/[gentoo-x86]/sec-policy/selinux-base-policy/ChangeLog
Gentoo

Contents of /sec-policy/selinux-base-policy/ChangeLog

Parent Directory Parent Directory | Revision Log Revision Log


Revision 1.27 - (show annotations) (download)
Wed Jun 30 00:28:52 2004 UTC (10 years, 5 months ago) by pebenito
Branch: MAIN
Changes since 1.26: +9 -1 lines
new release

1 # ChangeLog for sec-policy/selinux-base-policy
2 # Copyright 2000-2004 Gentoo Foundation; Distributed under the GPL v2
3 # $Header: /var/cvsroot/gentoo-x86/sec-policy/selinux-base-policy/ChangeLog,v 1.26 2004/06/28 00:10:36 pebenito Exp $
4
5 *selinux-base-policy-20040629 (29 Jun 2004)
6
7 29 Jun 2004; Chris PeBenito <pebenito@gentoo.org>
8 +selinux-base-policy-20040629.ebuild:
9 Large sysadmfile cleanup: disable admin_separation to give sysadm_r back its
10 ablility to modify all files. Minor fixes: portage_r works again, syslog-ng
11 breakage fixed, put back manual PaX policy for pageexec/segmexec.
12
13 16 Jun 2004; Chris PeBenito <pebenito@gentoo.org>
14 selinux-base-policy-20040604.ebuild:
15 Mark stable.
16
17 10 Jun 2004; Chris PeBenito <pebenito@gentoo.org>
18 selinux-base-policy-20040225.ebuild, selinux-base-policy-20040509.ebuild,
19 selinux-base-policy-20040604.ebuild:
20 Add src_compile() stub
21
22 *selinux-base-policy-20040604 (04 Jun 2004)
23
24 04 Jun 2004; Chris PeBenito <pebenito@gentoo.org>
25 +selinux-base-policy-20040604.ebuild:
26 New release including 1.12 NSA policy, and experimental sesandbox.
27
28 15 May 2004; Chris PeBenito <pebenito@gentoo.org>
29 selinux-base-policy-20040509.ebuild:
30 Mark stable.
31
32 *selinux-base-policy-20040509 (09 May 2004)
33
34 09 May 2004; Chris PeBenito <pebenito@gentoo.org>
35 +selinux-base-policy-20040509.ebuild:
36 A few small cleanups. Make PaX non exec pages macro based on arch. Large
37 portage update, get rid of portage_exec_fetch_t, portage will setexec. Add
38 global_ssp tunable.
39
40 *selinux-base-policy-20040418 (18 Apr 2004)
41
42 18 Apr 2004; Chris PeBenito <pebenito@gentoo.org>
43 +selinux-base-policy-20040418.ebuild:
44 New release for checkpolicy 1.10
45
46 *selinux-base-policy-20040414 (14 Apr 2004)
47
48 14 Apr 2004; Chris PeBenito <pebenito@gentoo.org>
49 -selinux-base-policy-20040408.ebuild, +selinux-base-policy-20040414.ebuild:
50 Minor updates
51
52 *selinux-base-policy-20040408 (08 Apr 2004)
53
54 08 Apr 2004; Chris PeBenito <pebenito@gentoo.org>
55 selinux-base-policy-20040408.ebuild:
56 New update. Users.fc is now deprecated, as the contexts for user directories
57 is now automatically generated. Portage fetching of distfiles now has a
58 subdomain, for dropping priviledges.
59
60 28 Feb 2004; Chris PeBenito <pebenito@gentoo.org>
61 selinux-base-policy-20040225.ebuild:
62 Mark stable.
63
64 *selinux-base-policy-20040225 (25 Feb 2004)
65
66 25 Feb 2004; Chris PeBenito <pebenito@gentoo.org>
67 selinux-base-policy-20040225.ebuild:
68 New support for PaX ACL hooks. Addition of tunable.te for configurable policy
69 options. Rewrite of portage.te. Now auto-transition for sysadm is default, can
70 reenable portage_r by tunable.te. Makefile update from NSA CVS.
71
72 *selinux-base-policy-20040209 (09 Feb 2004)
73
74 09 Feb 2004; Chris PeBenito <pebenito@gentoo.org>
75 selinux-base-policy-20040209.ebuild:
76 Minor revision to add XFS labeling and policy for integrated
77 runscript-run_init.
78
79 07 Feb 2004; Chris PeBenito <pebenito@gentoo.org>
80 selinux-base-policy-20040202.ebuild:
81 Mark x86 stable.
82
83 *selinux-base-policy-20040202 (02 Feb 2004)
84
85 02 Feb 2004; Chris PeBenito <pebenito@gentoo.org>
86 selinux-base-policy-20040202.ebuild:
87 A few misc fixes. Allow portage to update bootloader code, such as in lilo or
88 grub postinst. This requires checkpolicy 1.4-r1.
89
90 *selinux-base-policy-20031225 (25 Dec 2003)
91
92 25 Dec 2003; Chris PeBenito <pebenito@gentoo.org>
93 selinux-base-policy-20031225.ebuild:
94 New release, with merged NSA 1.4 policy. One critical note, this policy
95 requires pam 0.77. Much work has been done to minimize access to /etc/shadow,
96 and one requirement is in the patch for pam 0.77. If you do not use this pam
97 version or newer, you will be unable to authenticate in enforcing. Since
98 devfs no longer is usable in SELinux, it's policy has been removed. You
99 should merge the changes, remove the devfsd policy (devfsd.te and devfsd.fc),
100 load the policy, and relabel.
101
102 27 Nov 2003; Chris PeBenito <pebenito@gentoo.org>
103 selinux-base-policy-20031010-r1.ebuild:
104 Mark stable. Add build USE flag for stage building.
105
106 *selinux-base-policy-20031010-r1 (12 Nov 2003)
107
108 12 Nov 2003; Chris PeBenito <pebenito@gentoo.org>
109 selinux-base-policy-20031010-r1.ebuild,
110 files/selinux-base-policy-20031010-cvs.diff:
111 Add fixes from policy cvs for compilers, so non x86 and ppc compilers can
112 work. Also portage update as a side effect of updated setfiles code in
113 portage, from bug 31748.
114
115 28 Oct 2003; Chris PeBenito <pebenito@gentoo.org>
116 selinux-base-policy-20031010.ebuild:
117 Mark stable
118
119 *selinux-base-policy-20031010 (10 Oct 2003)
120
121 10 Oct 2003; Chris PeBenito <pebenito@gentoo.org>
122 selinux-base-policy-20031010.ebuild:
123 New release for new API. Massive cleanups all over the place.
124
125 *selinux-base-policy-20030817 (17 Aug 2003)
126
127 17 Aug 2003; Chris PeBenito <pebenito@gentoo.org>
128 selinux-base-policy-20030817.ebuild:
129 Initial commit of new API policy
130
131 10 Aug 2003; Chris PeBenito <pebenito@gentoo.org>
132 selinux-base-policy-20030729-r1.ebuild:
133 Mark stable
134
135 *selinux-base-policy-20030729-r1 (31 Jul 2003)
136
137 31 Jul 2003; Chris PeBenito <pebenito@gentoo.org>
138 selinux-base-policy-20030729-r1.ebuild:
139 New rev that handles an empty POLICYDIR sanely.
140
141 *selinux-base-policy-20030729 (29 Jul 2003)
142
143 29 Jul 2003; Chris PeBenito <pebenito@gentoo.org>
144 selinux-base-policy-20030729.ebuild:
145 Make the ebuild use POLICYDIR. Important fix so portage can load policy so
146 selinux-policy.eclass works. update_modules_t cleanup. Fix for an access when
147 merging baselayout.
148
149 *selinux-base-policy-20030720 (20 Jul 2003)
150
151 20 Jul 2003; Chris PeBenito <pebenito@gentoo.org>
152 selinux-base-policy-20030720.ebuild:
153 Many fixes, including the syslog fix. File contexts have changed, so a relabel
154 is needed. You may encounter problems relabeling /usr/portage, as its file
155 context has changed, as files should not have the same type as a domain.
156 Relabelling in permissive will fix this, or temporarily give portage_t a
157 file_type attribute. Tightened the can_exec_any() macro. Moved staff.fc to
158 users.fc, since all users with SELinux identities should have their home
159 directories have the correct identity, not the generic identity.
160
161 06 Jun 2003; Chris PeBenito <pebenito@gentoo.org>
162 selinux-base-policy-20030604.ebuild:
163 Mark stable
164
165 *selinux-base-policy-20030604 (04 Jun 2003)
166
167 04 Jun 2003; Chris PeBenito <pebenito@gentoo.org>
168 selinux-base-policy-20030604.ebuild:
169 Fix broken 20030603
170
171 04 Jun 2003; Chris PeBenito <pebenito@gentoo.org>
172 selinux-base-policy-20030603.ebuild:
173 Pulling 20030603, as there are problems, 20030604 later today
174
175 *selinux-base-policy-20030603 (03 Jun 2003)
176
177 03 Jun 2003; Chris PeBenito <pebenito@gentoo.org>
178 selinux-base-policy-20030603.ebuild:
179 Numerous various fixes. Added staff role. Removed ipsec, gpm and gpg policies
180 as they are not appropriate for the base policy, and untested.
181
182 *selinux-base-policy-20030522 (22 May 2003)
183
184 22 May 2003; Chris PeBenito <pebenito@gentoo.org>
185 selinux-base-policy-20030522.ebuild:
186 The policy is in pretty good shape now. I've been able to run in enforcing mode
187 with little problem. I've also been able to successfully merge and unmerge
188 packages in enforcing mode, with few exceptions (why does mysql need to run ps
189 during configure?).
190
191 *selinux-base-policy-20030514 (14 May 2003)
192
193 14 May 2003; Chris PeBenito <pebenito@gentoo.org>
194 selinux-base-policy-20030514.ebuild:
195 Many improvements in many areas. Of note, rlogind policies were removed. Klogd
196 is being merged into syslogd. The portage policy is much more complete, but
197 still needs work. Its suggested that all changes be merged in, policy
198 reloaded, then relabel.
199
200 *selinux-base-policy-20030419 (19 Apr 2003)
201
202 23 Apr 2003; Chris PeBenito <pebenito@gentoo.org>
203 selinux-base-policy-20030419.ebuild:
204 Marking stable for selinux-small stable usage
205
206 19 Apr 2003; Chris PeBenito <pebenito@gentoo.org> Manifest,
207 selinux-base-policy-20030419.ebuild:
208 Initial commit. Base policies for SELinux, with Gentoo-specifics

  ViewVC Help
Powered by ViewVC 1.1.20