.. |
acmetool.fc
|
d8929817dc
add skeleton module for acmetool
|
8 vuotta sitten |
acmetool.te
|
4714e37be6
add several missing permissions to the acmetool policy
|
7 vuotta sitten |
amavis.fc
|
a787d913d6
add amavis policy module
|
9 vuotta sitten |
amavis.if
|
a787d913d6
add amavis policy module
|
9 vuotta sitten |
amavis.te
|
c8435f5de7
allow amavis to execute lib_t files so it can extract files with p7zip
|
8 vuotta sitten |
apache.fc
|
fbc3b9ae56
remove /var/lib/php from apache, conflicting with php-fpm
|
7 vuotta sitten |
apache.if
|
d9368b3c96
apache: merge policy from Debian stretch selinux-policy-src
|
7 vuotta sitten |
apache.te
|
04ef03c656
allow apache to read /proc/1/exe for the apache2ctl script
|
7 vuotta sitten |
apm.fc
|
c0a06e2f2e
add the apm policy module to fork it
|
8 vuotta sitten |
apm.if
|
c0a06e2f2e
add the apm policy module to fork it
|
8 vuotta sitten |
apm.te
|
fa9a408f5a
allow apmd_t to init_read_utmp
|
8 vuotta sitten |
apticron.fc
|
82f3c528af
add apticron policy module
|
9 vuotta sitten |
apticron.te
|
b41a5ec364
add missing permissions for apticron, this only works when you manually set heirloom-mailx to use smtp though
|
9 vuotta sitten |
atop.fc
|
cc775bdb02
atop: add more missing permissions for the new version
|
7 vuotta sitten |
atop.te
|
df5e1e94e1
atop: further adapt the policy to the atop version in Debian stretch
|
7 vuotta sitten |
bind.fc
|
0388bd041a
add a fork of the bind policy to allow it to connect to udev via udp
|
9 vuotta sitten |
bind.if
|
0388bd041a
add a fork of the bind policy to allow it to connect to udev via udp
|
9 vuotta sitten |
bind.te
|
0388bd041a
add a fork of the bind policy to allow it to connect to udev via udp
|
9 vuotta sitten |
bootloader.fc
|
dd00707aa6
add bootloader policy module to fork it
|
9 vuotta sitten |
bootloader.if
|
dd00707aa6
add bootloader policy module to fork it
|
9 vuotta sitten |
bootloader.te
|
9d931d48b9
add permissions to read file contexts and getattr for xconsole to bootloader_t
|
9 vuotta sitten |
clamav.fc
|
0a19f1fd5d
add clamav policy module from the reference policy
|
9 vuotta sitten |
clamav.if
|
0a19f1fd5d
add clamav policy module from the reference policy
|
9 vuotta sitten |
clamav.te
|
a8e0582b58
allow clamd to read vm sysctls
|
9 vuotta sitten |
dnsping.fc
|
56cf3c1593
add selinux policy for my custom dnsping IP update script
|
9 vuotta sitten |
dnsping.te
|
85d0b97d56
dnsping: add missing permissions for Debian stretch
|
7 vuotta sitten |
dovecot.fc
|
7ec11d0bd5
add dovecot managesieve-login to dovecot file contexts
|
9 vuotta sitten |
dovecot.if
|
d60008cf7d
add dovecot policy module to fork it
|
9 vuotta sitten |
dovecot.te
|
eeea104868
dovecot: merge with 1.18.0 and bump minor version
|
7 vuotta sitten |
fail2ban.fc
|
a52dc2cfa5
add the fail2ban module to modify it
|
9 vuotta sitten |
fail2ban.if
|
a52dc2cfa5
add the fail2ban module to modify it
|
9 vuotta sitten |
fail2ban.te
|
4af5a03991
add the missing domain transition for fail2ban_var_run_t and correct the permissions for fail2ban_client_t
|
9 vuotta sitten |
git.fc
|
179384777d
label all git binaries and allow gogs to execute generic bin files, *sigh*
|
8 vuotta sitten |
git.if
|
cd654dbd8c
add policy module for git to give the binary a file context
|
8 vuotta sitten |
git.te
|
179384777d
label all git binaries and allow gogs to execute generic bin files, *sigh*
|
8 vuotta sitten |
gogs.fc
|
578a6a21c7
extend the gogs policy with all permissions necessary for the program to run
|
8 vuotta sitten |
gogs.te
|
db7665a8de
allow gogs kernel_read_vm_sysctls
|
7 vuotta sitten |
hostname.fc
|
f7b8f792b2
add hostname policy module
|
9 vuotta sitten |
hostname.if
|
f7b8f792b2
add hostname policy module
|
9 vuotta sitten |
hostname.te
|
9c19a6582d
allow hostname to read urandom
|
9 vuotta sitten |
ipsec.fc
|
ac160709f3
add remaining domain transistions to make strongswan work
|
9 vuotta sitten |
ipsec.if
|
4762bce146
add a copy of the ipsec module of the reference policy
|
9 vuotta sitten |
ipsec.te
|
7cec747609
allow ipsec_t to kill the charon process
|
8 vuotta sitten |
iptables.fc
|
64324c83c3
add for of the iptables policy module and allow access to urandom
|
9 vuotta sitten |
iptables.if
|
64324c83c3
add for of the iptables policy module and allow access to urandom
|
9 vuotta sitten |
iptables.te
|
64324c83c3
add for of the iptables policy module and allow access to urandom
|
9 vuotta sitten |
jabber.fc
|
420314efe6
jabber: update pid directory and allow execution of some rabbitmq files
|
7 vuotta sitten |
jabber.if
|
e90545059e
add jabber_domtrans interface to the jabber module
|
9 vuotta sitten |
jabber.te
|
420314efe6
jabber: update pid directory and allow execution of some rabbitmq files
|
7 vuotta sitten |
logrotate.fc
|
e54a282860
add a fork of the logrotate policy and allow capability sys_ptrace
|
9 vuotta sitten |
logrotate.if
|
e54a282860
add a fork of the logrotate policy and allow capability sys_ptrace
|
9 vuotta sitten |
logrotate.te
|
00d48947ec
allow jabber_domtrans for logrotate
|
9 vuotta sitten |
mapcrafter.fc
|
1b9f39292c
add mapcrafter policy module
|
8 vuotta sitten |
mapcrafter.te
|
1b9f39292c
add mapcrafter policy module
|
8 vuotta sitten |
minecraft.fc
|
28d593b3e8
add initial version of the minecraft selinux policy module
|
8 vuotta sitten |
minecraft.te
|
0eb708dd3b
minecraft: update permissions to work with Java 8
|
7 vuotta sitten |
mta.fc
|
148a9e44ff
add fork of the mta policy module and extend it to be able to write to cron temporary files
|
9 vuotta sitten |
mta.if
|
148a9e44ff
add fork of the mta policy module and extend it to be able to write to cron temporary files
|
9 vuotta sitten |
mta.te
|
d105beafba
mta: make external types optional
|
7 vuotta sitten |
murmur.fc
|
bec1ccbf88
add initial implementation of a murmur selinux policy
|
9 vuotta sitten |
murmur.te
|
8c06f39c0e
expand socket permissions and allow access to sysfs for murmur
|
9 vuotta sitten |
mysql.fc
|
d647a1f6a6
add mysql policy module
|
9 vuotta sitten |
mysql.if
|
d647a1f6a6
add mysql policy module
|
9 vuotta sitten |
mysql.te
|
1e1b0ad700
allow mysqld_safe_t sys_tty_config
|
9 vuotta sitten |
mysqldump.fc
|
870acd4d2f
add mysqldump.fc, allow php logrotation
|
9 vuotta sitten |
mysqldump.te
|
2ca3e25aca
mysqldump: add missing permissions for Debian stretch
|
7 vuotta sitten |
ntp.fc
|
e2fdfebaac
ntp: add policy from Debian stretch selinux-policy-src
|
7 vuotta sitten |
ntp.if
|
e2fdfebaac
ntp: add policy from Debian stretch selinux-policy-src
|
7 vuotta sitten |
ntp.te
|
a3f0da9a7d
ntp: grant files_manage_generic_locks to write the ntpdate lock file
|
7 vuotta sitten |
php-fpm.fc
|
154b8a9b8d
php-fpm: adapt for php 7.0
|
7 vuotta sitten |
php-fpm.if
|
4e2eda6757
add dontaudit interfaces to phpfpm and set them in the mta policy
|
9 vuotta sitten |
php-fpm.te
|
154b8a9b8d
php-fpm: adapt for php 7.0
|
7 vuotta sitten |
postfix.fc
|
e6467d2848
add postfix policy module and allow communication with udev
|
9 vuotta sitten |
postfix.if
|
e6467d2848
add postfix policy module and allow communication with udev
|
9 vuotta sitten |
postfix.te
|
9aca84c7a1
allow postfix to do name binds to unreserved tcp ports
|
9 vuotta sitten |
shutdown.fc
|
a37c120ba6
add the shutdown policy module from the reference policy
|
8 vuotta sitten |
shutdown.if
|
a37c120ba6
add the shutdown policy module from the reference policy
|
8 vuotta sitten |
shutdown.te
|
0f8a9e1440
allow shutdown to send syslog messages
|
8 vuotta sitten |
spamassassin.fc
|
d56ad60eff
update to 2.9.0 and merge my own changes
|
7 vuotta sitten |
spamassassin.if
|
d56ad60eff
update to 2.9.0 and merge my own changes
|
7 vuotta sitten |
spamassassin.te
|
d56ad60eff
update to 2.9.0 and merge my own changes
|
7 vuotta sitten |
spreed-webrtc.fc
|
07770361b7
add policy module for spreed-webrtc
|
8 vuotta sitten |
spreed-webrtc.te
|
07770361b7
add policy module for spreed-webrtc
|
8 vuotta sitten |
ssh.fc
|
3431ba1bfd
ssh: update policy to the one from selinux-policy-src in Debian stretch
|
7 vuotta sitten |
ssh.if
|
3431ba1bfd
ssh: update policy to the one from selinux-policy-src in Debian stretch
|
7 vuotta sitten |
ssh.te
|
0c561aea8a
ssh: allow sshd to write motd.dynamic
|
7 vuotta sitten |
sshguard.fc
|
b6036eeb17
sshguard: update policy to work with the version in Debian stretch
|
7 vuotta sitten |
sshguard.te
|
b6036eeb17
sshguard: update policy to work with the version in Debian stretch
|
7 vuotta sitten |
starbound.fc
|
a9fb529e0f
include the 32 bit binary in the starbound policy
|
8 vuotta sitten |
starbound.te
|
a9fb529e0f
include the 32 bit binary in the starbound policy
|
8 vuotta sitten |
supervisor.fc
|
8e134f1b54
add supervisor policy, initial implementation
|
8 vuotta sitten |
supervisor.if
|
682e09be03
complement supervisor and starbound policies, add terraria policy module
|
8 vuotta sitten |
supervisor.te
|
682e09be03
complement supervisor and starbound policies, add terraria policy module
|
8 vuotta sitten |
terraria.fc
|
682e09be03
complement supervisor and starbound policies, add terraria policy module
|
8 vuotta sitten |
terraria.te
|
682e09be03
complement supervisor and starbound policies, add terraria policy module
|
8 vuotta sitten |
turnserver.fc
|
5435f6fee6
add further developed version of the turnserver policy
|
8 vuotta sitten |
turnserver.te
|
6c6479d1fc
add missing permission for turnserver
|
8 vuotta sitten |
udev.fc
|
ffa99ee15f
add a fork of the udev module, allow udev to transistion to rndc_t and manage postfix to satisfy script dependencies in /etc/network/if-up.d
|
9 vuotta sitten |
udev.if
|
ffa99ee15f
add a fork of the udev module, allow udev to transistion to rndc_t and manage postfix to satisfy script dependencies in /etc/network/if-up.d
|
9 vuotta sitten |
udev.te
|
af4827644c
allow udev_t to read the sshd pid file as needed by the script in if-up.d
|
9 vuotta sitten |
unconfined.fc
|
ce285de609
add unconfined policy for forking
|
9 vuotta sitten |
unconfined.if
|
ce285de609
add unconfined policy for forking
|
9 vuotta sitten |
unconfined.te
|
674fcdace0
allow unconfined to execute git
|
8 vuotta sitten |
xonotic.fc
|
ec1428fd7a
add policy for a custom installed xonotic game server
|
9 vuotta sitten |
xonotic.te
|
06db983cfd
add missing permissions to the xonotic and supervisor modules
|
8 vuotta sitten |