rpms/selinux-policy/F-10 policy-20080710.patch, 1.178, 1.179 selinux-policy.spec, 1.806, 1.807

Miroslav Grepl mgrepl at fedoraproject.org
Thu Sep 17 15:18:28 UTC 2009


Author: mgrepl

Update of /cvs/extras/rpms/selinux-policy/F-10
In directory cvs1.fedora.phx.redhat.com:/tmp/cvs-serv20274

Modified Files:
	policy-20080710.patch selinux-policy.spec 
Log Message:
- Allow spamd to read spamd_var_lib_t symlinks



policy-20080710.patch:
 Makefile                                            |   26 
 Rules.modular                                       |   18 
 config/appconfig-mcs/default_contexts               |   19 
 config/appconfig-mcs/failsafe_context               |    2 
 config/appconfig-mcs/guest_u_default_contexts       |    6 
 config/appconfig-mcs/root_default_contexts          |    8 
 config/appconfig-mcs/seusers                        |    4 
 config/appconfig-mcs/staff_u_default_contexts       |    4 
 config/appconfig-mcs/unconfined_u_default_contexts  |    2 
 config/appconfig-mcs/user_u_default_contexts        |    5 
 config/appconfig-mcs/userhelper_context             |    2 
 config/appconfig-mcs/xguest_u_default_contexts      |    7 
 config/appconfig-mls/default_contexts               |   19 
 config/appconfig-mls/guest_u_default_contexts       |    4 
 config/appconfig-mls/root_default_contexts          |   12 
 config/appconfig-mls/staff_u_default_contexts       |    2 
 config/appconfig-mls/user_u_default_contexts        |    2 
 config/appconfig-mls/xguest_u_default_contexts      |    7 
 config/appconfig-standard/guest_u_default_contexts  |    4 
 config/appconfig-standard/root_default_contexts     |    6 
 config/appconfig-standard/staff_u_default_contexts  |    2 
 config/appconfig-standard/user_u_default_contexts   |    2 
 config/appconfig-standard/xguest_u_default_contexts |    5 
 man/man8/nfs_selinux.8                              |   19 
 man/man8/samba_selinux.8                            |   12 
 policy/flask/access_vectors                         |    1 
 policy/global_tunables                              |   20 
 policy/mcs                                          |    8 
 policy/mls                                          |    9 
 policy/modules/admin/alsa.te                        |    1 
 policy/modules/admin/anaconda.te                    |    1 
 policy/modules/admin/certwatch.te                   |    4 
 policy/modules/admin/consoletype.te                 |   11 
 policy/modules/admin/kismet.if                      |    1 
 policy/modules/admin/kismet.te                      |   49 
 policy/modules/admin/logrotate.te                   |   14 
 policy/modules/admin/logwatch.te                    |   11 
 policy/modules/admin/mrtg.te                        |    1 
 policy/modules/admin/netutils.te                    |   11 
 policy/modules/admin/prelink.te                     |   18 
 policy/modules/admin/rpm.fc                         |   10 
 policy/modules/admin/rpm.if                         |  290 +++
 policy/modules/admin/rpm.te                         |   40 
 policy/modules/admin/su.if                          |   69 
 policy/modules/admin/sudo.if                        |   55 
 policy/modules/admin/tmpreaper.te                   |   24 
 policy/modules/admin/usermanage.te                  |   19 
 policy/modules/admin/vbetool.if                     |   31 
 policy/modules/admin/vbetool.te                     |    9 
 policy/modules/admin/vpn.if                         |   36 
 policy/modules/apps/awstats.te                      |    6 
 policy/modules/apps/ethereal.fc                     |    2 
 policy/modules/apps/ethereal.if                     |   54 
 policy/modules/apps/ethereal.te                     |    7 
 policy/modules/apps/games.if                        |   28 
 policy/modules/apps/gitosis.fc                      |    4 
 policy/modules/apps/gitosis.if                      |   94 
 policy/modules/apps/gitosis.te                      |   43 
 policy/modules/apps/gnome.fc                        |   14 
 policy/modules/apps/gnome.if                        |  171 +
 policy/modules/apps/gnome.te                        |   31 
 policy/modules/apps/gpg.fc                          |    8 
 policy/modules/apps/gpg.if                          |  304 ---
 policy/modules/apps/gpg.te                          |  248 ++
 policy/modules/apps/java.fc                         |   17 
 policy/modules/apps/java.if                         |  188 +
 policy/modules/apps/java.te                         |   31 
 policy/modules/apps/livecd.fc                       |    2 
 policy/modules/apps/livecd.if                       |   56 
 policy/modules/apps/livecd.te                       |   26 
 policy/modules/apps/loadkeys.te                     |    5 
 policy/modules/apps/mono.if                         |  103 +
 policy/modules/apps/mono.te                         |    6 
 policy/modules/apps/mozilla.fc                      |   13 
 policy/modules/apps/mozilla.if                      |  325 +--
 policy/modules/apps/mozilla.te                      |   19 
 policy/modules/apps/mplayer.fc                      |    8 
 policy/modules/apps/mplayer.if                      |   64 
 policy/modules/apps/mplayer.te                      |    4 
 policy/modules/apps/nsplugin.fc                     |   13 
 policy/modules/apps/nsplugin.if                     |  318 +++
 policy/modules/apps/nsplugin.te                     |  290 +++
 policy/modules/apps/openoffice.fc                   |    3 
 policy/modules/apps/openoffice.if                   |  106 +
 policy/modules/apps/openoffice.te                   |   14 
 policy/modules/apps/podsleuth.fc                    |    2 
 policy/modules/apps/podsleuth.if                    |   34 
 policy/modules/apps/podsleuth.te                    |   44 
 policy/modules/apps/ptchown.fc                      |    2 
 policy/modules/apps/ptchown.if                      |   22 
 policy/modules/apps/ptchown.te                      |   39 
 policy/modules/apps/qemu.fc                         |    5 
 policy/modules/apps/qemu.if                         |  367 +++
 policy/modules/apps/qemu.te                         |  152 +
 policy/modules/apps/sambagui.fc                     |    4 
 policy/modules/apps/sambagui.if                     |    2 
 policy/modules/apps/sambagui.te                     |   62 
 policy/modules/apps/screen.fc                       |    2 
 policy/modules/apps/screen.if                       |   24 
 policy/modules/apps/screen.te                       |    4 
 policy/modules/apps/slocate.te                      |    4 
 policy/modules/apps/thunderbird.fc                  |    2 
 policy/modules/apps/thunderbird.if                  |   34 
 policy/modules/apps/thunderbird.te                  |    4 
 policy/modules/apps/tvtime.if                       |   39 
 policy/modules/apps/tvtime.te                       |    6 
 policy/modules/apps/uml.fc                          |    2 
 policy/modules/apps/vmware.fc                       |   19 
 policy/modules/apps/vmware.if                       |   14 
 policy/modules/apps/vmware.te                       |   17 
 policy/modules/apps/webalizer.te                    |    2 
 policy/modules/apps/wine.fc                         |   23 
 policy/modules/apps/wine.if                         |   50 
 policy/modules/apps/wine.te                         |    8 
 policy/modules/apps/wireshark.if                    |    2 
 policy/modules/apps/wm.fc                           |    3 
 policy/modules/apps/wm.if                           |  178 +
 policy/modules/apps/wm.te                           |   10 
 policy/modules/kernel/.filesystem.if.swp            |binary
 policy/modules/kernel/corecommands.fc               |   47 
 policy/modules/kernel/corecommands.if               |    1 
 policy/modules/kernel/corenetwork.if.in             |   46 
 policy/modules/kernel/corenetwork.te.in             |   41 
 policy/modules/kernel/devices.fc                    |   46 
 policy/modules/kernel/devices.if                    |  541 +++++
 policy/modules/kernel/devices.te                    |   45 
 policy/modules/kernel/domain.if                     |   22 
 policy/modules/kernel/domain.te                     |   53 
 policy/modules/kernel/files.fc                      |    2 
 policy/modules/kernel/files.if                      |  304 +++
 policy/modules/kernel/files.te                      |   11 
 policy/modules/kernel/filesystem.if                 |  356 +++
 policy/modules/kernel/filesystem.te                 |   18 
 policy/modules/kernel/kernel.if                     |   42 
 policy/modules/kernel/kernel.te                     |   16 
 policy/modules/kernel/selinux.if                    |   54 
 policy/modules/kernel/selinux.te                    |    6 
 policy/modules/kernel/storage.fc                    |    2 
 policy/modules/kernel/storage.if                    |    1 
 policy/modules/kernel/terminal.if                   |    6 
 policy/modules/roles/.staff.te.swp                  |binary
 policy/modules/roles/guest.fc                       |    1 
 policy/modules/roles/guest.if                       |  161 +
 policy/modules/roles/guest.te                       |   36 
 policy/modules/roles/logadm.fc                      |    1 
 policy/modules/roles/logadm.if                      |   44 
 policy/modules/roles/logadm.te                      |   20 
 policy/modules/roles/staff.te                       |   58 
 policy/modules/roles/sysadm.if                      |  114 -
 policy/modules/roles/sysadm.te                      |   14 
 policy/modules/roles/unprivuser.if                  |  605 ++++++
 policy/modules/roles/unprivuser.te                  |   15 
 policy/modules/roles/webadm.fc                      |    1 
 policy/modules/roles/webadm.if                      |   44 
 policy/modules/roles/webadm.te                      |   65 
 policy/modules/roles/xguest.fc                      |    1 
 policy/modules/roles/xguest.if                      |  161 +
 policy/modules/roles/xguest.te                      |   87 
 policy/modules/services/aide.if                     |    6 
 policy/modules/services/amavis.if                   |   20 
 policy/modules/services/amavis.te                   |    2 
 policy/modules/services/apache.fc                   |   35 
 policy/modules/services/apache.if                   |  488 +++--
 policy/modules/services/apache.te                   |  397 +++-
 policy/modules/services/apcupsd.fc                  |    2 
 policy/modules/services/arpwatch.fc                 |    1 
 policy/modules/services/arpwatch.if                 |   42 
 policy/modules/services/arpwatch.te                 |    3 
 policy/modules/services/asterisk.fc                 |    1 
 policy/modules/services/asterisk.if                 |   53 
 policy/modules/services/asterisk.te                 |    3 
 policy/modules/services/audioentropy.fc             |    2 
 policy/modules/services/audioentropy.te             |    1 
 policy/modules/services/automount.if                |   18 
 policy/modules/services/automount.te                |    6 
 policy/modules/services/avahi.fc                    |    4 
 policy/modules/services/avahi.if                    |  132 +
 policy/modules/services/avahi.te                    |   15 
 policy/modules/services/bind.fc                     |    7 
 policy/modules/services/bind.if                     |   92 
 policy/modules/services/bind.te                     |    5 
 policy/modules/services/bitlbee.te                  |    2 
 policy/modules/services/bluetooth.fc                |    5 
 policy/modules/services/bluetooth.if                |   53 
 policy/modules/services/bluetooth.te                |   22 
 policy/modules/services/certmaster.fc               |    9 
 policy/modules/services/certmaster.if               |  128 +
 policy/modules/services/certmaster.te               |   81 
 policy/modules/services/clamav.fc                   |   12 
 policy/modules/services/clamav.if                   |  105 +
 policy/modules/services/clamav.te                   |   35 
 policy/modules/services/consolekit.fc               |    3 
 policy/modules/services/consolekit.if               |   21 
 policy/modules/services/consolekit.te               |   64 
 policy/modules/services/courier.fc                  |    2 
 policy/modules/services/courier.if                  |   19 
 policy/modules/services/courier.te                  |    4 
 policy/modules/services/cron.fc                     |   10 
 policy/modules/services/cron.if                     |  250 +-
 policy/modules/services/cron.te                     |  112 -
 policy/modules/services/cups.fc                     |   32 
 policy/modules/services/cups.if                     |  106 +
 policy/modules/services/cups.te                     |  186 +
 policy/modules/services/cvs.te                      |    1 
 policy/modules/services/cyphesis.fc                 |    5 
 policy/modules/services/cyrus.te                    |    1 
 policy/modules/services/dbus.fc                     |    3 
 policy/modules/services/dbus.if                     |  235 ++
 policy/modules/services/dbus.te                     |   57 
 policy/modules/services/dcc.fc                      |    2 
 policy/modules/services/dcc.if                      |   18 
 policy/modules/services/dcc.te                      |   62 
 policy/modules/services/dhcp.fc                     |    1 
 policy/modules/services/dhcp.if                     |   60 
 policy/modules/services/dhcp.te                     |   18 
 policy/modules/services/dnsmasq.fc                  |    3 
 policy/modules/services/dnsmasq.if                  |  174 +
 policy/modules/services/dnsmasq.te                  |   22 
 policy/modules/services/dovecot.fc                  |   12 
 policy/modules/services/dovecot.if                  |   98 +
 policy/modules/services/dovecot.te                  |   98 -
 policy/modules/services/exim.if                     |   40 
 policy/modules/services/exim.te                     |  102 -
 policy/modules/services/fail2ban.fc                 |    1 
 policy/modules/services/fail2ban.if                 |   45 
 policy/modules/services/fail2ban.te                 |   10 
 policy/modules/services/fetchmail.fc                |    2 
 policy/modules/services/fetchmail.if                |   26 
 policy/modules/services/fetchmail.te                |   10 
 policy/modules/services/ftp.te                      |   53 
 policy/modules/services/gamin.fc                    |    2 
 policy/modules/services/gamin.if                    |   57 
 policy/modules/services/gamin.te                    |   39 
 policy/modules/services/gnomeclock.fc               |    3 
 policy/modules/services/gnomeclock.if               |   75 
 policy/modules/services/gnomeclock.te               |   55 
 policy/modules/services/gpsd.fc                     |    3 
 policy/modules/services/gpsd.if                     |   89 
 policy/modules/services/gpsd.te                     |   55 
 policy/modules/services/hal.fc                      |    4 
 policy/modules/services/hal.if                      |   39 
 policy/modules/services/hal.te                      |  112 +
 policy/modules/services/inetd.fc                    |    2 
 policy/modules/services/inetd.te                    |    2 
 policy/modules/services/kerberos.fc                 |    6 
 policy/modules/services/kerberos.te                 |    3 
 policy/modules/services/kerneloops.if               |   23 
 policy/modules/services/kerneloops.te               |    6 
 policy/modules/services/ktalk.te                    |    1 
 policy/modules/services/ldap.te                     |    6 
 policy/modules/services/lircd.fc                    |    9 
 policy/modules/services/lircd.if                    |  100 +
 policy/modules/services/lircd.te                    |   70 
 policy/modules/services/lpd.fc                      |    6 
 policy/modules/services/mailman.fc                  |    1 
 policy/modules/services/mailman.if                  |   28 
 policy/modules/services/mailman.te                  |   33 
 policy/modules/services/mailscanner.fc              |    2 
 policy/modules/services/mailscanner.if              |   59 
 policy/modules/services/mailscanner.te              |    5 
 policy/modules/services/milter.fc                   |   15 
 policy/modules/services/milter.if                   |  104 +
 policy/modules/services/milter.te                   |  107 +
 policy/modules/services/mta.fc                      |   10 
 policy/modules/services/mta.if                      |   70 
 policy/modules/services/mta.te                      |   76 
 policy/modules/services/munin.fc                    |    7 
 policy/modules/services/munin.if                    |   92 
 policy/modules/services/munin.te                    |   77 
 policy/modules/services/mysql.fc                    |    3 
 policy/modules/services/mysql.if                    |  128 +
 policy/modules/services/mysql.te                    |   53 
 policy/modules/services/nagios.fc                   |   11 
 policy/modules/services/nagios.if                   |   71 
 policy/modules/services/nagios.te                   |   58 
 policy/modules/services/networkmanager.fc           |   12 
 policy/modules/services/networkmanager.if           |   18 
 policy/modules/services/networkmanager.te           |  106 -
 policy/modules/services/nis.fc                      |    6 
 policy/modules/services/nis.if                      |  126 +
 policy/modules/services/nis.te                      |   27 
 policy/modules/services/nscd.fc                     |    1 
 policy/modules/services/nscd.if                     |  126 +
 policy/modules/services/nscd.te                     |   32 
 policy/modules/services/ntp.if                      |   57 
 policy/modules/services/ntp.te                      |   19 
 policy/modules/services/nx.fc                       |    4 
 policy/modules/services/oddjob.fc                   |    2 
 policy/modules/services/oddjob.if                   |   32 
 policy/modules/services/oddjob.te                   |   28 
 policy/modules/services/openvpn.fc                  |    1 
 policy/modules/services/openvpn.if                  |   36 
 policy/modules/services/openvpn.te                  |   19 
 policy/modules/services/pads.fc                     |   12 
 policy/modules/services/pads.if                     |   10 
 policy/modules/services/pads.te                     |   68 
 policy/modules/services/pcscd.fc                    |    1 
 policy/modules/services/pcscd.te                    |   12 
 policy/modules/services/pegasus.te                  |   28 
 policy/modules/services/pingd.fc                    |   11 
 policy/modules/services/pingd.if                    |   99 +
 policy/modules/services/pingd.te                    |   54 
 policy/modules/services/pki.fc                      |   46 
 policy/modules/services/pki.if                      |  643 ++++++
 policy/modules/services/pki.te                      |   91 
 policy/modules/services/polkit.fc                   |    9 
 policy/modules/services/polkit.if                   |  233 ++
 policy/modules/services/polkit.te                   |  235 ++
 policy/modules/services/portmap.te                  |    1 
 policy/modules/services/portreserve.fc              |   12 
 policy/modules/services/portreserve.if              |   70 
 policy/modules/services/portreserve.te              |   55 
 policy/modules/services/postfix.fc                  |    6 
 policy/modules/services/postfix.if                  |  136 +
 policy/modules/services/postfix.te                  |  134 +
 policy/modules/services/postgresql.fc               |    1 
 policy/modules/services/postgresql.if               |   43 
 policy/modules/services/postgresql.te               |   12 
 policy/modules/services/postgrey.fc                 |    4 
 policy/modules/services/postgrey.if                 |   67 
 policy/modules/services/postgrey.te                 |   19 
 policy/modules/services/ppp.fc                      |    6 
 policy/modules/services/ppp.if                      |   64 
 policy/modules/services/ppp.te                      |   38 
 policy/modules/services/prelude.fc                  |   14 
 policy/modules/services/prelude.if                  |   71 
 policy/modules/services/prelude.te                  |  193 ++
 policy/modules/services/privoxy.fc                  |    2 
 policy/modules/services/privoxy.if                  |   12 
 policy/modules/services/privoxy.te                  |   17 
 policy/modules/services/procmail.fc                 |    3 
 policy/modules/services/procmail.if                 |   38 
 policy/modules/services/procmail.te                 |   35 
 policy/modules/services/psad.fc                     |   17 
 policy/modules/services/psad.if                     |  304 +++
 policy/modules/services/psad.te                     |  107 +
 policy/modules/services/pyzor.fc                    |    6 
 policy/modules/services/pyzor.if                    |   61 
 policy/modules/services/pyzor.te                    |   51 
 policy/modules/services/qmail.te                    |    8 
 policy/modules/services/radius.te                   |    3 
 policy/modules/services/radvd.te                    |    2 
 policy/modules/services/razor.fc                    |    4 
 policy/modules/services/razor.if                    |   87 
 policy/modules/services/razor.te                    |   38 
 policy/modules/services/ricci.te                    |   18 
 policy/modules/services/rlogin.te                   |   16 
 policy/modules/services/roundup.fc                  |    2 
 policy/modules/services/roundup.if                  |   38 
 policy/modules/services/roundup.te                  |    3 
 policy/modules/services/rpc.fc                      |    1 
 policy/modules/services/rpc.if                      |   43 
 policy/modules/services/rpc.te                      |   33 
 policy/modules/services/rpcbind.fc                  |    2 
 policy/modules/services/rpcbind.te                  |    3 
 policy/modules/services/rshd.te                     |   17 
 policy/modules/services/rsync.fc                    |    2 
 policy/modules/services/rsync.te                    |   11 
 policy/modules/services/samba.fc                    |    8 
 policy/modules/services/samba.if                    |  387 ++++
 policy/modules/services/samba.te                    |  209 +-
 policy/modules/services/sasl.te                     |    5 
 policy/modules/services/sendmail.if                 |  103 +
 policy/modules/services/sendmail.te                 |   92 
 policy/modules/services/setroubleshoot.fc           |    2 
 policy/modules/services/setroubleshoot.if           |   48 
 policy/modules/services/setroubleshoot.te           |   31 
 policy/modules/services/smartmon.te                 |   12 
 policy/modules/services/snmp.fc                     |    6 
 policy/modules/services/snmp.if                     |   36 
 policy/modules/services/snmp.te                     |   28 
 policy/modules/services/snort.if                    |    9 
 policy/modules/services/snort.te                    |    9 
 policy/modules/services/spamassassin.fc             |   16 
 policy/modules/services/spamassassin.if             |  472 ++--
 policy/modules/services/spamassassin.te             |  220 ++
 policy/modules/services/squid.fc                    |    4 
 policy/modules/services/squid.if                    |   18 
 policy/modules/services/squid.te                    |    8 
 policy/modules/services/ssh.fc                      |    2 
 policy/modules/services/ssh.if                      |  151 +
 policy/modules/services/ssh.te                      |   43 
 policy/modules/services/stunnel.fc                  |    1 
 policy/modules/services/stunnel.te                  |    3 
 policy/modules/services/sysstat.te                  |    2 
 policy/modules/services/telnet.te                   |    4 
 policy/modules/services/tftp.te                     |    1 
 policy/modules/services/tor.te                      |    2 
 policy/modules/services/ulogd.fc                    |   10 
 policy/modules/services/ulogd.if                    |  127 +
 policy/modules/services/ulogd.te                    |   54 
 policy/modules/services/uucp.fc                     |    7 
 policy/modules/services/uucp.te                     |   14 
 policy/modules/services/virt.fc                     |    1 
 policy/modules/services/virt.if                     |   94 
 policy/modules/services/virt.te                     |   47 
 policy/modules/services/w3c.te                      |    7 
 policy/modules/services/xserver.fc                  |   40 
 policy/modules/services/xserver.if                  |  915 +++++++--
 policy/modules/services/xserver.te                  |  317 +++
 policy/modules/services/zebra.te                    |    2 
 policy/modules/services/zosremote.fc                |    2 
 policy/modules/services/zosremote.if                |   52 
 policy/modules/services/zosremote.te                |   36 
 policy/modules/system/application.te                |    6 
 policy/modules/system/authlogin.fc                  |   10 
 policy/modules/system/authlogin.if                  |  212 ++
 policy/modules/system/authlogin.te                  |   46 
 policy/modules/system/fstools.fc                    |    2 
 policy/modules/system/fstools.te                    |    9 
 policy/modules/system/hostname.te                   |    4 
 policy/modules/system/init.fc                       |    5 
 policy/modules/system/init.if                       |  129 +
 policy/modules/system/init.te                       |  114 +
 policy/modules/system/ipsec.fc                      |    3 
 policy/modules/system/ipsec.te                      |   47 
 policy/modules/system/iptables.fc                   |   16 
 policy/modules/system/iptables.te                   |   13 
 policy/modules/system/iscsi.te                      |    4 
 policy/modules/system/libraries.fc                  |   90 
 policy/modules/system/libraries.te                  |   18 
 policy/modules/system/locallogin.te                 |   26 
 policy/modules/system/logging.fc                    |   11 
 policy/modules/system/logging.if                    |   25 
 policy/modules/system/logging.te                    |   18 
 policy/modules/system/lvm.fc                        |    2 
 policy/modules/system/lvm.te                        |   66 
 policy/modules/system/miscfiles.if                  |   39 
 policy/modules/system/modutils.te                   |   40 
 policy/modules/system/mount.fc                      |    8 
 policy/modules/system/mount.if                      |   21 
 policy/modules/system/mount.te                      |   81 
 policy/modules/system/raid.te                       |    4 
 policy/modules/system/selinuxutil.fc                |   10 
 policy/modules/system/selinuxutil.if                |  373 +++
 policy/modules/system/selinuxutil.te                |  229 --
 policy/modules/system/setrans.if                    |   20 
 policy/modules/system/sysnetwork.fc                 |   15 
 policy/modules/system/sysnetwork.if                 |   82 
 policy/modules/system/sysnetwork.te                 |   72 
 policy/modules/system/udev.fc                       |    4 
 policy/modules/system/udev.if                       |   28 
 policy/modules/system/udev.te                       |   16 
 policy/modules/system/unconfined.fc                 |   34 
 policy/modules/system/unconfined.if                 |  300 +++
 policy/modules/system/unconfined.te                 |  209 +-
 policy/modules/system/userdomain.fc                 |    9 
 policy/modules/system/userdomain.if                 | 1899 ++++++++++++++------
 policy/modules/system/userdomain.te                 |   89 
 policy/modules/system/xen.fc                        |    6 
 policy/modules/system/xen.if                        |   50 
 policy/modules/system/xen.te                        |  127 +
 policy/policy_capabilities                          |    2 
 policy/support/obj_perm_sets.spt                    |   74 
 policy/users                                        |   13 
 support/Makefile.devel                              |    3 
 456 files changed, 22281 insertions(+), 3612 deletions(-)

Index: policy-20080710.patch
===================================================================
RCS file: /cvs/extras/rpms/selinux-policy/F-10/policy-20080710.patch,v
retrieving revision 1.178
retrieving revision 1.179
diff -u -p -r1.178 -r1.179
--- policy-20080710.patch	3 Sep 2009 14:30:21 -0000	1.178
+++ policy-20080710.patch	17 Sep 2009 15:18:24 -0000	1.179
@@ -28998,7 +28998,7 @@ diff --exclude-from=exclude -N -u -r nsa
 +')
 diff --exclude-from=exclude -N -u -r nsaserefpolicy/policy/modules/services/spamassassin.te serefpolicy-3.5.13/policy/modules/services/spamassassin.te
 --- nsaserefpolicy/policy/modules/services/spamassassin.te	2008-10-17 14:49:11.000000000 +0200
-+++ serefpolicy-3.5.13/policy/modules/services/spamassassin.te	2009-06-11 12:21:25.000000000 +0200
++++ serefpolicy-3.5.13/policy/modules/services/spamassassin.te	2009-09-17 16:43:19.000000000 +0200
 @@ -21,16 +21,24 @@
  gen_tunable(spamd_enable_home_dirs, true)
  
@@ -29073,12 +29073,13 @@ diff --exclude-from=exclude -N -u -r nsa
  files_spool_filetrans(spamd_t, spamd_spool_t, { file dir })
  
  manage_dirs_pattern(spamd_t, spamd_tmp_t, spamd_tmp_t)
-@@ -81,12 +105,21 @@
+@@ -81,12 +105,22 @@
  
  # var/lib files for spamd
  allow spamd_t spamd_var_lib_t:dir list_dir_perms;
 -read_files_pattern(spamd_t, spamd_var_lib_t, spamd_var_lib_t)
 +manage_files_pattern(spamd_t, spamd_var_lib_t, spamd_var_lib_t)
++manage_lnk_files_pattern(spamd_t, spamd_var_lib_t, spamd_var_lib_t)
  
  manage_dirs_pattern(spamd_t, spamd_var_run_t, spamd_var_run_t)
  manage_files_pattern(spamd_t, spamd_var_run_t, spamd_var_run_t)
@@ -29096,7 +29097,7 @@ diff --exclude-from=exclude -N -u -r nsa
  kernel_read_all_sysctls(spamd_t)
  kernel_read_system_state(spamd_t)
  
-@@ -118,6 +151,7 @@
+@@ -118,6 +152,7 @@
  dev_read_urand(spamd_t)
  
  fs_getattr_all_fs(spamd_t)
@@ -29104,7 +29105,7 @@ diff --exclude-from=exclude -N -u -r nsa
  fs_search_auto_mountpoints(spamd_t)
  
  auth_dontaudit_read_shadow(spamd_t)
-@@ -134,6 +168,8 @@
+@@ -134,6 +169,8 @@
  
  init_dontaudit_rw_utmp(spamd_t)
  
@@ -29113,7 +29114,7 @@ diff --exclude-from=exclude -N -u -r nsa
  libs_use_ld_so(spamd_t)
  libs_use_shared_libs(spamd_t)
  
-@@ -141,20 +177,33 @@
+@@ -141,20 +178,33 @@
  
  miscfiles_read_localization(spamd_t)
  
@@ -29152,7 +29153,7 @@ diff --exclude-from=exclude -N -u -r nsa
  	fs_manage_cifs_files(spamd_t)
  ')
  
-@@ -172,6 +221,7 @@
+@@ -172,6 +222,7 @@
  
  optional_policy(`
  	dcc_domtrans_client(spamd_t)
@@ -29160,7 +29161,7 @@ diff --exclude-from=exclude -N -u -r nsa
  	dcc_stream_connect_dccifd(spamd_t)
  ')
  
-@@ -181,10 +231,6 @@
+@@ -181,10 +232,6 @@
  ')
  
  optional_policy(`
@@ -29171,7 +29172,7 @@ diff --exclude-from=exclude -N -u -r nsa
  	postfix_read_config(spamd_t)
  ')
  
-@@ -199,6 +245,10 @@
+@@ -199,6 +246,10 @@
  
  optional_policy(`
  	razor_domtrans(spamd_t)
@@ -29182,7 +29183,7 @@ diff --exclude-from=exclude -N -u -r nsa
  ')
  
  optional_policy(`
-@@ -211,5 +261,144 @@
+@@ -211,5 +262,144 @@
  ')
  
  optional_policy(`


Index: selinux-policy.spec
===================================================================
RCS file: /cvs/extras/rpms/selinux-policy/F-10/selinux-policy.spec,v
retrieving revision 1.806
retrieving revision 1.807
diff -u -p -r1.806 -r1.807
--- selinux-policy.spec	3 Sep 2009 14:30:22 -0000	1.806
+++ selinux-policy.spec	17 Sep 2009 15:18:27 -0000	1.807
@@ -20,7 +20,7 @@
 Summary: SELinux policy configuration
 Name: selinux-policy
 Version: 3.5.13
-Release: 71%{?dist}
+Release: 72%{?dist}
 License: GPLv2+
 Group: System Environment/Base
 Source: serefpolicy-%{version}.tgz
@@ -462,6 +462,9 @@ exit 0
 %endif
 
 %changelog
+* Thu Sep 17 2009 Miroslav Grepl <mgrepl at redhat.com> 3.5.13-72
+- Allow spamd to read spamd_var_lib_t symlinks
+
 * Thu Sep 3 2009 Miroslav Grepl <mgrepl at redhat.com> 3.5.13-71
 - Allow postgresql to send audit messages
 




More information about the fedora-extras-commits mailing list