GitWeb
Get Gentoo!
gentoo.org sites
gentoo.org
Wiki
Bugs
Forums
Packages
Planet
Archives
Sources
Infra Status
Home
Gentoo Repository
Repositories
Projects
Developer Overlays
User Overlays
Data
Websites
index
:
proj/hardened-refpolicy.git
concord-dev
mailinfra
master
secmodel
Gentoo Hardened SELinux reference policy implementation
Sven Vermeulen <swift@gentoo.org>
about
summary
refs
log
tree
commit
diff
log msg
author
committer
range
path:
root
/
policy
/
modules
/
system
Commit message (
Expand
)
Author
Age
Files
Lines
*
systemd: add networkd rules required at least since version 256
Marc Schiffbauer
2025-01-06
1
-0
/
+2
*
Fix codespell errors
Jason Zaman
2024-12-14
1
-1
/
+1
*
authlogin: connect to nsresourced
Rahul Sandhu
2024-12-14
1
-0
/
+1
*
systemd-homework: move optional policy to end of block
Rahul Sandhu
2024-12-14
1
-6
/
+6
*
systemd_stream_connect_homed: genrequire systemd_userdbd_runtime_t
Rahul Sandhu
2024-12-14
1
-0
/
+1
*
systemd-homed: fix filecontexts for systemd_home_storage_t objects
Rahul Sandhu
2024-12-14
1
-1
/
+1
*
systemd-homed: use files_read_etc_runtime_files to read machine-id
Rahul Sandhu
2024-12-14
1
-2
/
+2
*
systemd-homework: reformat *_files_pattern block
Rahul Sandhu
2024-12-14
1
-4
/
+4
*
systemd-homed: make lvm related policy optional
Rahul Sandhu
2024-12-14
1
-2
/
+4
*
systemd_stream_connect_homed: make use of stream_connect_pattern
Rahul Sandhu
2024-12-14
1
-1
/
+1
*
systemd_homed_record_t: new type for user records
Rahul Sandhu
2024-12-14
2
-0
/
+9
*
systemd_homework_t: allow managing of lvm_runtime_t files and dirs
Rahul Sandhu
2024-12-14
1
-0
/
+4
*
lvm_manage_runtime_dirs: new interface for managing LVM runtime dirs
Rahul Sandhu
2024-12-14
1
-0
/
+19
*
systemd: getattr namespace files
Christian Göttsche
2024-12-14
3
-0
/
+11
*
systemd: permit sysusers to create /etc/group
Christian Göttsche
2024-12-14
1
-0
/
+2
*
systemd_homed_runtime_work_dir_t: new type for systemd-homed workdir
Rahul Sandhu
2024-12-14
2
-1
/
+6
*
authlogin: connect to homed
Rahul Sandhu
2024-12-14
1
-0
/
+1
*
systemd-homed: label LUKS home images as systemd_homed_storage_t
Rahul Sandhu
2024-12-14
1
-0
/
+3
*
systemd_homed_t, systemd_homework_t: allow reading of /etc/machine-id
Rahul Sandhu
2024-12-14
1
-0
/
+6
*
locallogin: allow talking to systemd-homed user record APIs
Rahul Sandhu
2024-12-14
1
-0
/
+2
*
systemd_stream_connect_homed: new interface to access account info
Rahul Sandhu
2024-12-14
1
-0
/
+19
*
mozilla adds .mozilla directory to /etc/skel which useradd tries to copy
Dave Sugar
2024-12-14
1
-0
/
+62
*
Communicate with locale via dbus
Dave Sugar
2024-12-14
2
-0
/
+24
*
Need search perms on cert_t/tls_privkey_t when using private types
Dave Sugar
2024-12-14
1
-4
/
+45
*
systemd: permit sd-sysuser access to admin terminal
Christian Göttsche
2024-12-14
1
-0
/
+4
*
Fix typos
Christian Göttsche
2024-12-14
3
-7
/
+7
*
locallogin: permit login process to signal itself
Christian Göttsche
2024-12-14
1
-1
/
+1
*
systemd: permit ssh generator to request vsock module
Christian Göttsche
2024-12-14
1
-0
/
+2
*
userdomain: include map in userdom_manage_user_home_content_files()
Christian Göttsche
2024-12-14
1
-1
/
+1
*
unconfined: permit io_uring access
Christian Göttsche
2024-12-14
1
-0
/
+3
*
init: Move common rules out of daemon/system interfaces.
Chris PeBenito
2024-12-14
2
-100
/
+52
*
systemd: Fix systemd_write_notify_socket().
Chris PeBenito
2024-12-14
2
-3
/
+3
*
Revert "systemd: Fix systemd_write_notify_socket()."
Chris PeBenito
2024-12-14
2
-3
/
+3
*
systemd: Fix systemd_write_notify_socket().
Chris PeBenito
2024-12-14
2
-3
/
+3
*
users: Move unconfined_u definition to unconfined module.
Chris PeBenito
2024-12-14
1
-0
/
+14
*
systemd: allow systemd-hostnamed to read vsock device
Yi Zhao
2024-09-21
1
-0
/
+1
*
systemd: fix policy for systemd-ssh-generator
Yi Zhao
2024-09-21
1
-0
/
+9
*
systemd: add policy for systemd-nsresourced
Yi Zhao
2024-09-21
3
-0
/
+61
*
systemd: allow system --user to create netlink_route_socket
Yi Zhao
2024-09-21
1
-0
/
+2
*
systemd: allow systemd-networkd to manage sock files under /run/systemd/netif
Yi Zhao
2024-09-21
1
-0
/
+1
*
systemd: set context to systemd_networkd_var_lib_t for /var/lib/systemd/network
Yi Zhao
2024-09-21
2
-0
/
+8
*
Allow interactive user terminal output for the NetLabel management tool.
Guido Trentalancia
2024-09-21
1
-0
/
+2
*
various: rules required for DV manipulation in kubevirt
Kenton Groombridge
2024-09-21
2
-0
/
+6
*
iptables: allow reading container engine tmp files
Kenton Groombridge
2024-09-21
1
-2
/
+3
*
iptables: allow reading usr files
Kenton Groombridge
2024-09-21
1
-0
/
+1
*
systemd: make xdg optional
Yi Zhao
2024-09-21
1
-2
/
+8
*
systemd: allow logind to use locallogin pidfds
Kenton Groombridge
2024-09-21
1
-0
/
+4
*
userdomain: allow administrative user to get attributes of shadow history file
Yi Zhao
2024-09-21
2
-0
/
+20
*
init: use pidfds from local login
Kenton Groombridge
2024-09-21
2
-0
/
+22
*
dbus, init: add interface for pidfd usage
Kenton Groombridge
2024-09-21
1
-1
/
+1
[next]