Helmut Pozimski 246fdd57dd overviewer: add selinux policy module il y a 5 ans
..
acme-updater.fc 0d1c510e34 acme-updater: add json configuration file and file context il y a 7 ans
acme-updater.te 12ec32fceb acme-updater: fix type transition for ejabberd il y a 7 ans
acmetool.fc d8929817dc add skeleton module for acmetool il y a 8 ans
acmetool.te eb9c7bdd35 acmetool: allow kernel_read_vm_overcommit_sysctl il y a 7 ans
amavis.fc a787d913d6 add amavis policy module il y a 9 ans
amavis.if a787d913d6 add amavis policy module il y a 9 ans
amavis.te add769bacb amavis: allow management of links of type amavis_var_lib_t il y a 7 ans
apache.fc fbc3b9ae56 remove /var/lib/php from apache, conflicting with php-fpm il y a 7 ans
apache.if d9368b3c96 apache: merge policy from Debian stretch selinux-policy-src il y a 7 ans
apache.te 0b7aeae0f7 allow apache to read phpfpm temp files to work around wrong contexts created by php file upload il y a 7 ans
apm.fc c0a06e2f2e add the apm policy module to fork it il y a 8 ans
apm.if c0a06e2f2e add the apm policy module to fork it il y a 8 ans
apm.te fa9a408f5a allow apmd_t to init_read_utmp il y a 8 ans
apticron.fc 82f3c528af add apticron policy module il y a 9 ans
apticron.te 4681697a77 apticron: allow relabelto for apticron_tmp_t il y a 7 ans
atop.fc ee1bc1d3bd atop: extend policy to also cover atopacct il y a 7 ans
atop.te 066007f4ef atop: allow management of log files il y a 7 ans
bind.fc 359d65589f update bind policy to cover unbound on Debian 8.x il y a 7 ans
bind.if 0388bd041a add a fork of the bind policy to allow it to connect to udev via udp il y a 9 ans
bind.te 359d65589f update bind policy to cover unbound on Debian 8.x il y a 7 ans
bootloader.fc dd00707aa6 add bootloader policy module to fork it il y a 9 ans
bootloader.if dd00707aa6 add bootloader policy module to fork it il y a 9 ans
bootloader.te 9d931d48b9 add permissions to read file contexts and getattr for xconsole to bootloader_t il y a 9 ans
clamav.fc 0a19f1fd5d add clamav policy module from the reference policy il y a 9 ans
clamav.if 0a19f1fd5d add clamav policy module from the reference policy il y a 9 ans
clamav.te a8e0582b58 allow clamd to read vm sysctls il y a 9 ans
dnsping.fc 56cf3c1593 add selinux policy for my custom dnsping IP update script il y a 9 ans
dnsping.te 85d0b97d56 dnsping: add missing permissions for Debian stretch il y a 7 ans
dovecot.fc 7ec11d0bd5 add dovecot managesieve-login to dovecot file contexts il y a 9 ans
dovecot.if d60008cf7d add dovecot policy module to fork it il y a 9 ans
dovecot.te eeea104868 dovecot: merge with 1.18.0 and bump minor version il y a 7 ans
fail2ban.fc a52dc2cfa5 add the fail2ban module to modify it il y a 9 ans
fail2ban.if a52dc2cfa5 add the fail2ban module to modify it il y a 9 ans
fail2ban.te 4af5a03991 add the missing domain transition for fail2ban_var_run_t and correct the permissions for fail2ban_client_t il y a 9 ans
git.fc b82ac6a871 add previously uncommited changes to the git and gogs policies il y a 6 ans
git.if b82ac6a871 add previously uncommited changes to the git and gogs policies il y a 6 ans
git.te b82ac6a871 add previously uncommited changes to the git and gogs policies il y a 6 ans
gogs.fc 578a6a21c7 extend the gogs policy with all permissions necessary for the program to run il y a 8 ans
gogs.te b82ac6a871 add previously uncommited changes to the git and gogs policies il y a 6 ans
hostname.fc f7b8f792b2 add hostname policy module il y a 9 ans
hostname.if f7b8f792b2 add hostname policy module il y a 9 ans
hostname.te 9c19a6582d allow hostname to read urandom il y a 9 ans
ipsec.fc ac160709f3 add remaining domain transistions to make strongswan work il y a 9 ans
ipsec.if 4762bce146 add a copy of the ipsec module of the reference policy il y a 9 ans
ipsec.te 7cec747609 allow ipsec_t to kill the charon process il y a 8 ans
iptables.fc 64324c83c3 add for of the iptables policy module and allow access to urandom il y a 9 ans
iptables.if 64324c83c3 add for of the iptables policy module and allow access to urandom il y a 9 ans
iptables.te 64324c83c3 add for of the iptables policy module and allow access to urandom il y a 9 ans
jabber.fc c5f59a0683 jabber: allow kernel_read_vm_overcommit_sysctl and extend policy to use a cache directory for httpupload il y a 7 ans
jabber.if e90545059e add jabber_domtrans interface to the jabber module il y a 9 ans
jabber.te 29686b6436 jabber: allow writing to tmp directories il y a 7 ans
logrotate.fc 1632ea18a5 logrotate: update to the version from stretch and merge with my own changes il y a 7 ans
logrotate.if e54a282860 add a fork of the logrotate policy and allow capability sys_ptrace il y a 9 ans
logrotate.te 1632ea18a5 logrotate: update to the version from stretch and merge with my own changes il y a 7 ans
mapcrafter.fc 1b9f39292c add mapcrafter policy module il y a 8 ans
mapcrafter.te 1b9f39292c add mapcrafter policy module il y a 8 ans
minecraft.fc 28d593b3e8 add initial version of the minecraft selinux policy module il y a 8 ans
minecraft.te 0eb708dd3b minecraft: update permissions to work with Java 8 il y a 7 ans
mta.fc 148a9e44ff add fork of the mta policy module and extend it to be able to write to cron temporary files il y a 9 ans
mta.if 148a9e44ff add fork of the mta policy module and extend it to be able to write to cron temporary files il y a 9 ans
mta.te 6df2dbed12 mta: merge policy with the current version from Debian stretch and bump version number il y a 7 ans
murmur.fc 26636d0339 murmur: correct path to run directory il y a 7 ans
murmur.te 26636d0339 murmur: correct path to run directory il y a 7 ans
mysql.fc d647a1f6a6 add mysql policy module il y a 9 ans
mysql.if d647a1f6a6 add mysql policy module il y a 9 ans
mysql.te 1e1b0ad700 allow mysqld_safe_t sys_tty_config il y a 9 ans
mysqldump.fc 870acd4d2f add mysqldump.fc, allow php logrotation il y a 9 ans
mysqldump.te 2ca3e25aca mysqldump: add missing permissions for Debian stretch il y a 7 ans
ntp.fc e2fdfebaac ntp: add policy from Debian stretch selinux-policy-src il y a 7 ans
ntp.if e2fdfebaac ntp: add policy from Debian stretch selinux-policy-src il y a 7 ans
ntp.te a3f0da9a7d ntp: grant files_manage_generic_locks to write the ntpdate lock file il y a 7 ans
overviewer.fc 246fdd57dd overviewer: add selinux policy module il y a 5 ans
overviewer.te 246fdd57dd overviewer: add selinux policy module il y a 5 ans
php-fpm.fc 2ae226e802 php-fpm: correct PID directory il y a 7 ans
php-fpm.if 4e2eda6757 add dontaudit interfaces to phpfpm and set them in the mta policy il y a 9 ans
php-fpm.te c6d1e3dde6 php-fpm: allow capability dac_override il y a 7 ans
postfix.fc c0f0bf03d9 postfix: update policy and merge with local changes il y a 7 ans
postfix.if c0f0bf03d9 postfix: update policy and merge with local changes il y a 7 ans
postfix.te c0f0bf03d9 postfix: update policy and merge with local changes il y a 7 ans
shutdown.fc a37c120ba6 add the shutdown policy module from the reference policy il y a 8 ans
shutdown.if a37c120ba6 add the shutdown policy module from the reference policy il y a 8 ans
shutdown.te 0f8a9e1440 allow shutdown to send syslog messages il y a 8 ans
spamassassin.fc d56ad60eff update to 2.9.0 and merge my own changes il y a 7 ans
spamassassin.if d56ad60eff update to 2.9.0 and merge my own changes il y a 7 ans
spamassassin.te d56ad60eff update to 2.9.0 and merge my own changes il y a 7 ans
spreed-webrtc.fc 07770361b7 add policy module for spreed-webrtc il y a 8 ans
spreed-webrtc.te 07770361b7 add policy module for spreed-webrtc il y a 8 ans
ssh.fc 3431ba1bfd ssh: update policy to the one from selinux-policy-src in Debian stretch il y a 7 ans
ssh.if 3431ba1bfd ssh: update policy to the one from selinux-policy-src in Debian stretch il y a 7 ans
ssh.te 79209473f3 ssh: allow access to httpd directories to configure sftp access for users il y a 6 ans
sshguard.fc b6036eeb17 sshguard: update policy to work with the version in Debian stretch il y a 7 ans
sshguard.te b6036eeb17 sshguard: update policy to work with the version in Debian stretch il y a 7 ans
starbound.fc a9fb529e0f include the 32 bit binary in the starbound policy il y a 8 ans
starbound.te a9fb529e0f include the 32 bit binary in the starbound policy il y a 8 ans
supervisor.fc 8e134f1b54 add supervisor policy, initial implementation il y a 8 ans
supervisor.if 682e09be03 complement supervisor and starbound policies, add terraria policy module il y a 8 ans
supervisor.te 682e09be03 complement supervisor and starbound policies, add terraria policy module il y a 8 ans
terraria.fc 682e09be03 complement supervisor and starbound policies, add terraria policy module il y a 8 ans
terraria.te 682e09be03 complement supervisor and starbound policies, add terraria policy module il y a 8 ans
turnserver.fc 9fc1d1141f turnserver: update policy for the new version in Debian stretch il y a 7 ans
turnserver.te 9fc1d1141f turnserver: update policy for the new version in Debian stretch il y a 7 ans
udev.fc ffa99ee15f add a fork of the udev module, allow udev to transistion to rndc_t and manage postfix to satisfy script dependencies in /etc/network/if-up.d il y a 9 ans
udev.if ffa99ee15f add a fork of the udev module, allow udev to transistion to rndc_t and manage postfix to satisfy script dependencies in /etc/network/if-up.d il y a 9 ans
udev.te af4827644c allow udev_t to read the sshd pid file as needed by the script in if-up.d il y a 9 ans
unconfined.fc ce285de609 add unconfined policy for forking il y a 9 ans
unconfined.if ce285de609 add unconfined policy for forking il y a 9 ans
unconfined.te 674fcdace0 allow unconfined to execute git il y a 8 ans
xonotic.fc ec1428fd7a add policy for a custom installed xonotic game server il y a 9 ans
xonotic.te 04403d1b99 xonotic: allow kernel_read_crypto_sysctls il y a 7 ans