Helmut Pozimski c0f0bf03d9 postfix: update policy and merge with local changes vor 7 Jahren
..
acme-updater.fc 0d1c510e34 acme-updater: add json configuration file and file context vor 7 Jahren
acme-updater.te 12ec32fceb acme-updater: fix type transition for ejabberd vor 7 Jahren
acmetool.fc d8929817dc add skeleton module for acmetool vor 8 Jahren
acmetool.te eb9c7bdd35 acmetool: allow kernel_read_vm_overcommit_sysctl vor 7 Jahren
amavis.fc a787d913d6 add amavis policy module vor 9 Jahren
amavis.if a787d913d6 add amavis policy module vor 9 Jahren
amavis.te add769bacb amavis: allow management of links of type amavis_var_lib_t vor 7 Jahren
apache.fc fbc3b9ae56 remove /var/lib/php from apache, conflicting with php-fpm vor 7 Jahren
apache.if d9368b3c96 apache: merge policy from Debian stretch selinux-policy-src vor 7 Jahren
apache.te 0b7aeae0f7 allow apache to read phpfpm temp files to work around wrong contexts created by php file upload vor 7 Jahren
apm.fc c0a06e2f2e add the apm policy module to fork it vor 8 Jahren
apm.if c0a06e2f2e add the apm policy module to fork it vor 8 Jahren
apm.te fa9a408f5a allow apmd_t to init_read_utmp vor 8 Jahren
apticron.fc 82f3c528af add apticron policy module vor 9 Jahren
apticron.te b41a5ec364 add missing permissions for apticron, this only works when you manually set heirloom-mailx to use smtp though vor 9 Jahren
atop.fc ee1bc1d3bd atop: extend policy to also cover atopacct vor 7 Jahren
atop.te 12a3653f9f atop: update policy with missing permissions vor 7 Jahren
bind.fc 359d65589f update bind policy to cover unbound on Debian 8.x vor 7 Jahren
bind.if 0388bd041a add a fork of the bind policy to allow it to connect to udev via udp vor 9 Jahren
bind.te 359d65589f update bind policy to cover unbound on Debian 8.x vor 7 Jahren
bootloader.fc dd00707aa6 add bootloader policy module to fork it vor 9 Jahren
bootloader.if dd00707aa6 add bootloader policy module to fork it vor 9 Jahren
bootloader.te 9d931d48b9 add permissions to read file contexts and getattr for xconsole to bootloader_t vor 9 Jahren
clamav.fc 0a19f1fd5d add clamav policy module from the reference policy vor 9 Jahren
clamav.if 0a19f1fd5d add clamav policy module from the reference policy vor 9 Jahren
clamav.te a8e0582b58 allow clamd to read vm sysctls vor 9 Jahren
dnsping.fc 56cf3c1593 add selinux policy for my custom dnsping IP update script vor 9 Jahren
dnsping.te 85d0b97d56 dnsping: add missing permissions for Debian stretch vor 7 Jahren
dovecot.fc 7ec11d0bd5 add dovecot managesieve-login to dovecot file contexts vor 9 Jahren
dovecot.if d60008cf7d add dovecot policy module to fork it vor 9 Jahren
dovecot.te eeea104868 dovecot: merge with 1.18.0 and bump minor version vor 7 Jahren
fail2ban.fc a52dc2cfa5 add the fail2ban module to modify it vor 9 Jahren
fail2ban.if a52dc2cfa5 add the fail2ban module to modify it vor 9 Jahren
fail2ban.te 4af5a03991 add the missing domain transition for fail2ban_var_run_t and correct the permissions for fail2ban_client_t vor 9 Jahren
git.fc 179384777d label all git binaries and allow gogs to execute generic bin files, *sigh* vor 8 Jahren
git.if cd654dbd8c add policy module for git to give the binary a file context vor 8 Jahren
git.te 179384777d label all git binaries and allow gogs to execute generic bin files, *sigh* vor 8 Jahren
gogs.fc 578a6a21c7 extend the gogs policy with all permissions necessary for the program to run vor 8 Jahren
gogs.te db7665a8de allow gogs kernel_read_vm_sysctls vor 7 Jahren
hostname.fc f7b8f792b2 add hostname policy module vor 9 Jahren
hostname.if f7b8f792b2 add hostname policy module vor 9 Jahren
hostname.te 9c19a6582d allow hostname to read urandom vor 9 Jahren
ipsec.fc ac160709f3 add remaining domain transistions to make strongswan work vor 9 Jahren
ipsec.if 4762bce146 add a copy of the ipsec module of the reference policy vor 9 Jahren
ipsec.te 7cec747609 allow ipsec_t to kill the charon process vor 8 Jahren
iptables.fc 64324c83c3 add for of the iptables policy module and allow access to urandom vor 9 Jahren
iptables.if 64324c83c3 add for of the iptables policy module and allow access to urandom vor 9 Jahren
iptables.te 64324c83c3 add for of the iptables policy module and allow access to urandom vor 9 Jahren
jabber.fc c5f59a0683 jabber: allow kernel_read_vm_overcommit_sysctl and extend policy to use a cache directory for httpupload vor 7 Jahren
jabber.if e90545059e add jabber_domtrans interface to the jabber module vor 9 Jahren
jabber.te c5f59a0683 jabber: allow kernel_read_vm_overcommit_sysctl and extend policy to use a cache directory for httpupload vor 7 Jahren
logrotate.fc 1632ea18a5 logrotate: update to the version from stretch and merge with my own changes vor 7 Jahren
logrotate.if e54a282860 add a fork of the logrotate policy and allow capability sys_ptrace vor 9 Jahren
logrotate.te 1632ea18a5 logrotate: update to the version from stretch and merge with my own changes vor 7 Jahren
mapcrafter.fc 1b9f39292c add mapcrafter policy module vor 8 Jahren
mapcrafter.te 1b9f39292c add mapcrafter policy module vor 8 Jahren
minecraft.fc 28d593b3e8 add initial version of the minecraft selinux policy module vor 8 Jahren
minecraft.te 0eb708dd3b minecraft: update permissions to work with Java 8 vor 7 Jahren
mta.fc 148a9e44ff add fork of the mta policy module and extend it to be able to write to cron temporary files vor 9 Jahren
mta.if 148a9e44ff add fork of the mta policy module and extend it to be able to write to cron temporary files vor 9 Jahren
mta.te 6df2dbed12 mta: merge policy with the current version from Debian stretch and bump version number vor 7 Jahren
murmur.fc 26636d0339 murmur: correct path to run directory vor 7 Jahren
murmur.te 26636d0339 murmur: correct path to run directory vor 7 Jahren
mysql.fc d647a1f6a6 add mysql policy module vor 9 Jahren
mysql.if d647a1f6a6 add mysql policy module vor 9 Jahren
mysql.te 1e1b0ad700 allow mysqld_safe_t sys_tty_config vor 9 Jahren
mysqldump.fc 870acd4d2f add mysqldump.fc, allow php logrotation vor 9 Jahren
mysqldump.te 2ca3e25aca mysqldump: add missing permissions for Debian stretch vor 7 Jahren
ntp.fc e2fdfebaac ntp: add policy from Debian stretch selinux-policy-src vor 7 Jahren
ntp.if e2fdfebaac ntp: add policy from Debian stretch selinux-policy-src vor 7 Jahren
ntp.te a3f0da9a7d ntp: grant files_manage_generic_locks to write the ntpdate lock file vor 7 Jahren
php-fpm.fc 2ae226e802 php-fpm: correct PID directory vor 7 Jahren
php-fpm.if 4e2eda6757 add dontaudit interfaces to phpfpm and set them in the mta policy vor 9 Jahren
php-fpm.te 2ae226e802 php-fpm: correct PID directory vor 7 Jahren
postfix.fc c0f0bf03d9 postfix: update policy and merge with local changes vor 7 Jahren
postfix.if c0f0bf03d9 postfix: update policy and merge with local changes vor 7 Jahren
postfix.te c0f0bf03d9 postfix: update policy and merge with local changes vor 7 Jahren
shutdown.fc a37c120ba6 add the shutdown policy module from the reference policy vor 8 Jahren
shutdown.if a37c120ba6 add the shutdown policy module from the reference policy vor 8 Jahren
shutdown.te 0f8a9e1440 allow shutdown to send syslog messages vor 8 Jahren
spamassassin.fc d56ad60eff update to 2.9.0 and merge my own changes vor 7 Jahren
spamassassin.if d56ad60eff update to 2.9.0 and merge my own changes vor 7 Jahren
spamassassin.te d56ad60eff update to 2.9.0 and merge my own changes vor 7 Jahren
spreed-webrtc.fc 07770361b7 add policy module for spreed-webrtc vor 8 Jahren
spreed-webrtc.te 07770361b7 add policy module for spreed-webrtc vor 8 Jahren
ssh.fc 3431ba1bfd ssh: update policy to the one from selinux-policy-src in Debian stretch vor 7 Jahren
ssh.if 3431ba1bfd ssh: update policy to the one from selinux-policy-src in Debian stretch vor 7 Jahren
ssh.te 0c561aea8a ssh: allow sshd to write motd.dynamic vor 7 Jahren
sshguard.fc b6036eeb17 sshguard: update policy to work with the version in Debian stretch vor 7 Jahren
sshguard.te b6036eeb17 sshguard: update policy to work with the version in Debian stretch vor 7 Jahren
starbound.fc a9fb529e0f include the 32 bit binary in the starbound policy vor 8 Jahren
starbound.te a9fb529e0f include the 32 bit binary in the starbound policy vor 8 Jahren
supervisor.fc 8e134f1b54 add supervisor policy, initial implementation vor 8 Jahren
supervisor.if 682e09be03 complement supervisor and starbound policies, add terraria policy module vor 8 Jahren
supervisor.te 682e09be03 complement supervisor and starbound policies, add terraria policy module vor 8 Jahren
terraria.fc 682e09be03 complement supervisor and starbound policies, add terraria policy module vor 8 Jahren
terraria.te 682e09be03 complement supervisor and starbound policies, add terraria policy module vor 8 Jahren
turnserver.fc 9fc1d1141f turnserver: update policy for the new version in Debian stretch vor 7 Jahren
turnserver.te 9fc1d1141f turnserver: update policy for the new version in Debian stretch vor 7 Jahren
udev.fc ffa99ee15f add a fork of the udev module, allow udev to transistion to rndc_t and manage postfix to satisfy script dependencies in /etc/network/if-up.d vor 9 Jahren
udev.if ffa99ee15f add a fork of the udev module, allow udev to transistion to rndc_t and manage postfix to satisfy script dependencies in /etc/network/if-up.d vor 9 Jahren
udev.te af4827644c allow udev_t to read the sshd pid file as needed by the script in if-up.d vor 9 Jahren
unconfined.fc ce285de609 add unconfined policy for forking vor 9 Jahren
unconfined.if ce285de609 add unconfined policy for forking vor 9 Jahren
unconfined.te 674fcdace0 allow unconfined to execute git vor 8 Jahren
xonotic.fc ec1428fd7a add policy for a custom installed xonotic game server vor 9 Jahren
xonotic.te 04403d1b99 xonotic: allow kernel_read_crypto_sysctls vor 7 Jahren