| Commit message (Expand) | Author | Age | Files | Lines |
* | userdomain: allow administrative user to get attributes of shadow history file | Yi Zhao | 2024-09-21 | 1 | -0/+1 |
* | Reorder perms and classes | freedom1b2830 | 2024-09-21 | 1 | -22/+22 |
* | userdom: allow users to read user home dir symlinks | Kenton Groombridge | 2024-05-14 | 1 | -0/+3 |
* | cups: Remove PTAL. | Chris PeBenito | 2024-05-14 | 1 | -1/+0 |
* | userdom: permit reading PSI as admin | Christian Göttsche | 2024-03-01 | 1 | -0/+1 |
* | cloudinit: Add permissions derived from sysadm. | Chris PeBenito | 2024-03-01 | 1 | -0/+19 |
* | Add dontaudit to quiet down a bit | Dave Sugar | 2024-03-01 | 1 | -0/+18 |
* | This works instead of allow exec on user_tmpfs_t! | Dave Sugar | 2024-03-01 | 1 | -0/+4 |
* | xguest ues systemd --user | Dave Sugar | 2024-03-01 | 1 | -0/+4 |
* | https://blog.trailofbits.com/2019/07/19/understanding-docker-container-escapes/ | Russell Coker | 2023-10-06 | 1 | -1/+1 |
* | small storage changes (#706) | Russell Coker | 2023-10-06 | 1 | -0/+18 |
* | some misc userdomain fixes | Russell Coker | 2023-10-06 | 1 | -0/+22 |
* | Allow all users to (optionally) send syslog messages | Dave Sugar | 2023-10-06 | 1 | -0/+4 |
* | Remove a logging interface from the userdomain module since it has now been m... | Guido Trentalancia | 2023-10-06 | 1 | -2/+0 |
* | Add permissions to watch libraries directories to the userdomain login user t... | Guido Trentalancia | 2023-10-06 | 1 | -0/+1 |
* | userdom: allow admin users to use tcpdiag netlink sockets | Kenton Groombridge | 2022-12-13 | 1 | -0/+1 |
* | This patch removes deprecated interfaces that were deprecated in the 20210203... | Russell Coker | 2022-12-13 | 1 | -27/+0 |
* | kubernetes: initial policy module | Kenton Groombridge | 2022-12-13 | 1 | -0/+19 |
* | bootloader, userdom: minor fixes for systemd-boot | Kenton Groombridge | 2022-11-02 | 1 | -0/+19 |
* | systemd: Add systemd-homed and systemd-userdbd. | Chris PeBenito | 2022-02-06 | 1 | -0/+4 |
* | userdomain: add type for user bin files | Kenton Groombridge | 2022-01-29 | 1 | -1/+51 |
* | various: various userns capability permissions | Kenton Groombridge | 2022-01-29 | 1 | -0/+1 |
* | container, gpg, userdom: allow container engines to execute gpg | Kenton Groombridge | 2022-01-29 | 1 | -0/+19 |
* | userdom: add interfaces to relabel generic user home content | Kenton Groombridge | 2022-01-29 | 1 | -0/+36 |
* | wm, roles: use user exec domain attribute | Kenton Groombridge | 2021-11-20 | 1 | -1/+1 |
* | pulseaudio, roles: use user exec domain attribute | Kenton Groombridge | 2021-11-20 | 1 | -1/+1 |
* | java, roles: use user exec domain attribute | Kenton Groombridge | 2021-11-20 | 1 | -1/+1 |
* | gnome, roles: use user exec domain attribute | Kenton Groombridge | 2021-11-20 | 1 | -1/+1 |
* | authlogin, roles: use user exec domain attribute | Kenton Groombridge | 2021-11-20 | 1 | -1/+1 |
* | xserver, roles, various: use user exec domain attribute | Kenton Groombridge | 2021-11-20 | 1 | -1/+1 |
* | Added policy for ss to access netlink. | Jonathan Davies | 2021-11-11 | 1 | -0/+4 |
* | usbguard, sysadm: misc fixes | Kenton Groombridge | 2021-11-11 | 1 | -0/+4 |
* | secadm: allow secadm to read selinux policy | Yi Zhao | 2021-10-31 | 1 | -0/+1 |
* | userdomain: add interface to allow mapping all user home content | Kenton Groombridge | 2021-10-31 | 1 | -0/+18 |
* | userdomain: add user exec domain attribute and interface | Kenton Groombridge | 2021-10-31 | 1 | -1/+30 |
* | policy: interfaces: doc: indent param blocks consistently | Markus Linnala | 2021-09-05 | 1 | -6/+6 |
* | roles: move dbus_role_template to userdom_common_user_template | Yi Zhao | 2021-09-05 | 1 | -4/+5 |
* | Use correct interface or template declaration | Christian Göttsche | 2021-09-05 | 1 | -1/+1 |
* | various: several dontaudits | Kenton Groombridge | 2021-09-05 | 1 | -0/+19 |
* | devices, userdomain: dontaudit userdomain setattr on null device nodes | Kenton Groombridge | 2021-09-05 | 1 | -0/+1 |
* | various: systemd user fixes and additional support | Kenton Groombridge | 2021-03-21 | 1 | -9/+41 |
* | Work with xdg module disabled | Dave Sugar | 2021-01-31 | 1 | -3/+5 |
* | userdomain: Move lines. | Chris PeBenito | 2021-01-31 | 1 | -5/+5 |
* | yet more strict patches fixed | Russell Coker | 2021-01-31 | 1 | -0/+13 |
* | Remove modules for programs that are deprecated or no longer supported. | Chris PeBenito | 2021-01-31 | 1 | -17/+0 |
* | userdomain: Fix error in calling userdom_xdg_user_template(). | Chris PeBenito | 2021-01-10 | 1 | -1/+1 |
* | userdomain, xserver: move xdg rules to userdom_xdg_user_template | 0xC0ncord | 2021-01-10 | 1 | -0/+62 |
* | userdomain: Add watch on home dirs | Jason Zaman | 2020-11-28 | 1 | -1/+14 |
* | userdomain.if: Marked usbguard user modify tunable as optional so usbguard ma... | Jonathan Davies | 2020-10-11 | 1 | -2/+4 |
* | selint: fix S-010 | bauen1 | 2020-10-11 | 1 | -3/+3 |