/[gentoo-x86]/sec-policy/selinux-base-policy/ChangeLog
Gentoo

Contents of /sec-policy/selinux-base-policy/ChangeLog

Parent Directory Parent Directory | Revision Log Revision Log


Revision 1.35 - (show annotations) (download)
Sun Mar 6 21:02:40 2005 UTC (9 years, 4 months ago) by pebenito
Branch: MAIN
Changes since 1.34: +7 -1 lines
new release
(Portage version: 2.0.51.19)

1 # ChangeLog for sec-policy/selinux-base-policy
2 # Copyright 2000-2005 Gentoo Foundation; Distributed under the GPL v2
3 # $Header: /var/cvsroot/gentoo-x86/sec-policy/selinux-base-policy/ChangeLog,v 1.34 2005/02/25 02:38:25 pebenito Exp $
4
5 *selinux-base-policy-20050306 (06 Mar 2005)
6
7 06 Mar 2005; Chris PeBenito <pebenito@gentoo.org>
8 +selinux-base-policy-20050306.ebuild:
9 Fix bad samba_domain dummy macro. Add policies needed for udev support.
10
11 *selinux-base-policy-20050224 (24 Feb 2005)
12
13 24 Feb 2005; Chris PeBenito <pebenito@gentoo.org>
14 +selinux-base-policy-20050224.ebuild:
15 New release.
16
17 19 Jan 2005; Chris PeBenito <pebenito@gentoo.org>
18 selinux-base-policy-20041123.ebuild:
19 Mark stable.
20
21 *selinux-base-policy-20041123 (23 Nov 2004)
22
23 23 Nov 2004; Chris PeBenito <pebenito@gentoo.org>
24 +selinux-base-policy-20041123.ebuild:
25 New release with 1.18 merge.
26
27 *selinux-base-policy-20041023 (23 Oct 2004)
28
29 23 Oct 2004; Chris PeBenito <pebenito@gentoo.org>
30 +selinux-base-policy-20041023.ebuild:
31 New release with 1.16 merge. Tcpd and inetd have been deprecated since they
32 are not in the base system anymore, and probably no one uses them anyway.
33
34 *selinux-base-policy-20040906 (06 Sep 2004)
35
36 06 Sep 2004; Chris PeBenito <pebenito@gentoo.org>
37 +selinux-base-policy-20040906.ebuild:
38 New release with 1.14 merge, which has policy 18 (fine-grained netlink)
39 features.
40
41 05 Sep 2004; Chris PeBenito <pebenito@gentoo.org>
42 selinux-base-policy-20040225.ebuild, -selinux-base-policy-20040509.ebuild,
43 -selinux-base-policy-20040604.ebuild, selinux-base-policy-20040629.ebuild,
44 selinux-base-policy-20040702.ebuild:
45 Remove old builds, switch to epause and ebeep in remaining builds.
46
47 *selinux-base-policy-20040702 (02 Jul 2004)
48
49 02 Jul 2004; Chris PeBenito <pebenito@gentoo.org>
50 +selinux-base-policy-20040702.ebuild:
51 Same as 20040629, except with updated flask headers, which will come out in
52 2.6.8.
53
54 *selinux-base-policy-20040629 (29 Jun 2004)
55
56 29 Jun 2004; Chris PeBenito <pebenito@gentoo.org>
57 +selinux-base-policy-20040629.ebuild:
58 Large sysadmfile cleanup: disable admin_separation to give sysadm_r back its
59 ablility to modify all files. Minor fixes: portage_r works again, syslog-ng
60 breakage fixed, put back manual PaX policy for pageexec/segmexec.
61
62 16 Jun 2004; Chris PeBenito <pebenito@gentoo.org>
63 selinux-base-policy-20040604.ebuild:
64 Mark stable.
65
66 10 Jun 2004; Chris PeBenito <pebenito@gentoo.org>
67 selinux-base-policy-20040225.ebuild, selinux-base-policy-20040509.ebuild,
68 selinux-base-policy-20040604.ebuild:
69 Add src_compile() stub
70
71 *selinux-base-policy-20040604 (04 Jun 2004)
72
73 04 Jun 2004; Chris PeBenito <pebenito@gentoo.org>
74 +selinux-base-policy-20040604.ebuild:
75 New release including 1.12 NSA policy, and experimental sesandbox.
76
77 15 May 2004; Chris PeBenito <pebenito@gentoo.org>
78 selinux-base-policy-20040509.ebuild:
79 Mark stable.
80
81 *selinux-base-policy-20040509 (09 May 2004)
82
83 09 May 2004; Chris PeBenito <pebenito@gentoo.org>
84 +selinux-base-policy-20040509.ebuild:
85 A few small cleanups. Make PaX non exec pages macro based on arch. Large
86 portage update, get rid of portage_exec_fetch_t, portage will setexec. Add
87 global_ssp tunable.
88
89 *selinux-base-policy-20040418 (18 Apr 2004)
90
91 18 Apr 2004; Chris PeBenito <pebenito@gentoo.org>
92 +selinux-base-policy-20040418.ebuild:
93 New release for checkpolicy 1.10
94
95 *selinux-base-policy-20040414 (14 Apr 2004)
96
97 14 Apr 2004; Chris PeBenito <pebenito@gentoo.org>
98 -selinux-base-policy-20040408.ebuild, +selinux-base-policy-20040414.ebuild:
99 Minor updates
100
101 *selinux-base-policy-20040408 (08 Apr 2004)
102
103 08 Apr 2004; Chris PeBenito <pebenito@gentoo.org>
104 selinux-base-policy-20040408.ebuild:
105 New update. Users.fc is now deprecated, as the contexts for user directories
106 is now automatically generated. Portage fetching of distfiles now has a
107 subdomain, for dropping priviledges.
108
109 28 Feb 2004; Chris PeBenito <pebenito@gentoo.org>
110 selinux-base-policy-20040225.ebuild:
111 Mark stable.
112
113 *selinux-base-policy-20040225 (25 Feb 2004)
114
115 25 Feb 2004; Chris PeBenito <pebenito@gentoo.org>
116 selinux-base-policy-20040225.ebuild:
117 New support for PaX ACL hooks. Addition of tunable.te for configurable policy
118 options. Rewrite of portage.te. Now auto-transition for sysadm is default, can
119 reenable portage_r by tunable.te. Makefile update from NSA CVS.
120
121 *selinux-base-policy-20040209 (09 Feb 2004)
122
123 09 Feb 2004; Chris PeBenito <pebenito@gentoo.org>
124 selinux-base-policy-20040209.ebuild:
125 Minor revision to add XFS labeling and policy for integrated
126 runscript-run_init.
127
128 07 Feb 2004; Chris PeBenito <pebenito@gentoo.org>
129 selinux-base-policy-20040202.ebuild:
130 Mark x86 stable.
131
132 *selinux-base-policy-20040202 (02 Feb 2004)
133
134 02 Feb 2004; Chris PeBenito <pebenito@gentoo.org>
135 selinux-base-policy-20040202.ebuild:
136 A few misc fixes. Allow portage to update bootloader code, such as in lilo or
137 grub postinst. This requires checkpolicy 1.4-r1.
138
139 *selinux-base-policy-20031225 (25 Dec 2003)
140
141 25 Dec 2003; Chris PeBenito <pebenito@gentoo.org>
142 selinux-base-policy-20031225.ebuild:
143 New release, with merged NSA 1.4 policy. One critical note, this policy
144 requires pam 0.77. Much work has been done to minimize access to /etc/shadow,
145 and one requirement is in the patch for pam 0.77. If you do not use this pam
146 version or newer, you will be unable to authenticate in enforcing. Since
147 devfs no longer is usable in SELinux, it's policy has been removed. You
148 should merge the changes, remove the devfsd policy (devfsd.te and devfsd.fc),
149 load the policy, and relabel.
150
151 27 Nov 2003; Chris PeBenito <pebenito@gentoo.org>
152 selinux-base-policy-20031010-r1.ebuild:
153 Mark stable. Add build USE flag for stage building.
154
155 *selinux-base-policy-20031010-r1 (12 Nov 2003)
156
157 12 Nov 2003; Chris PeBenito <pebenito@gentoo.org>
158 selinux-base-policy-20031010-r1.ebuild,
159 files/selinux-base-policy-20031010-cvs.diff:
160 Add fixes from policy cvs for compilers, so non x86 and ppc compilers can
161 work. Also portage update as a side effect of updated setfiles code in
162 portage, from bug 31748.
163
164 28 Oct 2003; Chris PeBenito <pebenito@gentoo.org>
165 selinux-base-policy-20031010.ebuild:
166 Mark stable
167
168 *selinux-base-policy-20031010 (10 Oct 2003)
169
170 10 Oct 2003; Chris PeBenito <pebenito@gentoo.org>
171 selinux-base-policy-20031010.ebuild:
172 New release for new API. Massive cleanups all over the place.
173
174 *selinux-base-policy-20030817 (17 Aug 2003)
175
176 17 Aug 2003; Chris PeBenito <pebenito@gentoo.org>
177 selinux-base-policy-20030817.ebuild:
178 Initial commit of new API policy
179
180 10 Aug 2003; Chris PeBenito <pebenito@gentoo.org>
181 selinux-base-policy-20030729-r1.ebuild:
182 Mark stable
183
184 *selinux-base-policy-20030729-r1 (31 Jul 2003)
185
186 31 Jul 2003; Chris PeBenito <pebenito@gentoo.org>
187 selinux-base-policy-20030729-r1.ebuild:
188 New rev that handles an empty POLICYDIR sanely.
189
190 *selinux-base-policy-20030729 (29 Jul 2003)
191
192 29 Jul 2003; Chris PeBenito <pebenito@gentoo.org>
193 selinux-base-policy-20030729.ebuild:
194 Make the ebuild use POLICYDIR. Important fix so portage can load policy so
195 selinux-policy.eclass works. update_modules_t cleanup. Fix for an access when
196 merging baselayout.
197
198 *selinux-base-policy-20030720 (20 Jul 2003)
199
200 20 Jul 2003; Chris PeBenito <pebenito@gentoo.org>
201 selinux-base-policy-20030720.ebuild:
202 Many fixes, including the syslog fix. File contexts have changed, so a relabel
203 is needed. You may encounter problems relabeling /usr/portage, as its file
204 context has changed, as files should not have the same type as a domain.
205 Relabelling in permissive will fix this, or temporarily give portage_t a
206 file_type attribute. Tightened the can_exec_any() macro. Moved staff.fc to
207 users.fc, since all users with SELinux identities should have their home
208 directories have the correct identity, not the generic identity.
209
210 06 Jun 2003; Chris PeBenito <pebenito@gentoo.org>
211 selinux-base-policy-20030604.ebuild:
212 Mark stable
213
214 *selinux-base-policy-20030604 (04 Jun 2003)
215
216 04 Jun 2003; Chris PeBenito <pebenito@gentoo.org>
217 selinux-base-policy-20030604.ebuild:
218 Fix broken 20030603
219
220 04 Jun 2003; Chris PeBenito <pebenito@gentoo.org>
221 selinux-base-policy-20030603.ebuild:
222 Pulling 20030603, as there are problems, 20030604 later today
223
224 *selinux-base-policy-20030603 (03 Jun 2003)
225
226 03 Jun 2003; Chris PeBenito <pebenito@gentoo.org>
227 selinux-base-policy-20030603.ebuild:
228 Numerous various fixes. Added staff role. Removed ipsec, gpm and gpg policies
229 as they are not appropriate for the base policy, and untested.
230
231 *selinux-base-policy-20030522 (22 May 2003)
232
233 22 May 2003; Chris PeBenito <pebenito@gentoo.org>
234 selinux-base-policy-20030522.ebuild:
235 The policy is in pretty good shape now. I've been able to run in enforcing mode
236 with little problem. I've also been able to successfully merge and unmerge
237 packages in enforcing mode, with few exceptions (why does mysql need to run ps
238 during configure?).
239
240 *selinux-base-policy-20030514 (14 May 2003)
241
242 14 May 2003; Chris PeBenito <pebenito@gentoo.org>
243 selinux-base-policy-20030514.ebuild:
244 Many improvements in many areas. Of note, rlogind policies were removed. Klogd
245 is being merged into syslogd. The portage policy is much more complete, but
246 still needs work. Its suggested that all changes be merged in, policy
247 reloaded, then relabel.
248
249 *selinux-base-policy-20030419 (19 Apr 2003)
250
251 23 Apr 2003; Chris PeBenito <pebenito@gentoo.org>
252 selinux-base-policy-20030419.ebuild:
253 Marking stable for selinux-small stable usage
254
255 19 Apr 2003; Chris PeBenito <pebenito@gentoo.org> Manifest,
256 selinux-base-policy-20030419.ebuild:
257 Initial commit. Base policies for SELinux, with Gentoo-specifics

  ViewVC Help
Powered by ViewVC 1.1.20