68923ff * Thu Dec 21 2023 Zdenek Pytela <zpytela@redhat.com> - 40.8-1

Authored and Committed by zpytela 5 months ago
    * Thu Dec 21 2023 Zdenek Pytela <zpytela@redhat.com> - 40.8-1
    - Allow hypervkvp_t write access to NetworkManager_etc_rw_t
    - Add interface for write-only access to NetworkManager rw conf
    - Allow systemd-sleep send a message to syslog over a unix dgram socket
    - Allow init create and use netlink netfilter socket
    - Allow qatlib load kernel modules
    - Allow qatlib run lspci
    - Allow qatlib manage its private runtime socket files
    - Allow qatlib read/write vfio devices
    - Label /etc/redis.conf with redis_conf_t
    - Remove the lockdown-class rules from the policy
    - Allow init read all non-security socket files
    - Replace redundant dnsmasq pattern macros
    - Remove unneeded symlink perms in dnsmasq.if
    - Add additions to dnsmasq interface
    - Allow nvme_stas_t create and use netlink kobject uevent socket
    - Allow collectd connect to statsd port
    - Allow keepalived_t to use sys_ptrace of cap_userns
    - Allow dovecot_auth_t connect to postgresql using UNIX socket
    
        
file modified
+22 -2
file modified
+2 -2