[ubuntu/natty] refpolicy 2:0.2.20100524-4ubuntu1 (Accepted)

Bhavani Shankar bhavi at ubuntu.com
Sun Oct 17 15:20:27 BST 2010


refpolicy (2:0.2.20100524-4ubuntu1) natty; urgency=low

  * Merge from debian unstable. Remaining changes:
    - debian/control: drop "selinux" conflict (Debian bug 576598)

refpolicy (2:0.2.20100524-4) unstable; urgency=low

  * Label /dev/vd* as fixed_disk_device_t, closes: #589997
  * Remove mcskillall and mcsptraceall from unconfined_t, the sysadmin should
    have unconfined_t:SystemLow-SystemHigh.

refpolicy (2:0.2.20100524-3) unstable; urgency=low

  * Give freshclam_t and clamd_t the same access WRT execmem.
  * Install lvm.pp when dmsetup is installed.
  * Add label for /usr/lib/udisks/udisks-daemon .
  * Made devicekit.pp and ricci.pp not depend on consoletype.pp and don't
    build consoletype.
  * label /usr/lib/udisks/.* as bin_t
  * label /etc/kde4 the same way as /etc/kde3.
  * Escape the . in /etc/init.d/mount...
  * Allow insmod_t the capability sys_admin.
  * Label all of /etc/network/run/* as etc_runtime_t and allow udev_t to manage
    such files.
  * Label /etc/network/if-(up|down).d/postfix as initrc_exec_t so that udev
    can reload Postfix and push the queue.
  * Label /usr/lib/ConsoleKit(/.*)? as bin_t to avoid an error message on
    graphical login.
  * On initial install load module policykit.pp when policykit-1 is installed.
  * label /lib/init/rw(/.*)? as var_run_t.
  * label /var/run/xauth as xdm_var_run_t.
  * label /var/run/motd as initrc_var_run_t.

Date: Sun, 17 Oct 2010 19:29:51 +0530
Changed-By: Bhavani Shankar <bhavi at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Signed-By: Bhavani Shankar <right2bhavi at gmail.com>
https://launchpad.net/ubuntu/natty/+source/refpolicy/2:0.2.20100524-4ubuntu1
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.8
Date: Sun, 17 Oct 2010 19:29:51 +0530
Source: refpolicy
Binary: selinux-policy-default selinux-policy-mls selinux-policy-src selinux-policy-dev selinux-policy-doc
Architecture: source
Version: 2:0.2.20100524-4ubuntu1
Distribution: natty
Urgency: low
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Bhavani Shankar <bhavi at ubuntu.com>
Description: 
 selinux-policy-default - Strict and Targeted variants of the SELinux policy
 selinux-policy-dev - Headers from the SELinux reference policy for building modules
 selinux-policy-doc - Documentation for the SELinux reference policy
 selinux-policy-mls - MLS (Multi Level Security) variant of the SELinux policy
 selinux-policy-src - Source of the SELinux reference policy for customization
Closes: 589997
Changes: 
 refpolicy (2:0.2.20100524-4ubuntu1) natty; urgency=low
 .
   * Merge from debian unstable. Remaining changes:
     - debian/control: drop "selinux" conflict (Debian bug 576598)
 .
 refpolicy (2:0.2.20100524-4) unstable; urgency=low
 .
   * Label /dev/vd* as fixed_disk_device_t, closes: #589997
   * Remove mcskillall and mcsptraceall from unconfined_t, the sysadmin should
     have unconfined_t:SystemLow-SystemHigh.
 .
 refpolicy (2:0.2.20100524-3) unstable; urgency=low
 .
   * Give freshclam_t and clamd_t the same access WRT execmem.
   * Install lvm.pp when dmsetup is installed.
   * Add label for /usr/lib/udisks/udisks-daemon .
   * Made devicekit.pp and ricci.pp not depend on consoletype.pp and don't
     build consoletype.
   * label /usr/lib/udisks/.* as bin_t
   * label /etc/kde4 the same way as /etc/kde3.
   * Escape the . in /etc/init.d/mount...
   * Allow insmod_t the capability sys_admin.
   * Label all of /etc/network/run/* as etc_runtime_t and allow udev_t to manage
     such files.
   * Label /etc/network/if-(up|down).d/postfix as initrc_exec_t so that udev
     can reload Postfix and push the queue.
   * Label /usr/lib/ConsoleKit(/.*)? as bin_t to avoid an error message on
     graphical login.
   * On initial install load module policykit.pp when policykit-1 is installed.
   * label /lib/init/rw(/.*)? as var_run_t.
   * label /var/run/xauth as xdm_var_run_t.
   * label /var/run/motd as initrc_var_run_t.
Checksums-Sha1: 
 1db8369a61ddaf945382a913c84ff9eaa264340d 1913 refpolicy_0.2.20100524-4ubuntu1.dsc
 fbb7aaf78eb543e35225e1624702aadf3dd3c376 781561 refpolicy_0.2.20100524.orig.tar.gz
 90ef355a085d4b027fdc3421101c67fc3c8af311 106469 refpolicy_0.2.20100524-4ubuntu1.diff.gz
Checksums-Sha256: 
 e9f29b14df021acd29db55e4fbd250974193293194b7d2a6a26e80be6c120680 1913 refpolicy_0.2.20100524-4ubuntu1.dsc
 de52e2dd7431e04b9061a246431b6f6aeac2b91af5553b2cef22c8cf853f1700 781561 refpolicy_0.2.20100524.orig.tar.gz
 b8a564d732ea4eb54efb509271a7c3667c8152b763dcab5c6c3b608cbaf9ade3 106469 refpolicy_0.2.20100524-4ubuntu1.diff.gz
Files: 
 2d7e1ffb2a9ae99fd10e661bd84b74f0 1913 admin optional refpolicy_0.2.20100524-4ubuntu1.dsc
 bc26268d634b06ffefbd87aff1aeb0b9 781561 admin optional refpolicy_0.2.20100524.orig.tar.gz
 dfa06c83b9f5e5a07f79dd2a2dd6c795 106469 admin optional refpolicy_0.2.20100524-4ubuntu1.diff.gz
Original-Maintainer: Russell Coker <russell at coker.com.au>

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.10 (GNU/Linux)

iQEcBAEBAgAGBQJMuwHzAAoJEBUe3AROXWxbSAIH/Aw4XP5GejzgZ+J2SNtZ410M
VAbmQbVq/WovzyH54Qv15e5qzcIuBbO5eEOxc7l2rFjHc0TR4bpsG36O44UJzWMK
4e0CYb5XSMIavFUUst7hAjJjD4nfBdiHoRgXlLaSyyuy33MdQObwc0RXTzpiSR2z
0eWBJ906wmDXPku3FAWhab2UxErttbWLJUdoRShgx+MUwkT/PAYzsCeeebaJoYVT
tdWFR5mLTtW+7ME8md5anPrelsmiEqxm/qJ53OchEZvDatOm7VE6eUbB+bhr64iz
UcRDCj4LkazMt/8bgPnjS1U7O4Xfl7JqhrXa3cJLoCesLnC16/XHB/qYAt/bCjA=
=G/sY
-----END PGP SIGNATURE-----


More information about the Natty-changes mailing list