/[gentoo-x86]/sec-policy/selinux-base-policy/ChangeLog
Gentoo

Contents of /sec-policy/selinux-base-policy/ChangeLog

Parent Directory Parent Directory | Revision Log Revision Log


Revision 1.28 - (hide annotations) (download)
Fri Jul 2 23:45:39 2004 UTC (9 years, 9 months ago) by pebenito
Branch: MAIN
Changes since 1.27: +8 -1 lines
updated flask headers

1 vapier 1.3 # ChangeLog for sec-policy/selinux-base-policy
2 pebenito 1.26 # Copyright 2000-2004 Gentoo Foundation; Distributed under the GPL v2
3 pebenito 1.28 # $Header: /var/cvsroot/gentoo-x86/sec-policy/selinux-base-policy/ChangeLog,v 1.27 2004/06/30 00:28:52 pebenito Exp $
4    
5     *selinux-base-policy-20040702 (02 Jul 2004)
6    
7     02 Jul 2004; Chris PeBenito <pebenito@gentoo.org>
8     +selinux-base-policy-20040702.ebuild:
9     Same as 20040629, except with updated flask headers, which will come out in
10     2.6.8.
11 pebenito 1.27
12     *selinux-base-policy-20040629 (29 Jun 2004)
13    
14     29 Jun 2004; Chris PeBenito <pebenito@gentoo.org>
15     +selinux-base-policy-20040629.ebuild:
16     Large sysadmfile cleanup: disable admin_separation to give sysadm_r back its
17     ablility to modify all files. Minor fixes: portage_r works again, syslog-ng
18     breakage fixed, put back manual PaX policy for pageexec/segmexec.
19 pebenito 1.25
20     16 Jun 2004; Chris PeBenito <pebenito@gentoo.org>
21     selinux-base-policy-20040604.ebuild:
22     Mark stable.
23 pebenito 1.24
24     10 Jun 2004; Chris PeBenito <pebenito@gentoo.org>
25     selinux-base-policy-20040225.ebuild, selinux-base-policy-20040509.ebuild,
26     selinux-base-policy-20040604.ebuild:
27     Add src_compile() stub
28 pebenito 1.23
29     *selinux-base-policy-20040604 (04 Jun 2004)
30    
31     04 Jun 2004; Chris PeBenito <pebenito@gentoo.org>
32     +selinux-base-policy-20040604.ebuild:
33     New release including 1.12 NSA policy, and experimental sesandbox.
34 pebenito 1.22
35     15 May 2004; Chris PeBenito <pebenito@gentoo.org>
36     selinux-base-policy-20040509.ebuild:
37     Mark stable.
38 pebenito 1.21
39     *selinux-base-policy-20040509 (09 May 2004)
40    
41     09 May 2004; Chris PeBenito <pebenito@gentoo.org>
42     +selinux-base-policy-20040509.ebuild:
43     A few small cleanups. Make PaX non exec pages macro based on arch. Large
44     portage update, get rid of portage_exec_fetch_t, portage will setexec. Add
45     global_ssp tunable.
46 pebenito 1.20
47     *selinux-base-policy-20040418 (18 Apr 2004)
48    
49     18 Apr 2004; Chris PeBenito <pebenito@gentoo.org>
50     +selinux-base-policy-20040418.ebuild:
51     New release for checkpolicy 1.10
52 pebenito 1.19
53     *selinux-base-policy-20040414 (14 Apr 2004)
54    
55     14 Apr 2004; Chris PeBenito <pebenito@gentoo.org>
56     -selinux-base-policy-20040408.ebuild, +selinux-base-policy-20040414.ebuild:
57     Minor updates
58 pebenito 1.18
59     *selinux-base-policy-20040408 (08 Apr 2004)
60    
61     08 Apr 2004; Chris PeBenito <pebenito@gentoo.org>
62     selinux-base-policy-20040408.ebuild:
63     New update. Users.fc is now deprecated, as the contexts for user directories
64     is now automatically generated. Portage fetching of distfiles now has a
65     subdomain, for dropping priviledges.
66 pebenito 1.17
67     28 Feb 2004; Chris PeBenito <pebenito@gentoo.org>
68     selinux-base-policy-20040225.ebuild:
69     Mark stable.
70 pebenito 1.16
71     *selinux-base-policy-20040225 (25 Feb 2004)
72    
73     25 Feb 2004; Chris PeBenito <pebenito@gentoo.org>
74     selinux-base-policy-20040225.ebuild:
75     New support for PaX ACL hooks. Addition of tunable.te for configurable policy
76     options. Rewrite of portage.te. Now auto-transition for sysadm is default, can
77     reenable portage_r by tunable.te. Makefile update from NSA CVS.
78 pebenito 1.15
79     *selinux-base-policy-20040209 (09 Feb 2004)
80    
81     09 Feb 2004; Chris PeBenito <pebenito@gentoo.org>
82     selinux-base-policy-20040209.ebuild:
83     Minor revision to add XFS labeling and policy for integrated
84     runscript-run_init.
85 pebenito 1.14
86     07 Feb 2004; Chris PeBenito <pebenito@gentoo.org>
87     selinux-base-policy-20040202.ebuild:
88     Mark x86 stable.
89 pebenito 1.13
90     *selinux-base-policy-20040202 (02 Feb 2004)
91    
92     02 Feb 2004; Chris PeBenito <pebenito@gentoo.org>
93     selinux-base-policy-20040202.ebuild:
94     A few misc fixes. Allow portage to update bootloader code, such as in lilo or
95     grub postinst. This requires checkpolicy 1.4-r1.
96 pebenito 1.11
97     *selinux-base-policy-20031225 (25 Dec 2003)
98    
99     25 Dec 2003; Chris PeBenito <pebenito@gentoo.org>
100     selinux-base-policy-20031225.ebuild:
101     New release, with merged NSA 1.4 policy. One critical note, this policy
102     requires pam 0.77. Much work has been done to minimize access to /etc/shadow,
103     and one requirement is in the patch for pam 0.77. If you do not use this pam
104 pebenito 1.12 version or newer, you will be unable to authenticate in enforcing. Since
105     devfs no longer is usable in SELinux, it's policy has been removed. You
106     should merge the changes, remove the devfsd policy (devfsd.te and devfsd.fc),
107     load the policy, and relabel.
108 pebenito 1.10
109     27 Nov 2003; Chris PeBenito <pebenito@gentoo.org>
110     selinux-base-policy-20031010-r1.ebuild:
111     Mark stable. Add build USE flag for stage building.
112 pebenito 1.9
113     *selinux-base-policy-20031010-r1 (12 Nov 2003)
114    
115     12 Nov 2003; Chris PeBenito <pebenito@gentoo.org>
116     selinux-base-policy-20031010-r1.ebuild,
117     files/selinux-base-policy-20031010-cvs.diff:
118     Add fixes from policy cvs for compilers, so non x86 and ppc compilers can
119     work. Also portage update as a side effect of updated setfiles code in
120     portage, from bug 31748.
121 pebenito 1.8
122     28 Oct 2003; Chris PeBenito <pebenito@gentoo.org>
123     selinux-base-policy-20031010.ebuild:
124     Mark stable
125 pebenito 1.7
126     *selinux-base-policy-20031010 (10 Oct 2003)
127    
128     10 Oct 2003; Chris PeBenito <pebenito@gentoo.org>
129     selinux-base-policy-20031010.ebuild:
130     New release for new API. Massive cleanups all over the place.
131 pebenito 1.6
132     *selinux-base-policy-20030817 (17 Aug 2003)
133    
134     17 Aug 2003; Chris PeBenito <pebenito@gentoo.org>
135     selinux-base-policy-20030817.ebuild:
136     Initial commit of new API policy
137 pebenito 1.5
138     10 Aug 2003; Chris PeBenito <pebenito@gentoo.org>
139     selinux-base-policy-20030729-r1.ebuild:
140     Mark stable
141 pebenito 1.4
142     *selinux-base-policy-20030729-r1 (31 Jul 2003)
143    
144     31 Jul 2003; Chris PeBenito <pebenito@gentoo.org>
145     selinux-base-policy-20030729-r1.ebuild:
146     New rev that handles an empty POLICYDIR sanely.
147 pebenito 1.2
148     *selinux-base-policy-20030729 (29 Jul 2003)
149    
150     29 Jul 2003; Chris PeBenito <pebenito@gentoo.org>
151     selinux-base-policy-20030729.ebuild:
152     Make the ebuild use POLICYDIR. Important fix so portage can load policy so
153     selinux-policy.eclass works. update_modules_t cleanup. Fix for an access when
154     merging baselayout.
155 pebenito 1.1
156     *selinux-base-policy-20030720 (20 Jul 2003)
157    
158     20 Jul 2003; Chris PeBenito <pebenito@gentoo.org>
159     selinux-base-policy-20030720.ebuild:
160     Many fixes, including the syslog fix. File contexts have changed, so a relabel
161     is needed. You may encounter problems relabeling /usr/portage, as its file
162     context has changed, as files should not have the same type as a domain.
163     Relabelling in permissive will fix this, or temporarily give portage_t a
164     file_type attribute. Tightened the can_exec_any() macro. Moved staff.fc to
165     users.fc, since all users with SELinux identities should have their home
166     directories have the correct identity, not the generic identity.
167    
168     06 Jun 2003; Chris PeBenito <pebenito@gentoo.org>
169     selinux-base-policy-20030604.ebuild:
170     Mark stable
171    
172     *selinux-base-policy-20030604 (04 Jun 2003)
173    
174     04 Jun 2003; Chris PeBenito <pebenito@gentoo.org>
175     selinux-base-policy-20030604.ebuild:
176     Fix broken 20030603
177    
178     04 Jun 2003; Chris PeBenito <pebenito@gentoo.org>
179     selinux-base-policy-20030603.ebuild:
180     Pulling 20030603, as there are problems, 20030604 later today
181    
182     *selinux-base-policy-20030603 (03 Jun 2003)
183    
184     03 Jun 2003; Chris PeBenito <pebenito@gentoo.org>
185     selinux-base-policy-20030603.ebuild:
186     Numerous various fixes. Added staff role. Removed ipsec, gpm and gpg policies
187     as they are not appropriate for the base policy, and untested.
188    
189     *selinux-base-policy-20030522 (22 May 2003)
190    
191     22 May 2003; Chris PeBenito <pebenito@gentoo.org>
192     selinux-base-policy-20030522.ebuild:
193     The policy is in pretty good shape now. I've been able to run in enforcing mode
194     with little problem. I've also been able to successfully merge and unmerge
195     packages in enforcing mode, with few exceptions (why does mysql need to run ps
196     during configure?).
197    
198     *selinux-base-policy-20030514 (14 May 2003)
199    
200     14 May 2003; Chris PeBenito <pebenito@gentoo.org>
201     selinux-base-policy-20030514.ebuild:
202     Many improvements in many areas. Of note, rlogind policies were removed. Klogd
203     is being merged into syslogd. The portage policy is much more complete, but
204     still needs work. Its suggested that all changes be merged in, policy
205     reloaded, then relabel.
206    
207     *selinux-base-policy-20030419 (19 Apr 2003)
208    
209     23 Apr 2003; Chris PeBenito <pebenito@gentoo.org>
210     selinux-base-policy-20030419.ebuild:
211     Marking stable for selinux-small stable usage
212    
213     19 Apr 2003; Chris PeBenito <pebenito@gentoo.org> Manifest,
214     selinux-base-policy-20030419.ebuild:
215     Initial commit. Base policies for SELinux, with Gentoo-specifics

  ViewVC Help
Powered by ViewVC 1.1.20