/[gentoo-x86]/sec-policy/selinux-base-policy/ChangeLog
Gentoo

Contents of /sec-policy/selinux-base-policy/ChangeLog

Parent Directory Parent Directory | Revision Log Revision Log


Revision 1.30 - (show annotations) (download)
Mon Sep 6 21:26:41 2004 UTC (9 years, 10 months ago) by pebenito
Branch: MAIN
Changes since 1.29: +8 -1 lines
new release

1 # ChangeLog for sec-policy/selinux-base-policy
2 # Copyright 2000-2004 Gentoo Foundation; Distributed under the GPL v2
3 # $Header: /var/cvsroot/gentoo-x86/sec-policy/selinux-base-policy/ChangeLog,v 1.29 2004/09/06 01:13:57 pebenito Exp $
4
5 *selinux-base-policy-20040906 (06 Sep 2004)
6
7 06 Sep 2004; Chris PeBenito <pebenito@gentoo.org>
8 +selinux-base-policy-20040906.ebuild:
9 New release with 1.14 merge, which has policy 18 (fine-grained netlink)
10 features.
11
12 05 Sep 2004; Chris PeBenito <pebenito@gentoo.org>
13 selinux-base-policy-20040225.ebuild, -selinux-base-policy-20040509.ebuild,
14 -selinux-base-policy-20040604.ebuild, selinux-base-policy-20040629.ebuild,
15 selinux-base-policy-20040702.ebuild:
16 Remove old builds, switch to epause and ebeep in remaining builds.
17
18 *selinux-base-policy-20040702 (02 Jul 2004)
19
20 02 Jul 2004; Chris PeBenito <pebenito@gentoo.org>
21 +selinux-base-policy-20040702.ebuild:
22 Same as 20040629, except with updated flask headers, which will come out in
23 2.6.8.
24
25 *selinux-base-policy-20040629 (29 Jun 2004)
26
27 29 Jun 2004; Chris PeBenito <pebenito@gentoo.org>
28 +selinux-base-policy-20040629.ebuild:
29 Large sysadmfile cleanup: disable admin_separation to give sysadm_r back its
30 ablility to modify all files. Minor fixes: portage_r works again, syslog-ng
31 breakage fixed, put back manual PaX policy for pageexec/segmexec.
32
33 16 Jun 2004; Chris PeBenito <pebenito@gentoo.org>
34 selinux-base-policy-20040604.ebuild:
35 Mark stable.
36
37 10 Jun 2004; Chris PeBenito <pebenito@gentoo.org>
38 selinux-base-policy-20040225.ebuild, selinux-base-policy-20040509.ebuild,
39 selinux-base-policy-20040604.ebuild:
40 Add src_compile() stub
41
42 *selinux-base-policy-20040604 (04 Jun 2004)
43
44 04 Jun 2004; Chris PeBenito <pebenito@gentoo.org>
45 +selinux-base-policy-20040604.ebuild:
46 New release including 1.12 NSA policy, and experimental sesandbox.
47
48 15 May 2004; Chris PeBenito <pebenito@gentoo.org>
49 selinux-base-policy-20040509.ebuild:
50 Mark stable.
51
52 *selinux-base-policy-20040509 (09 May 2004)
53
54 09 May 2004; Chris PeBenito <pebenito@gentoo.org>
55 +selinux-base-policy-20040509.ebuild:
56 A few small cleanups. Make PaX non exec pages macro based on arch. Large
57 portage update, get rid of portage_exec_fetch_t, portage will setexec. Add
58 global_ssp tunable.
59
60 *selinux-base-policy-20040418 (18 Apr 2004)
61
62 18 Apr 2004; Chris PeBenito <pebenito@gentoo.org>
63 +selinux-base-policy-20040418.ebuild:
64 New release for checkpolicy 1.10
65
66 *selinux-base-policy-20040414 (14 Apr 2004)
67
68 14 Apr 2004; Chris PeBenito <pebenito@gentoo.org>
69 -selinux-base-policy-20040408.ebuild, +selinux-base-policy-20040414.ebuild:
70 Minor updates
71
72 *selinux-base-policy-20040408 (08 Apr 2004)
73
74 08 Apr 2004; Chris PeBenito <pebenito@gentoo.org>
75 selinux-base-policy-20040408.ebuild:
76 New update. Users.fc is now deprecated, as the contexts for user directories
77 is now automatically generated. Portage fetching of distfiles now has a
78 subdomain, for dropping priviledges.
79
80 28 Feb 2004; Chris PeBenito <pebenito@gentoo.org>
81 selinux-base-policy-20040225.ebuild:
82 Mark stable.
83
84 *selinux-base-policy-20040225 (25 Feb 2004)
85
86 25 Feb 2004; Chris PeBenito <pebenito@gentoo.org>
87 selinux-base-policy-20040225.ebuild:
88 New support for PaX ACL hooks. Addition of tunable.te for configurable policy
89 options. Rewrite of portage.te. Now auto-transition for sysadm is default, can
90 reenable portage_r by tunable.te. Makefile update from NSA CVS.
91
92 *selinux-base-policy-20040209 (09 Feb 2004)
93
94 09 Feb 2004; Chris PeBenito <pebenito@gentoo.org>
95 selinux-base-policy-20040209.ebuild:
96 Minor revision to add XFS labeling and policy for integrated
97 runscript-run_init.
98
99 07 Feb 2004; Chris PeBenito <pebenito@gentoo.org>
100 selinux-base-policy-20040202.ebuild:
101 Mark x86 stable.
102
103 *selinux-base-policy-20040202 (02 Feb 2004)
104
105 02 Feb 2004; Chris PeBenito <pebenito@gentoo.org>
106 selinux-base-policy-20040202.ebuild:
107 A few misc fixes. Allow portage to update bootloader code, such as in lilo or
108 grub postinst. This requires checkpolicy 1.4-r1.
109
110 *selinux-base-policy-20031225 (25 Dec 2003)
111
112 25 Dec 2003; Chris PeBenito <pebenito@gentoo.org>
113 selinux-base-policy-20031225.ebuild:
114 New release, with merged NSA 1.4 policy. One critical note, this policy
115 requires pam 0.77. Much work has been done to minimize access to /etc/shadow,
116 and one requirement is in the patch for pam 0.77. If you do not use this pam
117 version or newer, you will be unable to authenticate in enforcing. Since
118 devfs no longer is usable in SELinux, it's policy has been removed. You
119 should merge the changes, remove the devfsd policy (devfsd.te and devfsd.fc),
120 load the policy, and relabel.
121
122 27 Nov 2003; Chris PeBenito <pebenito@gentoo.org>
123 selinux-base-policy-20031010-r1.ebuild:
124 Mark stable. Add build USE flag for stage building.
125
126 *selinux-base-policy-20031010-r1 (12 Nov 2003)
127
128 12 Nov 2003; Chris PeBenito <pebenito@gentoo.org>
129 selinux-base-policy-20031010-r1.ebuild,
130 files/selinux-base-policy-20031010-cvs.diff:
131 Add fixes from policy cvs for compilers, so non x86 and ppc compilers can
132 work. Also portage update as a side effect of updated setfiles code in
133 portage, from bug 31748.
134
135 28 Oct 2003; Chris PeBenito <pebenito@gentoo.org>
136 selinux-base-policy-20031010.ebuild:
137 Mark stable
138
139 *selinux-base-policy-20031010 (10 Oct 2003)
140
141 10 Oct 2003; Chris PeBenito <pebenito@gentoo.org>
142 selinux-base-policy-20031010.ebuild:
143 New release for new API. Massive cleanups all over the place.
144
145 *selinux-base-policy-20030817 (17 Aug 2003)
146
147 17 Aug 2003; Chris PeBenito <pebenito@gentoo.org>
148 selinux-base-policy-20030817.ebuild:
149 Initial commit of new API policy
150
151 10 Aug 2003; Chris PeBenito <pebenito@gentoo.org>
152 selinux-base-policy-20030729-r1.ebuild:
153 Mark stable
154
155 *selinux-base-policy-20030729-r1 (31 Jul 2003)
156
157 31 Jul 2003; Chris PeBenito <pebenito@gentoo.org>
158 selinux-base-policy-20030729-r1.ebuild:
159 New rev that handles an empty POLICYDIR sanely.
160
161 *selinux-base-policy-20030729 (29 Jul 2003)
162
163 29 Jul 2003; Chris PeBenito <pebenito@gentoo.org>
164 selinux-base-policy-20030729.ebuild:
165 Make the ebuild use POLICYDIR. Important fix so portage can load policy so
166 selinux-policy.eclass works. update_modules_t cleanup. Fix for an access when
167 merging baselayout.
168
169 *selinux-base-policy-20030720 (20 Jul 2003)
170
171 20 Jul 2003; Chris PeBenito <pebenito@gentoo.org>
172 selinux-base-policy-20030720.ebuild:
173 Many fixes, including the syslog fix. File contexts have changed, so a relabel
174 is needed. You may encounter problems relabeling /usr/portage, as its file
175 context has changed, as files should not have the same type as a domain.
176 Relabelling in permissive will fix this, or temporarily give portage_t a
177 file_type attribute. Tightened the can_exec_any() macro. Moved staff.fc to
178 users.fc, since all users with SELinux identities should have their home
179 directories have the correct identity, not the generic identity.
180
181 06 Jun 2003; Chris PeBenito <pebenito@gentoo.org>
182 selinux-base-policy-20030604.ebuild:
183 Mark stable
184
185 *selinux-base-policy-20030604 (04 Jun 2003)
186
187 04 Jun 2003; Chris PeBenito <pebenito@gentoo.org>
188 selinux-base-policy-20030604.ebuild:
189 Fix broken 20030603
190
191 04 Jun 2003; Chris PeBenito <pebenito@gentoo.org>
192 selinux-base-policy-20030603.ebuild:
193 Pulling 20030603, as there are problems, 20030604 later today
194
195 *selinux-base-policy-20030603 (03 Jun 2003)
196
197 03 Jun 2003; Chris PeBenito <pebenito@gentoo.org>
198 selinux-base-policy-20030603.ebuild:
199 Numerous various fixes. Added staff role. Removed ipsec, gpm and gpg policies
200 as they are not appropriate for the base policy, and untested.
201
202 *selinux-base-policy-20030522 (22 May 2003)
203
204 22 May 2003; Chris PeBenito <pebenito@gentoo.org>
205 selinux-base-policy-20030522.ebuild:
206 The policy is in pretty good shape now. I've been able to run in enforcing mode
207 with little problem. I've also been able to successfully merge and unmerge
208 packages in enforcing mode, with few exceptions (why does mysql need to run ps
209 during configure?).
210
211 *selinux-base-policy-20030514 (14 May 2003)
212
213 14 May 2003; Chris PeBenito <pebenito@gentoo.org>
214 selinux-base-policy-20030514.ebuild:
215 Many improvements in many areas. Of note, rlogind policies were removed. Klogd
216 is being merged into syslogd. The portage policy is much more complete, but
217 still needs work. Its suggested that all changes be merged in, policy
218 reloaded, then relabel.
219
220 *selinux-base-policy-20030419 (19 Apr 2003)
221
222 23 Apr 2003; Chris PeBenito <pebenito@gentoo.org>
223 selinux-base-policy-20030419.ebuild:
224 Marking stable for selinux-small stable usage
225
226 19 Apr 2003; Chris PeBenito <pebenito@gentoo.org> Manifest,
227 selinux-base-policy-20030419.ebuild:
228 Initial commit. Base policies for SELinux, with Gentoo-specifics

  ViewVC Help
Powered by ViewVC 1.1.20