GitWeb
Get Gentoo!
gentoo.org sites
gentoo.org
Wiki
Bugs
Forums
Packages
Planet
Archives
Sources
Infra Status
Home
Gentoo Repository
Repositories
Projects
Developer Overlays
User Overlays
Data
Websites
index
:
proj/hardened-refpolicy.git
concord-dev
mailinfra
master
secmodel
Gentoo Hardened SELinux reference policy implementation
Sven Vermeulen <swift@gentoo.org>
about
summary
refs
log
tree
commit
diff
log msg
author
committer
range
path:
root
/
policy
/
modules
/
apps
Commit message (
Expand
)
Author
Age
Files
Lines
*
Add support for open-vm-tools
Dave Sugar
2024-12-14
3
-0
/
+144
*
Fix typos
Christian Göttsche
2024-12-14
1
-1
/
+1
*
Adding Sepolicy rules to allow pulseaudio to access bluetooth sockets.
Raghavender Reddy Bujala
2024-09-21
1
-0
/
+2
*
Reorder perms and classes
freedom1b2830
2024-09-21
35
-56
/
+56
*
Adding Sepolicy rules to allow bluetoothctl and dbus-daemon to access unix st...
Naga Bhavani Akella
2024-09-21
1
-1
/
+1
*
uml: Remove excessive access from user domains on uml_exec_t.
Chris PeBenito
2024-05-14
1
-2
/
+2
*
SELint userspace class tweaks
Christian Göttsche
2024-03-01
1
-1
/
+0
*
Modify the gpg module so that gpg and the gpg_agent can manage gpg_runtime_t ...
Guido Trentalancia
2024-03-01
1
-0
/
+2
*
Let openoffice perform temporary file transitions and manage link files.
Guido Trentalancia
2023-10-06
1
-1
/
+2
*
loadkeys: do not audit attempts to get attributes for all directories
Yi Zhao
2023-10-06
1
-0
/
+1
*
some misc userdomain fixes
Russell Coker
2023-10-06
1
-0
/
+1
*
Add new gpg interfaces for gpg_agent execution and to avoid auditing search o...
Guido Trentalancia
2023-10-06
1
-0
/
+80
*
Update the gnome module so that the gconf daemon is able to create Unix domai...
Guido Trentalancia
2023-10-06
1
-0
/
+2
*
Update the gpg module so that the application is able to fetch new keys from ...
Guido Trentalancia
2023-10-06
1
-0
/
+2
*
Add permissions to read device sysctls to mplayer.
Guido Trentalancia
2023-10-06
1
-0
/
+1
*
Let mplayer to act as a dbus session bus client (needed by the vlc media play...
Guido Trentalancia
2023-10-06
1
-0
/
+5
*
Update the openoffice module so that it can create Unix stream sockets with i...
Guido Trentalancia
2023-10-06
1
-1
/
+1
*
Let the openoffice domain manage fonts cache (fontconfig).
Guido Trentalancia
2023-10-06
1
-0
/
+1
*
Update the xscreensaver module in order to work with the latest version (test...
Guido Trentalancia
2023-10-06
4
-2
/
+65
*
Add the permissions to manage the fonts cache (fontconfig) to the window mana...
Guido Trentalancia
2023-10-06
1
-0
/
+2
*
Add missing permissions to execute binary files for the evolution_alarm_t dom...
Guido Trentalancia
2023-10-06
1
-0
/
+2
*
Let pulseaudio search debugfs directories, as currently done with other modules.
Guido Trentalancia
2023-10-06
1
-0
/
+1
*
Fix the pulseaudio module file transition for named sockets in tmp directories.
Guido Trentalancia
2023-10-06
1
-1
/
+1
*
The pulseaudio module should be able to read alsa library directories.
Guido Trentalancia
2023-10-06
1
-0
/
+1
*
chromium: allow chromium-naclhelper to create user namespaces
Kenton Groombridge
2023-10-06
1
-0
/
+1
*
mplayer:vlc paths
freedom1b2830
2023-10-06
2
-0
/
+26
*
The pulseaudio daemon and client do not normally need to use the network for ...
Guido Trentalancia
2023-10-06
1
-23
/
+36
*
mozilla: Allow user namespace creation.
Chris PeBenito
2023-03-31
1
-0
/
+1
*
chromium: Allow user namespace creation.
Chris PeBenito
2023-03-31
1
-0
/
+1
*
mandb: permit to read inherited cron files
Corentin LABBE
2023-02-13
1
-0
/
+1
*
various: use mmap_manage_file_perms
Kenton Groombridge
2022-12-13
3
-3
/
+3
*
This patch removes deprecated interfaces that were deprecated in the 20210203...
Russell Coker
2022-12-13
1
-16
/
+1
*
domain: move kernel_read_crypto_sysctls to a common location
Dave Sugar
2022-11-02
7
-12
/
+0
*
screen: add interface to dontaudit runtime sock file
Kenton Groombridge
2022-11-02
1
-0
/
+18
*
Make hide_broken_symptoms unconditional.
Chris PeBenito
2022-03-30
3
-15
/
+8
*
various: various userns capability permissions
Kenton Groombridge
2022-01-29
2
-0
/
+3
*
container, gpg, userdom: allow container engines to execute gpg
Kenton Groombridge
2022-01-29
1
-0
/
+37
*
various: remove various mcs ranged transitions
Kenton Groombridge
2022-01-29
1
-4
/
+0
*
Drop module versioning.
Chris PeBenito
2022-01-29
44
-44
/
+44
*
pulseaudio: Remove gentoo-specific interfaces
Jason Zaman
2021-11-20
1
-26
/
+0
*
wine: fix roleattribute statement
Kenton Groombridge
2021-11-20
1
-1
/
+1
*
various: Module version bump.
Chris PeBenito
2021-11-20
28
-28
/
+28
*
mpd, pulseaudio: split domtrans and client access
Kenton Groombridge
2021-11-20
1
-6
/
+20
*
mono: use user exec domain attribute
Kenton Groombridge
2021-11-20
1
-9
/
+14
*
wine: use user exec domain attribute
Kenton Groombridge
2021-11-20
1
-21
/
+37
*
cryfs, roles: use user exec domain attribute
Kenton Groombridge
2021-11-20
1
-8
/
+23
*
wm, roles: use user exec domain attribute
Kenton Groombridge
2021-11-20
1
-12
/
+21
*
wireshark, roles: use user exec domain attribute
Kenton Groombridge
2021-11-20
1
-8
/
+23
*
vmware, roles: use user exec domain attribute
Kenton Groombridge
2021-11-20
1
-8
/
+23
*
userhelper, roles: use user exec domain attribute
Kenton Groombridge
2021-11-20
1
-8
/
+21
[next]