d0828ed * Thu Dec 23 2021 Zdenek Pytela <zpytela@redhat.com> - 35.8-1

Authored and Committed by zpytela 2 years ago
    * Thu Dec 23 2021 Zdenek Pytela <zpytela@redhat.com> - 35.8-1
    - Allow haproxy get attributes of filesystems with extended attributes
    - Allow haproxy get attributes of cgroup filesystems
    - Allow sysadm execute sysadmctl in sysadm_t domain using sudo
    - Allow userdomains use pam_ssh_agent_auth for passwordless sudo
    - Allow sudodomains execute passwd in the passwd domain
    - Allow braille printing in selinux
    - Allow sandbox_xserver_t map sandbox_file_t
    - Label /dev/ngXnY and /dev/nvme-subsysX with fixed_disk_device_t
    - Add hwtracing_device_t type for hardware-level tracing and debugging
    - Label port 9528/tcp with openqa_liveview
    - Label /var/lib/shorewall6-lite with shorewall_var_lib_t
    - Document Security Flask model in the policy
    
        
file modified
+16 -2
file modified
+2 -2