28b3f2e * Wed Nov 19 2014 Lukas Vrabec <lvrabec@redhat.com> 3.13.1-97

Authored and Committed by lvrabec 9 years ago
    * Wed Nov 19 2014 Lukas Vrabec <lvrabec@redhat.com> 3.13.1-97
    - Allow login programs to write to processes at all levels.
    - Fix seutil_dontaudit_access_check_semanage_read_lock()
    - Fix audit_access interfaces to make it sense in seutils.if.
    - Label sock file charon.vici as ipsec_var_run_t. BZ(1165065)
    - Add seutil_access_check_module_store() interfaces.
    - Add seutil_access_check_semanage_read_lock().
    - Add seutil_access_check_setfiles() interface.
    - Add additional interfaces for access checks on load_policy
    - Allow sendmail to create dead.letter. BZ(1165443)
    - Add support for /usr/bin/start-puppet-ca helper script.
    - Allow rpm scripts to enable/disable transient systemd units.
    - Allow openvpn to create uuid connections in /var/run/NetworkManager with NM labeling.
    - Make kpropdas nsswitch domain
    - Make all glance domain as nsswitch domains.
    - Allow selinux_child running as sssd access check on /etc/selinux/targeted/modules/active.
    - Allow access checks on setfiles/load_policy/semanage_lock for selinux_child running as sssd_t.
    
        
file modified
+79 -41
file modified
+52 -31
file modified
+19 -1