aboutsummaryrefslogtreecommitdiff
Commit message (Expand)AuthorAgeFilesLines
* Allow interactive user terminal output for the NetLabel management tool.Guido Trentalancia2024-09-211-0/+2
* various: rules required for DV manipulation in kubevirtKenton Groombridge2024-09-212-0/+6
* iptables: allow reading container engine tmp filesKenton Groombridge2024-09-211-2/+3
* iptables: allow reading usr filesKenton Groombridge2024-09-211-0/+1
* systemd: make xdg optionalYi Zhao2024-09-211-2/+8
* systemd: allow logind to use locallogin pidfdsKenton Groombridge2024-09-211-0/+4
* userdomain: allow administrative user to get attributes of shadow history fileYi Zhao2024-09-212-0/+20
* init: use pidfds from local loginKenton Groombridge2024-09-212-0/+22
* dbus, init: add interface for pidfd usageKenton Groombridge2024-09-211-1/+1
* sysnetwork: allow ifconfig to read usr filesKenton Groombridge2024-09-211-0/+1
* systemd: allow systemd-logind to use sshd pidfdsKenton Groombridge2024-09-211-0/+6
* Reorder perms and classesfreedom1b28302024-09-2126-132/+132
* selinuxutil: make policykit optionalYi Zhao2024-09-211-2/+4
* newrole: allow newrole to search faillock runtime directoryYi Zhao2024-09-212-0/+19
* sysnetwork: fixes for dhcpcdYi Zhao2024-09-211-0/+5
* init: Add homectl dbus access.Chris PeBenito2024-09-212-0/+25
* filesystem/systemd: memory.pressure fixes.Chris PeBenito2024-09-211-0/+2
* systemd: Add basic systemd-analyze rules.Chris PeBenito2024-09-211-0/+23
* various: various fixesKenton Groombridge2024-05-144-1/+7
* container, podman: various fixesKenton Groombridge2024-05-141-0/+20
* systemd: allow systemd-sysctl to search tmpfsKenton Groombridge2024-05-141-0/+1
* userdom: allow users to read user home dir symlinksKenton Groombridge2024-05-141-0/+3
* init: allow systemd to use sshd pidfdsKenton Groombridge2024-05-141-0/+4
* files context for merged-usr profile on gentooGrzegorz Filo2024-05-143-0/+11
* xen: Drop xend/xm stack.Chris PeBenito2024-05-146-396/+50
* Allow systemd to pass down sig maskMatt Sheets2024-05-141-0/+1
* cups: Remove PTAL.Chris PeBenito2024-05-141-1/+0
* xen: Revoke kernel module loading permissions.Chris PeBenito2024-05-141-1/+0
* Set the type on /etc/machine-info to net_conf_t so hostnamectl can manipulate...Rick Alther2024-05-141-0/+1
* systemd: allow notify client to stat socketChristian Göttsche2024-05-141-1/+1
* getty: grant checkpoint_restoreChristian Göttsche2024-05-141-0/+1
* Setup domain for dbus selinux interfaceDave Sugar2024-05-143-0/+47
* libraries: drop space in empty lineChristian Göttsche2024-03-011-1/+1
* systemd: logind updateChristian Göttsche2024-03-011-0/+3
* udev: updateChristian Göttsche2024-03-012-0/+33
* systemd: generator updatesChristian Göttsche2024-03-012-1/+22
* systemd: binfmt updatesChristian Göttsche2024-03-011-0/+6
* userdom: permit reading PSI as adminChristian Göttsche2024-03-011-0/+1
* selinuxutil: ignore getattr proc in newroleChristian Göttsche2024-03-011-0/+1
* selinuxutil: setfiles updatesChristian Göttsche2024-03-011-0/+3
* cloudinit: Add permissions derived from sysadm.Chris PeBenito2024-03-018-3/+73
* systemd: Updates for systemd-locale.Chris PeBenito2024-03-011-0/+5
* cloud-init: Add systemd permissions.Chris PeBenito2024-03-011-0/+19
* sysnetwork: ifconfig searches debugfs.Chris PeBenito2024-03-011-0/+1
* selinuxutil: Semanage reads policy for export.Chris PeBenito2024-03-011-0/+1
* init: Allow nnp/nosuid transitions from systemd initrc_t.Chris PeBenito2024-03-011-0/+2
* systemd: Minor coredump fixes.Chris PeBenito2024-03-011-7/+4
* systemd: systemd-cgroups reads kernel.cap_last_cap sysctl.Chris PeBenito2024-03-011-0/+3
* systemd: allow systemd generator to list exportsKenton Groombridge2024-03-011-0/+1
* bootloader, init, udev: misc minor fixesKenton Groombridge2024-03-012-1/+3