summaryrefslogtreecommitdiff
Commit message (Expand)AuthorAgeFilesLines
* Merge upstream2.20220106-r2Jason Zaman2022-03-301-1/+1
* new sddm V2Russell Coker2022-03-307-0/+17
* apache: Remove unnecessary require in apache_exec().Chris PeBenito2022-03-301-1/+1
* postfix: Move lines.Chris PeBenito2022-03-301-9/+9
* init dbus patch for GetDynamicUsers with systemd_use_nss() V2Russell Coker2022-03-302-8/+13
* certbot V3Russell Coker2022-03-302-3/+55
* systemd.if: Allowed reading systemd_userdbd_runtime_t symlinks in systemd_str...Jonathan Davies2022-03-301-0/+1
* networkmanager: allow getting systemd system statusKenton Groombridge2022-03-301-0/+1
* udev: allow udev to start the systemd system objectKenton Groombridge2022-03-301-0/+1
* unconfined: fixes for bluetooth dbus chat and systemdKenton Groombridge2022-03-301-0/+5
* getty, locallogin: cgroup fixesKenton Groombridge2022-03-302-0/+6
* systemd: add support for systemd-resolved stubsKenton Groombridge2022-03-301-0/+4
* systemd: various fixesKenton Groombridge2022-03-301-0/+12
* authlogin: dontaudit getcap chkpwdKenton Groombridge2022-03-301-0/+1
* locallogin: fix for polyinstantiationKenton Groombridge2022-03-301-0/+4
* sudo: fixes for polyinstantiationKenton Groombridge2022-03-301-0/+6
* files, init: allow init to remount filesystems mounted on /bootKenton Groombridge2022-03-302-0/+19
* init: allow systemd to nnp_transition and nosuid_transition to daemon domainsKenton Groombridge2022-03-301-0/+2
* Rules.modular: add pure-load targetChristian Göttsche2022-03-301-1/+12
* Makefile: use override for adding optionsChristian Göttsche2022-03-301-5/+5
* Rules.monolithic: add target to generate CIL policyChristian Göttsche2022-03-301-0/+15
* Makefile: invoke python with -bbChristian Göttsche2022-03-301-1/+1
* policy.dtd: more strict bool/tunable and infoflow validationChristian Göttsche2022-03-301-4/+4
* policy_capabilities: add ioctl_skip_cloexecChristian Göttsche2022-03-301-1/+9
* flask: add new kernel security classesChristian Göttsche2022-03-302-2/+19
* build.conf: bump policy version in commentChristian Göttsche2022-03-301-1/+1
* docker, podman: container units now have the runtime unit typeKenton Groombridge2022-03-302-4/+4
* dbus, policykit: add tunables for dbus-broker accessKenton Groombridge2022-03-302-0/+120
* dbus: fixes for dbus-brokerKenton Groombridge2022-03-301-0/+7
* init: split access for systemd runtime unitsKenton Groombridge2022-03-303-7/+87
* podman: add explicit range transition for conmonKenton Groombridge2022-03-301-0/+16
* systemd.te: Added boolean for allowing dhcpd server packets.Jonathan Davies2022-03-301-0/+12
* mailmain: Fix SELint issues.Chris PeBenito2022-03-301-4/+2
* mailmain: Fix check_fc_files issue.Chris PeBenito2022-03-301-1/+1
* mailman3 V3Russell Coker2022-03-305-8/+173
* Make hide_broken_symptoms unconditional.Chris PeBenito2022-03-3025-174/+92
* Merge upstreamJason Zaman2022-02-261-1/+1
* matrixd: SELint fixes.Chris PeBenito2022-02-261-1/+1
* matrixd: Cleanups.Chris PeBenito2022-02-263-22/+21
* matrixd-synapse policy V3Russell Coker2022-02-264-1/+132
* puppet: Style fixes.Chris PeBenito2022-02-262-7/+8
* puppet V3Russell Coker2022-02-262-2/+8
* cron, dbus, policykit, postfix: Minor style fixes.Chris PeBenito2022-02-264-9/+7
* dontaudit net_admin without hide_broken_symptomsRussell Coker2022-02-264-0/+8
* postfix, spamassassin: Fix missed type renames after alias removals.Chris PeBenito2022-02-262-6/+6
* remove aliases from 20210203Russell Coker2022-02-2610-12/+1
* Merge upstream2.20220106-r1Jason Zaman2022-02-061-1/+1
* domain: Allow lockdown for all domains.Chris PeBenito2022-02-061-0/+5
* container: On Debian, runc is installed in /usr/sbinLaurent Bigonville2022-02-061-0/+2
* docker: On debian dockerd and docker-proxy are in /usr/sbinLaurent Bigonville2022-02-061-0/+2