912df6d * Tue Feb 16 2021 Zdenek Pytela <zpytela@redhat.com> - 3.14.7-21

Authored and Committed by zpytela 3 years ago
    * Tue Feb 16 2021 Zdenek Pytela <zpytela@redhat.com> - 3.14.7-21
    - Allow unconfined integrity lockdown permission
    - Relocate confidentiality lockdown rule from unconfined_domain_type to unconfined
    - Allow systemd-machined manage systemd-userdbd runtime sockets
    - Enable systemd-sysctl domtrans for udev
    - Introduce kernel_load_unsigned_module interface and use it for couple domains
    - Allow gpg watch user gpg secrets dirs
    - Build also the container module in CI
    - Remove duplicate code from kernel.te
    - Allow restorecond to watch all non-auth directories
    - Allow restorecond to watch its config file
    
        
file modified
+14 -2
file modified
+2 -2