refpolicy 2:2.20210203-3 source package in Ubuntu
Changelog
refpolicy (2:2.20210203-3) unstable; urgency=medium * Add policy for blkmapd which is part of nfs service (included in upstream) * Add interfaces systemd_search_user_runtime() * Allow systemd_user_runtime_dir_t to unlink dirmngr sock files * Allow sshd_t to talk to systemd_nspawn_t via Unix sockets * Allow syslogd_t to search systemd_user_runtime_t dirs * Allow acpid_t to rw input device files * Allow restorecond_t to watch all dirs * Allow mailman_queue_t to search the cron spool dir, also allow it to be started as a daemon and to write mailman pid files * Included upstream git patches for latest systemd features, this may save some pain when Bullseye+1 is released * Allow systemd-nspawn to mount on and manage more things when systemd_nspawn_labeled_namespace is on. * Allow smbcontrol_t to talk to itself via Unix domain sockets * Add policy for postfwd * Allow aptcacher_t to read urandom and random devices and to read kernel sysctls * Label /usr/lib/x86_64-linux-gnu/libexec/* as bin_t for KDE/sddm login Allow user to execute and execmod user tmpfs files, for KDE Allow user to write to user_runtime_t sock files * Add policy to run the certbot --nginx which runs nginx, doesn't work in all situations but should cover the common cases. * Set label for /usr/bin/redis-check-rdb (redis server binary in Debian) and allow redis to read certs and read vm and net sysctls. -- Russell Coker <email address hidden> Tue, 23 Feb 2021 16:57:40 +1100
Upload details
- Uploaded by:
- Debian SELinux maintainers
- Uploaded to:
- Sid
- Original maintainer:
- Debian SELinux maintainers
- Architectures:
- all
- Section:
- admin
- Urgency:
- Medium Urgency
See full publishing history Publishing
Series | Published | Component | Section |
---|
Downloads
File | Size | SHA-256 Checksum |
---|---|---|
refpolicy_2.20210203-3.dsc | 2.4 KiB | d184b403c916fafb8e5dbfcb3abf58549f06cc13c2d4ce27230562c3a6a81eeb |
refpolicy_2.20210203.orig.tar.bz2 | 550.9 KiB | 48cbf2c63ff9003bef05e03c8d3cdddb4e8f63fef2a072ae51c987301f0b874d |
refpolicy_2.20210203-3.debian.tar.xz | 85.5 KiB | 9c22102f4edd7740ad0876912d9343577fc41f97132bb4965f95d61945670352 |
Available diffs
- diff from 2:2.20210203-2 to 2:2.20210203-3 (19.6 KiB)
No changes file available.
Binary packages built by this source
- selinux-policy-default: No summary available for selinux-policy-default in ubuntu hirsute.
No description available for selinux-
policy- default in ubuntu hirsute.
- selinux-policy-dev: No summary available for selinux-policy-dev in ubuntu hirsute.
No description available for selinux-policy-dev in ubuntu hirsute.
- selinux-policy-doc: No summary available for selinux-policy-doc in ubuntu hirsute.
No description available for selinux-policy-doc in ubuntu hirsute.
- selinux-policy-mls: No summary available for selinux-policy-mls in ubuntu hirsute.
No description available for selinux-policy-mls in ubuntu hirsute.
- selinux-policy-src: No summary available for selinux-policy-src in ubuntu impish.
No description available for selinux-policy-src in ubuntu impish.