Revisions of selinux-policy

Johannes Segitz's avatar Johannes Segitz (jsegitz) committed (revision 1)
- Update to version 20230428:
  * training modifications
  * cron
  * Revert "Apply fix_nagios.patch"
  * Revert "Apply fix_miscfiles.patch"
  * Revert "Apply fix_rtkit.patch"
  * Revert "Apply fix_bitlbee.patch"
  * make kernel_t unconfined again
  * prevent labeling of overlayfs filesystems based on the /var/lib/overlay path
  * allow kernel_t to relabel etc_t files
  * allow kernel_t to relabel sysnet config files

- Update to version 20230420:
  * libzypp creates temporary files in /var/adm/mount. Label it with
    rpm_var_cache_t to prevent wrong labels in /var/cache/zypp
  * only use rsync_exec_t for the rsync server, not for the client
    (bsc#1209890)
  * properly label sshd-gen-keys-start to ensure ssh host keys have proper
    labels after creation
  * Allow dovecot-deliver write to the main process runtime fifo files
  * Allow dmidecode write to cloud-init tmp files
  * Allow chronyd send a message to cloud-init over a datagram socket
  * Allow cloud-init domain transition to insights-client domain
  * Allow mongodb read filesystem sysctls
  * Allow mongodb read network sysctls
  * Allow accounts-daemon read generic systemd unit lnk files
  * Allow blueman watch generic device dirs
  * Allow nm-dispatcher tlp plugin create tlp dirs
  * Allow systemd-coredump mounton /usr
  * Allow rabbitmq to read network sysctls
Displaying 1 revision
openSUSE Build Service is sponsored by