aboutsummaryrefslogtreecommitdiff
Commit message (Expand)AuthorAgeFilesLines
* userdomain: allow administrative user to get attributes of shadow history fileYi Zhao2024-09-211-0/+1
* Reorder perms and classesfreedom1b28302024-09-211-22/+22
* userdom: allow users to read user home dir symlinksKenton Groombridge2024-05-141-0/+3
* cups: Remove PTAL.Chris PeBenito2024-05-141-1/+0
* userdom: permit reading PSI as adminChristian Göttsche2024-03-011-0/+1
* cloudinit: Add permissions derived from sysadm.Chris PeBenito2024-03-011-0/+19
* Add dontaudit to quiet down a bitDave Sugar2024-03-011-0/+18
* This works instead of allow exec on user_tmpfs_t!Dave Sugar2024-03-011-0/+4
* xguest ues systemd --userDave Sugar2024-03-011-0/+4
* https://blog.trailofbits.com/2019/07/19/understanding-docker-container-escapes/Russell Coker2023-10-061-1/+1
* small storage changes (#706)Russell Coker2023-10-061-0/+18
* some misc userdomain fixesRussell Coker2023-10-061-0/+22
* Allow all users to (optionally) send syslog messagesDave Sugar2023-10-061-0/+4
* Remove a logging interface from the userdomain module since it has now been m...Guido Trentalancia2023-10-061-2/+0
* Add permissions to watch libraries directories to the userdomain login user t...Guido Trentalancia2023-10-061-0/+1
* userdom: allow admin users to use tcpdiag netlink socketsKenton Groombridge2022-12-131-0/+1
* This patch removes deprecated interfaces that were deprecated in the 20210203...Russell Coker2022-12-131-27/+0
* kubernetes: initial policy moduleKenton Groombridge2022-12-131-0/+19
* bootloader, userdom: minor fixes for systemd-bootKenton Groombridge2022-11-021-0/+19
* systemd: Add systemd-homed and systemd-userdbd.Chris PeBenito2022-02-061-0/+4
* userdomain: add type for user bin filesKenton Groombridge2022-01-291-1/+51
* various: various userns capability permissionsKenton Groombridge2022-01-291-0/+1
* container, gpg, userdom: allow container engines to execute gpgKenton Groombridge2022-01-291-0/+19
* userdom: add interfaces to relabel generic user home contentKenton Groombridge2022-01-291-0/+36
* wm, roles: use user exec domain attributeKenton Groombridge2021-11-201-1/+1
* pulseaudio, roles: use user exec domain attributeKenton Groombridge2021-11-201-1/+1
* java, roles: use user exec domain attributeKenton Groombridge2021-11-201-1/+1
* gnome, roles: use user exec domain attributeKenton Groombridge2021-11-201-1/+1
* authlogin, roles: use user exec domain attributeKenton Groombridge2021-11-201-1/+1
* xserver, roles, various: use user exec domain attributeKenton Groombridge2021-11-201-1/+1
* Added policy for ss to access netlink.Jonathan Davies2021-11-111-0/+4
* usbguard, sysadm: misc fixesKenton Groombridge2021-11-111-0/+4
* secadm: allow secadm to read selinux policyYi Zhao2021-10-311-0/+1
* userdomain: add interface to allow mapping all user home contentKenton Groombridge2021-10-311-0/+18
* userdomain: add user exec domain attribute and interfaceKenton Groombridge2021-10-311-1/+30
* policy: interfaces: doc: indent param blocks consistentlyMarkus Linnala2021-09-051-6/+6
* roles: move dbus_role_template to userdom_common_user_templateYi Zhao2021-09-051-4/+5
* Use correct interface or template declarationChristian Göttsche2021-09-051-1/+1
* various: several dontauditsKenton Groombridge2021-09-051-0/+19
* devices, userdomain: dontaudit userdomain setattr on null device nodesKenton Groombridge2021-09-051-0/+1
* various: systemd user fixes and additional supportKenton Groombridge2021-03-211-9/+41
* Work with xdg module disabledDave Sugar2021-01-311-3/+5
* userdomain: Move lines.Chris PeBenito2021-01-311-5/+5
* yet more strict patches fixedRussell Coker2021-01-311-0/+13
* Remove modules for programs that are deprecated or no longer supported.Chris PeBenito2021-01-311-17/+0
* userdomain: Fix error in calling userdom_xdg_user_template().Chris PeBenito2021-01-101-1/+1
* userdomain, xserver: move xdg rules to userdom_xdg_user_template0xC0ncord2021-01-101-0/+62
* userdomain: Add watch on home dirsJason Zaman2020-11-281-1/+14
* userdomain.if: Marked usbguard user modify tunable as optional so usbguard ma...Jonathan Davies2020-10-111-2/+4
* selint: fix S-010bauen12020-10-111-3/+3