diff --git a/policy-20071130.patch b/policy-20071130.patch index a65816c..18203fd 100644 --- a/policy-20071130.patch +++ b/policy-20071130.patch @@ -26967,7 +26967,7 @@ diff --exclude-from=exclude -N -u -r nsaserefpolicy/policy/modules/services/xser /var/lib/pam_devperm/:0 -- gen_context(system_u:object_r:xdm_var_lib_t,s0) diff --exclude-from=exclude -N -u -r nsaserefpolicy/policy/modules/services/xserver.if serefpolicy-3.3.1/policy/modules/services/xserver.if --- nsaserefpolicy/policy/modules/services/xserver.if 2008-06-12 23:38:01.000000000 -0400 -+++ serefpolicy-3.3.1/policy/modules/services/xserver.if 2008-07-02 13:18:33.000000000 -0400 ++++ serefpolicy-3.3.1/policy/modules/services/xserver.if 2008-07-02 17:02:50.000000000 -0400 @@ -12,9 +12,15 @@ ## ## @@ -27957,7 +27957,7 @@ diff --exclude-from=exclude -N -u -r nsaserefpolicy/policy/modules/services/xser + xserver_read_xdm_tmp_files($3) + + # X object manager -+ xserver_common_x_domain_template($1,$1,$2) ++ xserver_common_x_domain_template($1,$1,$3) + + userdom_search_user_home_dirs($1,$3) + userdom_manage_user_home_content_dirs($1, xdm_t) diff --git a/selinux-policy.spec b/selinux-policy.spec index f6822d5..3b973f2 100644 --- a/selinux-policy.spec +++ b/selinux-policy.spec @@ -17,7 +17,7 @@ Summary: SELinux policy configuration Name: selinux-policy Version: 3.3.1 -Release: 74%{?dist} +Release: 75%{?dist} License: GPLv2+ Group: System Environment/Base Source: serefpolicy-%{version}.tgz @@ -385,6 +385,12 @@ exit 0 %endif %changelog +* Tue Jul 2 2008 Dan Walsh 3.3.1-75 +- Fix transition from unconfined_t to dhcpc_t +- Allow all system domains and application domains to append to any log file +- allow sendmail to use courier_spool fifo files + + * Tue Jul 1 2008 Dan Walsh 3.3.1-74 - Make virtd an unconfined domain