/[gentoo-x86]/sec-policy/selinux-base-policy/ChangeLog
Gentoo

Contents of /sec-policy/selinux-base-policy/ChangeLog

Parent Directory Parent Directory | Revision Log Revision Log


Revision 1.28 - (show annotations) (download)
Fri Jul 2 23:45:39 2004 UTC (10 years, 5 months ago) by pebenito
Branch: MAIN
Changes since 1.27: +8 -1 lines
updated flask headers

1 # ChangeLog for sec-policy/selinux-base-policy
2 # Copyright 2000-2004 Gentoo Foundation; Distributed under the GPL v2
3 # $Header: /var/cvsroot/gentoo-x86/sec-policy/selinux-base-policy/ChangeLog,v 1.27 2004/06/30 00:28:52 pebenito Exp $
4
5 *selinux-base-policy-20040702 (02 Jul 2004)
6
7 02 Jul 2004; Chris PeBenito <pebenito@gentoo.org>
8 +selinux-base-policy-20040702.ebuild:
9 Same as 20040629, except with updated flask headers, which will come out in
10 2.6.8.
11
12 *selinux-base-policy-20040629 (29 Jun 2004)
13
14 29 Jun 2004; Chris PeBenito <pebenito@gentoo.org>
15 +selinux-base-policy-20040629.ebuild:
16 Large sysadmfile cleanup: disable admin_separation to give sysadm_r back its
17 ablility to modify all files. Minor fixes: portage_r works again, syslog-ng
18 breakage fixed, put back manual PaX policy for pageexec/segmexec.
19
20 16 Jun 2004; Chris PeBenito <pebenito@gentoo.org>
21 selinux-base-policy-20040604.ebuild:
22 Mark stable.
23
24 10 Jun 2004; Chris PeBenito <pebenito@gentoo.org>
25 selinux-base-policy-20040225.ebuild, selinux-base-policy-20040509.ebuild,
26 selinux-base-policy-20040604.ebuild:
27 Add src_compile() stub
28
29 *selinux-base-policy-20040604 (04 Jun 2004)
30
31 04 Jun 2004; Chris PeBenito <pebenito@gentoo.org>
32 +selinux-base-policy-20040604.ebuild:
33 New release including 1.12 NSA policy, and experimental sesandbox.
34
35 15 May 2004; Chris PeBenito <pebenito@gentoo.org>
36 selinux-base-policy-20040509.ebuild:
37 Mark stable.
38
39 *selinux-base-policy-20040509 (09 May 2004)
40
41 09 May 2004; Chris PeBenito <pebenito@gentoo.org>
42 +selinux-base-policy-20040509.ebuild:
43 A few small cleanups. Make PaX non exec pages macro based on arch. Large
44 portage update, get rid of portage_exec_fetch_t, portage will setexec. Add
45 global_ssp tunable.
46
47 *selinux-base-policy-20040418 (18 Apr 2004)
48
49 18 Apr 2004; Chris PeBenito <pebenito@gentoo.org>
50 +selinux-base-policy-20040418.ebuild:
51 New release for checkpolicy 1.10
52
53 *selinux-base-policy-20040414 (14 Apr 2004)
54
55 14 Apr 2004; Chris PeBenito <pebenito@gentoo.org>
56 -selinux-base-policy-20040408.ebuild, +selinux-base-policy-20040414.ebuild:
57 Minor updates
58
59 *selinux-base-policy-20040408 (08 Apr 2004)
60
61 08 Apr 2004; Chris PeBenito <pebenito@gentoo.org>
62 selinux-base-policy-20040408.ebuild:
63 New update. Users.fc is now deprecated, as the contexts for user directories
64 is now automatically generated. Portage fetching of distfiles now has a
65 subdomain, for dropping priviledges.
66
67 28 Feb 2004; Chris PeBenito <pebenito@gentoo.org>
68 selinux-base-policy-20040225.ebuild:
69 Mark stable.
70
71 *selinux-base-policy-20040225 (25 Feb 2004)
72
73 25 Feb 2004; Chris PeBenito <pebenito@gentoo.org>
74 selinux-base-policy-20040225.ebuild:
75 New support for PaX ACL hooks. Addition of tunable.te for configurable policy
76 options. Rewrite of portage.te. Now auto-transition for sysadm is default, can
77 reenable portage_r by tunable.te. Makefile update from NSA CVS.
78
79 *selinux-base-policy-20040209 (09 Feb 2004)
80
81 09 Feb 2004; Chris PeBenito <pebenito@gentoo.org>
82 selinux-base-policy-20040209.ebuild:
83 Minor revision to add XFS labeling and policy for integrated
84 runscript-run_init.
85
86 07 Feb 2004; Chris PeBenito <pebenito@gentoo.org>
87 selinux-base-policy-20040202.ebuild:
88 Mark x86 stable.
89
90 *selinux-base-policy-20040202 (02 Feb 2004)
91
92 02 Feb 2004; Chris PeBenito <pebenito@gentoo.org>
93 selinux-base-policy-20040202.ebuild:
94 A few misc fixes. Allow portage to update bootloader code, such as in lilo or
95 grub postinst. This requires checkpolicy 1.4-r1.
96
97 *selinux-base-policy-20031225 (25 Dec 2003)
98
99 25 Dec 2003; Chris PeBenito <pebenito@gentoo.org>
100 selinux-base-policy-20031225.ebuild:
101 New release, with merged NSA 1.4 policy. One critical note, this policy
102 requires pam 0.77. Much work has been done to minimize access to /etc/shadow,
103 and one requirement is in the patch for pam 0.77. If you do not use this pam
104 version or newer, you will be unable to authenticate in enforcing. Since
105 devfs no longer is usable in SELinux, it's policy has been removed. You
106 should merge the changes, remove the devfsd policy (devfsd.te and devfsd.fc),
107 load the policy, and relabel.
108
109 27 Nov 2003; Chris PeBenito <pebenito@gentoo.org>
110 selinux-base-policy-20031010-r1.ebuild:
111 Mark stable. Add build USE flag for stage building.
112
113 *selinux-base-policy-20031010-r1 (12 Nov 2003)
114
115 12 Nov 2003; Chris PeBenito <pebenito@gentoo.org>
116 selinux-base-policy-20031010-r1.ebuild,
117 files/selinux-base-policy-20031010-cvs.diff:
118 Add fixes from policy cvs for compilers, so non x86 and ppc compilers can
119 work. Also portage update as a side effect of updated setfiles code in
120 portage, from bug 31748.
121
122 28 Oct 2003; Chris PeBenito <pebenito@gentoo.org>
123 selinux-base-policy-20031010.ebuild:
124 Mark stable
125
126 *selinux-base-policy-20031010 (10 Oct 2003)
127
128 10 Oct 2003; Chris PeBenito <pebenito@gentoo.org>
129 selinux-base-policy-20031010.ebuild:
130 New release for new API. Massive cleanups all over the place.
131
132 *selinux-base-policy-20030817 (17 Aug 2003)
133
134 17 Aug 2003; Chris PeBenito <pebenito@gentoo.org>
135 selinux-base-policy-20030817.ebuild:
136 Initial commit of new API policy
137
138 10 Aug 2003; Chris PeBenito <pebenito@gentoo.org>
139 selinux-base-policy-20030729-r1.ebuild:
140 Mark stable
141
142 *selinux-base-policy-20030729-r1 (31 Jul 2003)
143
144 31 Jul 2003; Chris PeBenito <pebenito@gentoo.org>
145 selinux-base-policy-20030729-r1.ebuild:
146 New rev that handles an empty POLICYDIR sanely.
147
148 *selinux-base-policy-20030729 (29 Jul 2003)
149
150 29 Jul 2003; Chris PeBenito <pebenito@gentoo.org>
151 selinux-base-policy-20030729.ebuild:
152 Make the ebuild use POLICYDIR. Important fix so portage can load policy so
153 selinux-policy.eclass works. update_modules_t cleanup. Fix for an access when
154 merging baselayout.
155
156 *selinux-base-policy-20030720 (20 Jul 2003)
157
158 20 Jul 2003; Chris PeBenito <pebenito@gentoo.org>
159 selinux-base-policy-20030720.ebuild:
160 Many fixes, including the syslog fix. File contexts have changed, so a relabel
161 is needed. You may encounter problems relabeling /usr/portage, as its file
162 context has changed, as files should not have the same type as a domain.
163 Relabelling in permissive will fix this, or temporarily give portage_t a
164 file_type attribute. Tightened the can_exec_any() macro. Moved staff.fc to
165 users.fc, since all users with SELinux identities should have their home
166 directories have the correct identity, not the generic identity.
167
168 06 Jun 2003; Chris PeBenito <pebenito@gentoo.org>
169 selinux-base-policy-20030604.ebuild:
170 Mark stable
171
172 *selinux-base-policy-20030604 (04 Jun 2003)
173
174 04 Jun 2003; Chris PeBenito <pebenito@gentoo.org>
175 selinux-base-policy-20030604.ebuild:
176 Fix broken 20030603
177
178 04 Jun 2003; Chris PeBenito <pebenito@gentoo.org>
179 selinux-base-policy-20030603.ebuild:
180 Pulling 20030603, as there are problems, 20030604 later today
181
182 *selinux-base-policy-20030603 (03 Jun 2003)
183
184 03 Jun 2003; Chris PeBenito <pebenito@gentoo.org>
185 selinux-base-policy-20030603.ebuild:
186 Numerous various fixes. Added staff role. Removed ipsec, gpm and gpg policies
187 as they are not appropriate for the base policy, and untested.
188
189 *selinux-base-policy-20030522 (22 May 2003)
190
191 22 May 2003; Chris PeBenito <pebenito@gentoo.org>
192 selinux-base-policy-20030522.ebuild:
193 The policy is in pretty good shape now. I've been able to run in enforcing mode
194 with little problem. I've also been able to successfully merge and unmerge
195 packages in enforcing mode, with few exceptions (why does mysql need to run ps
196 during configure?).
197
198 *selinux-base-policy-20030514 (14 May 2003)
199
200 14 May 2003; Chris PeBenito <pebenito@gentoo.org>
201 selinux-base-policy-20030514.ebuild:
202 Many improvements in many areas. Of note, rlogind policies were removed. Klogd
203 is being merged into syslogd. The portage policy is much more complete, but
204 still needs work. Its suggested that all changes be merged in, policy
205 reloaded, then relabel.
206
207 *selinux-base-policy-20030419 (19 Apr 2003)
208
209 23 Apr 2003; Chris PeBenito <pebenito@gentoo.org>
210 selinux-base-policy-20030419.ebuild:
211 Marking stable for selinux-small stable usage
212
213 19 Apr 2003; Chris PeBenito <pebenito@gentoo.org> Manifest,
214 selinux-base-policy-20030419.ebuild:
215 Initial commit. Base policies for SELinux, with Gentoo-specifics

  ViewVC Help
Powered by ViewVC 1.1.20