/[gentoo-x86]/sec-policy/selinux-base-policy/ChangeLog
Gentoo

Contents of /sec-policy/selinux-base-policy/ChangeLog

Parent Directory Parent Directory | Revision Log Revision Log


Revision 1.21 - (show annotations) (download)
Mon May 10 01:38:36 2004 UTC (10 years, 3 months ago) by pebenito
Branch: MAIN
Changes since 1.20: +9 -1 lines
new release

1 # ChangeLog for sec-policy/selinux-base-policy
2 # Copyright 2000-2004 Gentoo Technologies, Inc.; Distributed under the GPL v2
3 # $Header: /home/cvsroot/gentoo-x86/sec-policy/selinux-base-policy/ChangeLog,v 1.20 2004/04/19 01:04:26 pebenito Exp $
4
5 *selinux-base-policy-20040509 (09 May 2004)
6
7 09 May 2004; Chris PeBenito <pebenito@gentoo.org>
8 +selinux-base-policy-20040509.ebuild:
9 A few small cleanups. Make PaX non exec pages macro based on arch. Large
10 portage update, get rid of portage_exec_fetch_t, portage will setexec. Add
11 global_ssp tunable.
12
13 *selinux-base-policy-20040418 (18 Apr 2004)
14
15 18 Apr 2004; Chris PeBenito <pebenito@gentoo.org>
16 +selinux-base-policy-20040418.ebuild:
17 New release for checkpolicy 1.10
18
19 *selinux-base-policy-20040414 (14 Apr 2004)
20
21 14 Apr 2004; Chris PeBenito <pebenito@gentoo.org>
22 -selinux-base-policy-20040408.ebuild, +selinux-base-policy-20040414.ebuild:
23 Minor updates
24
25 *selinux-base-policy-20040408 (08 Apr 2004)
26
27 08 Apr 2004; Chris PeBenito <pebenito@gentoo.org>
28 selinux-base-policy-20040408.ebuild:
29 New update. Users.fc is now deprecated, as the contexts for user directories
30 is now automatically generated. Portage fetching of distfiles now has a
31 subdomain, for dropping priviledges.
32
33 28 Feb 2004; Chris PeBenito <pebenito@gentoo.org>
34 selinux-base-policy-20040225.ebuild:
35 Mark stable.
36
37 *selinux-base-policy-20040225 (25 Feb 2004)
38
39 25 Feb 2004; Chris PeBenito <pebenito@gentoo.org>
40 selinux-base-policy-20040225.ebuild:
41 New support for PaX ACL hooks. Addition of tunable.te for configurable policy
42 options. Rewrite of portage.te. Now auto-transition for sysadm is default, can
43 reenable portage_r by tunable.te. Makefile update from NSA CVS.
44
45 *selinux-base-policy-20040209 (09 Feb 2004)
46
47 09 Feb 2004; Chris PeBenito <pebenito@gentoo.org>
48 selinux-base-policy-20040209.ebuild:
49 Minor revision to add XFS labeling and policy for integrated
50 runscript-run_init.
51
52 07 Feb 2004; Chris PeBenito <pebenito@gentoo.org>
53 selinux-base-policy-20040202.ebuild:
54 Mark x86 stable.
55
56 *selinux-base-policy-20040202 (02 Feb 2004)
57
58 02 Feb 2004; Chris PeBenito <pebenito@gentoo.org>
59 selinux-base-policy-20040202.ebuild:
60 A few misc fixes. Allow portage to update bootloader code, such as in lilo or
61 grub postinst. This requires checkpolicy 1.4-r1.
62
63 *selinux-base-policy-20031225 (25 Dec 2003)
64
65 25 Dec 2003; Chris PeBenito <pebenito@gentoo.org>
66 selinux-base-policy-20031225.ebuild:
67 New release, with merged NSA 1.4 policy. One critical note, this policy
68 requires pam 0.77. Much work has been done to minimize access to /etc/shadow,
69 and one requirement is in the patch for pam 0.77. If you do not use this pam
70 version or newer, you will be unable to authenticate in enforcing. Since
71 devfs no longer is usable in SELinux, it's policy has been removed. You
72 should merge the changes, remove the devfsd policy (devfsd.te and devfsd.fc),
73 load the policy, and relabel.
74
75 27 Nov 2003; Chris PeBenito <pebenito@gentoo.org>
76 selinux-base-policy-20031010-r1.ebuild:
77 Mark stable. Add build USE flag for stage building.
78
79 *selinux-base-policy-20031010-r1 (12 Nov 2003)
80
81 12 Nov 2003; Chris PeBenito <pebenito@gentoo.org>
82 selinux-base-policy-20031010-r1.ebuild,
83 files/selinux-base-policy-20031010-cvs.diff:
84 Add fixes from policy cvs for compilers, so non x86 and ppc compilers can
85 work. Also portage update as a side effect of updated setfiles code in
86 portage, from bug 31748.
87
88 28 Oct 2003; Chris PeBenito <pebenito@gentoo.org>
89 selinux-base-policy-20031010.ebuild:
90 Mark stable
91
92 *selinux-base-policy-20031010 (10 Oct 2003)
93
94 10 Oct 2003; Chris PeBenito <pebenito@gentoo.org>
95 selinux-base-policy-20031010.ebuild:
96 New release for new API. Massive cleanups all over the place.
97
98 *selinux-base-policy-20030817 (17 Aug 2003)
99
100 17 Aug 2003; Chris PeBenito <pebenito@gentoo.org>
101 selinux-base-policy-20030817.ebuild:
102 Initial commit of new API policy
103
104 10 Aug 2003; Chris PeBenito <pebenito@gentoo.org>
105 selinux-base-policy-20030729-r1.ebuild:
106 Mark stable
107
108 *selinux-base-policy-20030729-r1 (31 Jul 2003)
109
110 31 Jul 2003; Chris PeBenito <pebenito@gentoo.org>
111 selinux-base-policy-20030729-r1.ebuild:
112 New rev that handles an empty POLICYDIR sanely.
113
114 *selinux-base-policy-20030729 (29 Jul 2003)
115
116 29 Jul 2003; Chris PeBenito <pebenito@gentoo.org>
117 selinux-base-policy-20030729.ebuild:
118 Make the ebuild use POLICYDIR. Important fix so portage can load policy so
119 selinux-policy.eclass works. update_modules_t cleanup. Fix for an access when
120 merging baselayout.
121
122 *selinux-base-policy-20030720 (20 Jul 2003)
123
124 20 Jul 2003; Chris PeBenito <pebenito@gentoo.org>
125 selinux-base-policy-20030720.ebuild:
126 Many fixes, including the syslog fix. File contexts have changed, so a relabel
127 is needed. You may encounter problems relabeling /usr/portage, as its file
128 context has changed, as files should not have the same type as a domain.
129 Relabelling in permissive will fix this, or temporarily give portage_t a
130 file_type attribute. Tightened the can_exec_any() macro. Moved staff.fc to
131 users.fc, since all users with SELinux identities should have their home
132 directories have the correct identity, not the generic identity.
133
134 06 Jun 2003; Chris PeBenito <pebenito@gentoo.org>
135 selinux-base-policy-20030604.ebuild:
136 Mark stable
137
138 *selinux-base-policy-20030604 (04 Jun 2003)
139
140 04 Jun 2003; Chris PeBenito <pebenito@gentoo.org>
141 selinux-base-policy-20030604.ebuild:
142 Fix broken 20030603
143
144 04 Jun 2003; Chris PeBenito <pebenito@gentoo.org>
145 selinux-base-policy-20030603.ebuild:
146 Pulling 20030603, as there are problems, 20030604 later today
147
148 *selinux-base-policy-20030603 (03 Jun 2003)
149
150 03 Jun 2003; Chris PeBenito <pebenito@gentoo.org>
151 selinux-base-policy-20030603.ebuild:
152 Numerous various fixes. Added staff role. Removed ipsec, gpm and gpg policies
153 as they are not appropriate for the base policy, and untested.
154
155 *selinux-base-policy-20030522 (22 May 2003)
156
157 22 May 2003; Chris PeBenito <pebenito@gentoo.org>
158 selinux-base-policy-20030522.ebuild:
159 The policy is in pretty good shape now. I've been able to run in enforcing mode
160 with little problem. I've also been able to successfully merge and unmerge
161 packages in enforcing mode, with few exceptions (why does mysql need to run ps
162 during configure?).
163
164 *selinux-base-policy-20030514 (14 May 2003)
165
166 14 May 2003; Chris PeBenito <pebenito@gentoo.org>
167 selinux-base-policy-20030514.ebuild:
168 Many improvements in many areas. Of note, rlogind policies were removed. Klogd
169 is being merged into syslogd. The portage policy is much more complete, but
170 still needs work. Its suggested that all changes be merged in, policy
171 reloaded, then relabel.
172
173 *selinux-base-policy-20030419 (19 Apr 2003)
174
175 23 Apr 2003; Chris PeBenito <pebenito@gentoo.org>
176 selinux-base-policy-20030419.ebuild:
177 Marking stable for selinux-small stable usage
178
179 19 Apr 2003; Chris PeBenito <pebenito@gentoo.org> Manifest,
180 selinux-base-policy-20030419.ebuild:
181 Initial commit. Base policies for SELinux, with Gentoo-specifics

  ViewVC Help
Powered by ViewVC 1.1.20