aboutsummaryrefslogtreecommitdiff
Commit message (Expand)AuthorAgeFilesLines
* systemd: allow systemd-hostnamed to read vsock deviceYi Zhao2024-09-211-0/+1
* systemd: fix policy for systemd-ssh-generatorYi Zhao2024-09-211-0/+9
* systemd: add policy for systemd-nsresourcedYi Zhao2024-09-213-0/+61
* systemd: allow system --user to create netlink_route_socketYi Zhao2024-09-211-0/+2
* systemd: allow systemd-networkd to manage sock files under /run/systemd/netifYi Zhao2024-09-211-0/+1
* systemd: set context to systemd_networkd_var_lib_t for /var/lib/systemd/networkYi Zhao2024-09-212-0/+8
* Allow interactive user terminal output for the NetLabel management tool.Guido Trentalancia2024-09-211-0/+2
* various: rules required for DV manipulation in kubevirtKenton Groombridge2024-09-212-0/+6
* iptables: allow reading container engine tmp filesKenton Groombridge2024-09-211-2/+3
* iptables: allow reading usr filesKenton Groombridge2024-09-211-0/+1
* systemd: make xdg optionalYi Zhao2024-09-211-2/+8
* systemd: allow logind to use locallogin pidfdsKenton Groombridge2024-09-211-0/+4
* userdomain: allow administrative user to get attributes of shadow history fileYi Zhao2024-09-212-0/+20
* init: use pidfds from local loginKenton Groombridge2024-09-212-0/+22
* dbus, init: add interface for pidfd usageKenton Groombridge2024-09-211-1/+1
* sysnetwork: allow ifconfig to read usr filesKenton Groombridge2024-09-211-0/+1
* systemd: allow systemd-logind to use sshd pidfdsKenton Groombridge2024-09-211-0/+6
* Reorder perms and classesfreedom1b28302024-09-2126-132/+132
* selinuxutil: make policykit optionalYi Zhao2024-09-211-2/+4
* newrole: allow newrole to search faillock runtime directoryYi Zhao2024-09-212-0/+19
* sysnetwork: fixes for dhcpcdYi Zhao2024-09-211-0/+5
* init: Add homectl dbus access.Chris PeBenito2024-09-212-0/+25
* filesystem/systemd: memory.pressure fixes.Chris PeBenito2024-09-211-0/+2
* systemd: Add basic systemd-analyze rules.Chris PeBenito2024-09-211-0/+23
* various: various fixesKenton Groombridge2024-05-144-1/+7
* container, podman: various fixesKenton Groombridge2024-05-141-0/+20
* systemd: allow systemd-sysctl to search tmpfsKenton Groombridge2024-05-141-0/+1
* userdom: allow users to read user home dir symlinksKenton Groombridge2024-05-141-0/+3
* init: allow systemd to use sshd pidfdsKenton Groombridge2024-05-141-0/+4
* files context for merged-usr profile on gentooGrzegorz Filo2024-05-143-0/+11
* xen: Drop xend/xm stack.Chris PeBenito2024-05-146-396/+50
* Allow systemd to pass down sig maskMatt Sheets2024-05-141-0/+1
* cups: Remove PTAL.Chris PeBenito2024-05-141-1/+0
* xen: Revoke kernel module loading permissions.Chris PeBenito2024-05-141-1/+0
* Set the type on /etc/machine-info to net_conf_t so hostnamectl can manipulate...Rick Alther2024-05-141-0/+1
* systemd: allow notify client to stat socketChristian Göttsche2024-05-141-1/+1
* getty: grant checkpoint_restoreChristian Göttsche2024-05-141-0/+1
* Setup domain for dbus selinux interfaceDave Sugar2024-05-143-0/+47
* libraries: drop space in empty lineChristian Göttsche2024-03-011-1/+1
* systemd: logind updateChristian Göttsche2024-03-011-0/+3
* udev: updateChristian Göttsche2024-03-012-0/+33
* systemd: generator updatesChristian Göttsche2024-03-012-1/+22
* systemd: binfmt updatesChristian Göttsche2024-03-011-0/+6
* userdom: permit reading PSI as adminChristian Göttsche2024-03-011-0/+1
* selinuxutil: ignore getattr proc in newroleChristian Göttsche2024-03-011-0/+1
* selinuxutil: setfiles updatesChristian Göttsche2024-03-011-0/+3
* cloudinit: Add permissions derived from sysadm.Chris PeBenito2024-03-018-3/+73
* systemd: Updates for systemd-locale.Chris PeBenito2024-03-011-0/+5
* cloud-init: Add systemd permissions.Chris PeBenito2024-03-011-0/+19
* sysnetwork: ifconfig searches debugfs.Chris PeBenito2024-03-011-0/+1