-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Wed, 11 May 2011 11:58:46 +1000 Source: refpolicy Binary: selinux-policy-default selinux-policy-mls selinux-policy-src selinux-policy-dev selinux-policy-doc Architecture: source all Version: 2:0.2.20100524-9 Distribution: unstable Urgency: low Maintainer: Russell Coker <russell@coker.com.au> Changed-By: Russell Coker <russell@coker.com.au> Description: selinux-policy-default - Strict and Targeted variants of the SELinux policy selinux-policy-dev - Headers from the SELinux reference policy for building modules selinux-policy-doc - Documentation for the SELinux reference policy selinux-policy-mls - MLS (Multi Level Security) variant of the SELinux policy selinux-policy-src - Source of the SELinux reference policy for customization Changes: refpolicy (2:0.2.20100524-9) unstable; urgency=low . * Make gnome.pp not be autoloaded and revert some of the gnome stuff from the previous version. Getting gnome (gconfd) policy to work correctly is too hard for Squeeze. * Allow user_t to talk to xdm_var_run_t sockets so switch user can work. * Allow mailman_mail_t to read /dev/urandom and usr_t files * Allow xenconsoled_t capability sys_tty_config and create unix_dgram_socket * Allow iodine_t to read /proc/filesystems * Allow jabber_t to write it's fifos, process set/getsched, connect to generic tcp ports, and bind to udp ports. * Label /var/lib/sudo as pam_var_run_t * Allow sshd_t to read gitosis files. * Made the gitosis label apply to /srv/gitosis. * Allow webalizer to read usr_t files for geoip database. * Allow user_t and staff_t consolekit_dbus_chat() access so they can determine their session status - necessary to login in KDE sometimes. * Label ~/.gnupg/gpg.conf as user_home_t and allow user_t to list directories of type gpg_secret_t so gpg-agent can start. * Allow gpg_agent_t to launch a user session and send sigchld to xdm_t * Allow user_ssh_agent_t to send sigchld to xdm_t and allow it to run the gpg agent. * Add new paths for chromium-browser to support the version in unstable, needed for backports. * Allow user_mail_t to transition to postfix_master_t for postalias, confined by roles. Uses domain_system_change_exemption() for user_mail_t via postfix_domtrans_master() which isn't ideal. Checksums-Sha1: a989f3f5baca95595f44853c025e80ac6fea05ea 1514 refpolicy_0.2.20100524-9.dsc b98ced8d88841d3c3b89385bb2bab101d3708d2b 114652 refpolicy_0.2.20100524-9.diff.gz 8533b0d183d55776d767eaf475c020b9120b6371 4171664 selinux-policy-default_0.2.20100524-9_all.deb f2d4bbac8c9b0019fdb8d650df5f3b9bfe015c27 4209718 selinux-policy-mls_0.2.20100524-9_all.deb 2476c6e840ce62d9947d3945bee018bef2bbb17b 994388 selinux-policy-src_0.2.20100524-9_all.deb fde1ce385cba586650415abcc2ee475c7a318b3d 822422 selinux-policy-dev_0.2.20100524-9_all.deb 0b72e6d852d155034749ea3ee41e882a2ac87b98 576764 selinux-policy-doc_0.2.20100524-9_all.deb Checksums-Sha256: d7bb96550aef0e65e89f6d7741c5d4e679463f0d65999b437f48c74e28293e2b 1514 refpolicy_0.2.20100524-9.dsc 7094842f031c10a0dd3d9a4385c1a0302f75e3e2a59dee8d0379bd06116f2c3b 114652 refpolicy_0.2.20100524-9.diff.gz 8bbd4e86b193dc849e81d1718f40104a47e22d75923ca024c77eb98dc5dad0de 4171664 selinux-policy-default_0.2.20100524-9_all.deb 741a602ad046450b04611b90f7e0c14b1391ae77d36078a06c7251043de415cf 4209718 selinux-policy-mls_0.2.20100524-9_all.deb 2aa71dd42513b0710c874a5ec36067182e7d339bb43611b20757fd66b4478d11 994388 selinux-policy-src_0.2.20100524-9_all.deb 40c1907c1417f728eb5ff31158ef6edb7517c688e67394722c387c65b16c477e 822422 selinux-policy-dev_0.2.20100524-9_all.deb 48518da69b85847cb79bb0116b957d5f8155bacd75fbe2f19c1a50d60d97306b 576764 selinux-policy-doc_0.2.20100524-9_all.deb Files: 24eebc942e632a29e23d941e2f52066e 1514 admin optional refpolicy_0.2.20100524-9.dsc 4ba5c7ae7183d78958045966f7830965 114652 admin optional refpolicy_0.2.20100524-9.diff.gz 431db21f2f6b6cc5d585ad6a5d184887 4171664 admin optional selinux-policy-default_0.2.20100524-9_all.deb 1c87cd3e28e5d68274c4deb91bd18cb4 4209718 admin extra selinux-policy-mls_0.2.20100524-9_all.deb ca13c2b00bb56e0d41470817905508b6 994388 admin optional selinux-policy-src_0.2.20100524-9_all.deb 4c95385e6f946b406d092f4b2982c7d3 822422 admin optional selinux-policy-dev_0.2.20100524-9_all.deb a7d3df02017c1b069626542078f2e674 576764 doc optional selinux-policy-doc_0.2.20100524-9_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iEYEARECAAYFAk3J/gsACgkQwrB5/PXHUlax3gCgnDcvZ3k1HaN1AqyNFXsu1JGZ 9cAAn088ekE+09AOGKqqWiHUV5c+ck/o =vFVy -----END PGP SIGNATURE----- Accepted: refpolicy_0.2.20100524-9.diff.gz to main/r/refpolicy/refpolicy_0.2.20100524-9.diff.gz refpolicy_0.2.20100524-9.dsc to main/r/refpolicy/refpolicy_0.2.20100524-9.dsc selinux-policy-default_0.2.20100524-9_all.deb to main/r/refpolicy/selinux-policy-default_0.2.20100524-9_all.deb selinux-policy-dev_0.2.20100524-9_all.deb to main/r/refpolicy/selinux-policy-dev_0.2.20100524-9_all.deb selinux-policy-doc_0.2.20100524-9_all.deb to main/r/refpolicy/selinux-policy-doc_0.2.20100524-9_all.deb selinux-policy-mls_0.2.20100524-9_all.deb to main/r/refpolicy/selinux-policy-mls_0.2.20100524-9_all.deb selinux-policy-src_0.2.20100524-9_all.deb to main/r/refpolicy/selinux-policy-src_0.2.20100524-9_all.deb