433,7 @@ diff --exclude-from=exclude -N -u -r nsaserefpolicy/policy/modules/system/ipsec. /usr/local/lib(64)?/ipsec/klipsdebug -- gen_context(system_u:object_r:ipsec_exec_t,s0) diff --exclude-from=exclude -N -u -r nsaserefpolicy/policy/modules/system/ipsec.if serefpolicy-3.7.19/policy/modules/system/ipsec.if --- nsaserefpolicy/policy/modules/system/ipsec.if 2010-04-13 20:44:37.000000000 +0200 -+++ serefpolicy-3.7.19/policy/modules/system/ipsec.if 2010-06-28 18:03:11.725433402 +0200 ++++ serefpolicy-3.7.19/policy/modules/system/ipsec.if 2010-07-01 15:59:17.968602268 +0200 @@ -18,6 +18,24 @@ domtrans_pattern($1, ipsec_exec_t, ipsec_t) ') @@ -34476,7 +34476,7 @@ diff --exclude-from=exclude -N -u -r nsaserefpolicy/policy/modules/system/ipsec. +# +interface(`ipsec_mgmt_kill',` + gen_require(` -+ type NetworkManager_t; ++ type ipsec_mgmt_t; + ') + + allow $1 ipsec_mgmt_t:process sigkill; @@ -34512,7 +34512,7 @@ diff --exclude-from=exclude -N -u -r nsaserefpolicy/policy/modules/system/ipsec. +# +interface(`ipsec_mgmt_signull',` + gen_require(` -+ type ipsec-mgmt_t; ++ type ipsec_mgmt_t; + ') + + allow $1 ipsec_mgmt_t:process signull; diff --git a/selinux-policy.spec b/selinux-policy.spec index 1a5f2d5..459b8ff 100644 --- a/selinux-policy.spec +++ b/selinux-policy.spec @@ -20,7 +20,7 @@ Summary: SELinux policy configuration Name: selinux-policy Version: 3.7.19 -Release: 33%{?dist} +Release: 34%{?dist} License: GPLv2+ Group: System Environment/Base Source: serefpolicy-%{version}.tgz @@ -469,6 +469,9 @@ exit 0 %endif %changelog +* Thu Jul 1 2010 Miroslav Grepl 3.7.19-34 +- Fix ipsec-mgmt inteface + * Wed Jun 30 2010 Miroslav Grepl 3.7.19-33 - Fix label for /var/lib/git - Fix labels for conflicted files