aboutsummaryrefslogtreecommitdiff
path: root/policy
Commit message (Expand)AuthorAgeFilesLines
* xserver: add xdm user with role access to system_r and xdm_rHEADmasterRahul Sandhu2025-01-061-0/+11
* kernel/files: add interface files_create_generic_tmp_socketsMarc Schiffbauer2025-01-061-0/+18
* kernel/files: add interface files_mmap_read_usr_filesMarc Schiffbauer2025-01-061-0/+18
* services/zfs: allow auto-snapshots being created via systemd-timerMarc Schiffbauer2025-01-061-0/+7
* systemd: add networkd rules required at least since version 256Marc Schiffbauer2025-01-061-0/+2
* Update generated policy and doc filesJason Zaman2024-12-144-21/+69
* Fix codespell errorsJason Zaman2024-12-144-5/+5
* authlogin: connect to nsresourcedRahul Sandhu2024-12-141-0/+1
* systemd-homework: move optional policy to end of blockRahul Sandhu2024-12-141-6/+6
* systemd_stream_connect_homed: genrequire systemd_userdbd_runtime_tRahul Sandhu2024-12-141-0/+1
* systemd-homed: fix filecontexts for systemd_home_storage_t objectsRahul Sandhu2024-12-141-1/+1
* systemd-homed: use files_read_etc_runtime_files to read machine-idRahul Sandhu2024-12-141-2/+2
* systemd-homework: reformat *_files_pattern blockRahul Sandhu2024-12-141-4/+4
* systemd-homed: make lvm related policy optionalRahul Sandhu2024-12-141-2/+4
* systemd_stream_connect_homed: make use of stream_connect_patternRahul Sandhu2024-12-141-1/+1
* Add support for open-vm-toolsDave Sugar2024-12-144-0/+145
* systemd_homed_record_t: new type for user recordsRahul Sandhu2024-12-142-0/+9
* systemd_homework_t: allow managing of lvm_runtime_t files and dirsRahul Sandhu2024-12-141-0/+4
* lvm_manage_runtime_dirs: new interface for managing LVM runtime dirsRahul Sandhu2024-12-141-0/+19
* systemd: getattr namespace filesChristian Göttsche2024-12-144-0/+12
* systemd: permit sysusers to create /etc/groupChristian Göttsche2024-12-141-0/+2
* systemd_homed_runtime_work_dir_t: new type for systemd-homed workdirRahul Sandhu2024-12-142-1/+6
* authlogin: connect to homedRahul Sandhu2024-12-141-0/+1
* systemd-homed: label LUKS home images as systemd_homed_storage_tRahul Sandhu2024-12-141-0/+3
* systemd_homed_t, systemd_homework_t: allow reading of /etc/machine-idRahul Sandhu2024-12-141-0/+6
* locallogin: allow talking to systemd-homed user record APIsRahul Sandhu2024-12-141-0/+2
* systemd_stream_connect_homed: new interface to access account infoRahul Sandhu2024-12-141-0/+19
* mozilla adds .mozilla directory to /etc/skel which useradd tries to copyDave Sugar2024-12-142-0/+65
* Communicate with locale via dbusDave Sugar2024-12-142-0/+24
* Need search perms on cert_t/tls_privkey_t when using private typesDave Sugar2024-12-141-4/+45
* Setup sudo log file typeDave Sugar2024-12-142-0/+8
* systemd: permit sd-sysuser access to admin terminalChristian Göttsche2024-12-141-0/+4
* policy_capabilities: add stub for userspace_initial_contextChristian Göttsche2024-12-141-0/+8
* Fix typosChristian Göttsche2024-12-1420-30/+47
* bootloader: get scheduling informationChristian Göttsche2024-12-141-1/+1
* Reorder permissions to please SELintChristian Göttsche2024-12-142-2/+2
* kernel: create /dev/vsock with correct contextChristian Göttsche2024-12-142-0/+20
* ssh: label sshd-session helper on DebianChristian Göttsche2024-12-141-0/+1
* locallogin: permit login process to signal itselfChristian Göttsche2024-12-141-1/+1
* systemd: permit ssh generator to request vsock moduleChristian Göttsche2024-12-141-0/+2
* userdomain: include map in userdom_manage_user_home_content_files()Christian Göttsche2024-12-141-1/+1
* unconfined: permit io_uring accessChristian Göttsche2024-12-141-0/+3
* init: Move common rules out of daemon/system interfaces.Chris PeBenito2024-12-142-100/+52
* systemd: Fix systemd_write_notify_socket().Chris PeBenito2024-12-142-3/+3
* Revert "systemd: Fix systemd_write_notify_socket()."Chris PeBenito2024-12-142-3/+3
* files context : few fixes for merged-usr distro_gentooNicolas PARLANT2024-12-142-0/+4
* systemd: Fix systemd_write_notify_socket().Chris PeBenito2024-12-142-3/+3
* cron: Remove too greedy file context grabHenrik Grindal Bakken2024-12-141-1/+0
* add netlink_xperm policy capability and nlmsg permission definitionsStephen Smalley2024-12-142-0/+20
* devices: add more video4linux related devices as v4l_device_tHans-Christian Noren Egtvedt2024-12-141-0/+5