/[gentoo-x86]/sec-policy/selinux-base-policy/ChangeLog
Gentoo

Contents of /sec-policy/selinux-base-policy/ChangeLog

Parent Directory Parent Directory | Revision Log Revision Log


Revision 1.32 - (show annotations) (download)
Wed Nov 24 01:26:55 2004 UTC (9 years, 9 months ago) by pebenito
Branch: MAIN
Changes since 1.31: +7 -1 lines
new release

1 # ChangeLog for sec-policy/selinux-base-policy
2 # Copyright 2000-2004 Gentoo Foundation; Distributed under the GPL v2
3 # $Header: /var/cvsroot/gentoo-x86/sec-policy/selinux-base-policy/ChangeLog,v 1.31 2004/10/23 13:16:50 pebenito Exp $
4
5 *selinux-base-policy-20041123 (23 Nov 2004)
6
7 23 Nov 2004; Chris PeBenito <pebenito@gentoo.org>
8 +selinux-base-policy-20041123.ebuild:
9 New release with 1.18 merge.
10
11 *selinux-base-policy-20041023 (23 Oct 2004)
12
13 23 Oct 2004; Chris PeBenito <pebenito@gentoo.org>
14 +selinux-base-policy-20041023.ebuild:
15 New release with 1.16 merge. Tcpd and inetd have been deprecated since they
16 are not in the base system anymore, and probably no one uses them anyway.
17
18 *selinux-base-policy-20040906 (06 Sep 2004)
19
20 06 Sep 2004; Chris PeBenito <pebenito@gentoo.org>
21 +selinux-base-policy-20040906.ebuild:
22 New release with 1.14 merge, which has policy 18 (fine-grained netlink)
23 features.
24
25 05 Sep 2004; Chris PeBenito <pebenito@gentoo.org>
26 selinux-base-policy-20040225.ebuild, -selinux-base-policy-20040509.ebuild,
27 -selinux-base-policy-20040604.ebuild, selinux-base-policy-20040629.ebuild,
28 selinux-base-policy-20040702.ebuild:
29 Remove old builds, switch to epause and ebeep in remaining builds.
30
31 *selinux-base-policy-20040702 (02 Jul 2004)
32
33 02 Jul 2004; Chris PeBenito <pebenito@gentoo.org>
34 +selinux-base-policy-20040702.ebuild:
35 Same as 20040629, except with updated flask headers, which will come out in
36 2.6.8.
37
38 *selinux-base-policy-20040629 (29 Jun 2004)
39
40 29 Jun 2004; Chris PeBenito <pebenito@gentoo.org>
41 +selinux-base-policy-20040629.ebuild:
42 Large sysadmfile cleanup: disable admin_separation to give sysadm_r back its
43 ablility to modify all files. Minor fixes: portage_r works again, syslog-ng
44 breakage fixed, put back manual PaX policy for pageexec/segmexec.
45
46 16 Jun 2004; Chris PeBenito <pebenito@gentoo.org>
47 selinux-base-policy-20040604.ebuild:
48 Mark stable.
49
50 10 Jun 2004; Chris PeBenito <pebenito@gentoo.org>
51 selinux-base-policy-20040225.ebuild, selinux-base-policy-20040509.ebuild,
52 selinux-base-policy-20040604.ebuild:
53 Add src_compile() stub
54
55 *selinux-base-policy-20040604 (04 Jun 2004)
56
57 04 Jun 2004; Chris PeBenito <pebenito@gentoo.org>
58 +selinux-base-policy-20040604.ebuild:
59 New release including 1.12 NSA policy, and experimental sesandbox.
60
61 15 May 2004; Chris PeBenito <pebenito@gentoo.org>
62 selinux-base-policy-20040509.ebuild:
63 Mark stable.
64
65 *selinux-base-policy-20040509 (09 May 2004)
66
67 09 May 2004; Chris PeBenito <pebenito@gentoo.org>
68 +selinux-base-policy-20040509.ebuild:
69 A few small cleanups. Make PaX non exec pages macro based on arch. Large
70 portage update, get rid of portage_exec_fetch_t, portage will setexec. Add
71 global_ssp tunable.
72
73 *selinux-base-policy-20040418 (18 Apr 2004)
74
75 18 Apr 2004; Chris PeBenito <pebenito@gentoo.org>
76 +selinux-base-policy-20040418.ebuild:
77 New release for checkpolicy 1.10
78
79 *selinux-base-policy-20040414 (14 Apr 2004)
80
81 14 Apr 2004; Chris PeBenito <pebenito@gentoo.org>
82 -selinux-base-policy-20040408.ebuild, +selinux-base-policy-20040414.ebuild:
83 Minor updates
84
85 *selinux-base-policy-20040408 (08 Apr 2004)
86
87 08 Apr 2004; Chris PeBenito <pebenito@gentoo.org>
88 selinux-base-policy-20040408.ebuild:
89 New update. Users.fc is now deprecated, as the contexts for user directories
90 is now automatically generated. Portage fetching of distfiles now has a
91 subdomain, for dropping priviledges.
92
93 28 Feb 2004; Chris PeBenito <pebenito@gentoo.org>
94 selinux-base-policy-20040225.ebuild:
95 Mark stable.
96
97 *selinux-base-policy-20040225 (25 Feb 2004)
98
99 25 Feb 2004; Chris PeBenito <pebenito@gentoo.org>
100 selinux-base-policy-20040225.ebuild:
101 New support for PaX ACL hooks. Addition of tunable.te for configurable policy
102 options. Rewrite of portage.te. Now auto-transition for sysadm is default, can
103 reenable portage_r by tunable.te. Makefile update from NSA CVS.
104
105 *selinux-base-policy-20040209 (09 Feb 2004)
106
107 09 Feb 2004; Chris PeBenito <pebenito@gentoo.org>
108 selinux-base-policy-20040209.ebuild:
109 Minor revision to add XFS labeling and policy for integrated
110 runscript-run_init.
111
112 07 Feb 2004; Chris PeBenito <pebenito@gentoo.org>
113 selinux-base-policy-20040202.ebuild:
114 Mark x86 stable.
115
116 *selinux-base-policy-20040202 (02 Feb 2004)
117
118 02 Feb 2004; Chris PeBenito <pebenito@gentoo.org>
119 selinux-base-policy-20040202.ebuild:
120 A few misc fixes. Allow portage to update bootloader code, such as in lilo or
121 grub postinst. This requires checkpolicy 1.4-r1.
122
123 *selinux-base-policy-20031225 (25 Dec 2003)
124
125 25 Dec 2003; Chris PeBenito <pebenito@gentoo.org>
126 selinux-base-policy-20031225.ebuild:
127 New release, with merged NSA 1.4 policy. One critical note, this policy
128 requires pam 0.77. Much work has been done to minimize access to /etc/shadow,
129 and one requirement is in the patch for pam 0.77. If you do not use this pam
130 version or newer, you will be unable to authenticate in enforcing. Since
131 devfs no longer is usable in SELinux, it's policy has been removed. You
132 should merge the changes, remove the devfsd policy (devfsd.te and devfsd.fc),
133 load the policy, and relabel.
134
135 27 Nov 2003; Chris PeBenito <pebenito@gentoo.org>
136 selinux-base-policy-20031010-r1.ebuild:
137 Mark stable. Add build USE flag for stage building.
138
139 *selinux-base-policy-20031010-r1 (12 Nov 2003)
140
141 12 Nov 2003; Chris PeBenito <pebenito@gentoo.org>
142 selinux-base-policy-20031010-r1.ebuild,
143 files/selinux-base-policy-20031010-cvs.diff:
144 Add fixes from policy cvs for compilers, so non x86 and ppc compilers can
145 work. Also portage update as a side effect of updated setfiles code in
146 portage, from bug 31748.
147
148 28 Oct 2003; Chris PeBenito <pebenito@gentoo.org>
149 selinux-base-policy-20031010.ebuild:
150 Mark stable
151
152 *selinux-base-policy-20031010 (10 Oct 2003)
153
154 10 Oct 2003; Chris PeBenito <pebenito@gentoo.org>
155 selinux-base-policy-20031010.ebuild:
156 New release for new API. Massive cleanups all over the place.
157
158 *selinux-base-policy-20030817 (17 Aug 2003)
159
160 17 Aug 2003; Chris PeBenito <pebenito@gentoo.org>
161 selinux-base-policy-20030817.ebuild:
162 Initial commit of new API policy
163
164 10 Aug 2003; Chris PeBenito <pebenito@gentoo.org>
165 selinux-base-policy-20030729-r1.ebuild:
166 Mark stable
167
168 *selinux-base-policy-20030729-r1 (31 Jul 2003)
169
170 31 Jul 2003; Chris PeBenito <pebenito@gentoo.org>
171 selinux-base-policy-20030729-r1.ebuild:
172 New rev that handles an empty POLICYDIR sanely.
173
174 *selinux-base-policy-20030729 (29 Jul 2003)
175
176 29 Jul 2003; Chris PeBenito <pebenito@gentoo.org>
177 selinux-base-policy-20030729.ebuild:
178 Make the ebuild use POLICYDIR. Important fix so portage can load policy so
179 selinux-policy.eclass works. update_modules_t cleanup. Fix for an access when
180 merging baselayout.
181
182 *selinux-base-policy-20030720 (20 Jul 2003)
183
184 20 Jul 2003; Chris PeBenito <pebenito@gentoo.org>
185 selinux-base-policy-20030720.ebuild:
186 Many fixes, including the syslog fix. File contexts have changed, so a relabel
187 is needed. You may encounter problems relabeling /usr/portage, as its file
188 context has changed, as files should not have the same type as a domain.
189 Relabelling in permissive will fix this, or temporarily give portage_t a
190 file_type attribute. Tightened the can_exec_any() macro. Moved staff.fc to
191 users.fc, since all users with SELinux identities should have their home
192 directories have the correct identity, not the generic identity.
193
194 06 Jun 2003; Chris PeBenito <pebenito@gentoo.org>
195 selinux-base-policy-20030604.ebuild:
196 Mark stable
197
198 *selinux-base-policy-20030604 (04 Jun 2003)
199
200 04 Jun 2003; Chris PeBenito <pebenito@gentoo.org>
201 selinux-base-policy-20030604.ebuild:
202 Fix broken 20030603
203
204 04 Jun 2003; Chris PeBenito <pebenito@gentoo.org>
205 selinux-base-policy-20030603.ebuild:
206 Pulling 20030603, as there are problems, 20030604 later today
207
208 *selinux-base-policy-20030603 (03 Jun 2003)
209
210 03 Jun 2003; Chris PeBenito <pebenito@gentoo.org>
211 selinux-base-policy-20030603.ebuild:
212 Numerous various fixes. Added staff role. Removed ipsec, gpm and gpg policies
213 as they are not appropriate for the base policy, and untested.
214
215 *selinux-base-policy-20030522 (22 May 2003)
216
217 22 May 2003; Chris PeBenito <pebenito@gentoo.org>
218 selinux-base-policy-20030522.ebuild:
219 The policy is in pretty good shape now. I've been able to run in enforcing mode
220 with little problem. I've also been able to successfully merge and unmerge
221 packages in enforcing mode, with few exceptions (why does mysql need to run ps
222 during configure?).
223
224 *selinux-base-policy-20030514 (14 May 2003)
225
226 14 May 2003; Chris PeBenito <pebenito@gentoo.org>
227 selinux-base-policy-20030514.ebuild:
228 Many improvements in many areas. Of note, rlogind policies were removed. Klogd
229 is being merged into syslogd. The portage policy is much more complete, but
230 still needs work. Its suggested that all changes be merged in, policy
231 reloaded, then relabel.
232
233 *selinux-base-policy-20030419 (19 Apr 2003)
234
235 23 Apr 2003; Chris PeBenito <pebenito@gentoo.org>
236 selinux-base-policy-20030419.ebuild:
237 Marking stable for selinux-small stable usage
238
239 19 Apr 2003; Chris PeBenito <pebenito@gentoo.org> Manifest,
240 selinux-base-policy-20030419.ebuild:
241 Initial commit. Base policies for SELinux, with Gentoo-specifics

  ViewVC Help
Powered by ViewVC 1.1.20