Selinux Reference Policy
[Prev Page][Next Page]
- [no subject], Unknown
- cupsd_t and sys_admin,
Russell Coker
- ANN: Reference Policy 2.20240916, Chris PeBenito
- [PATCH v2] Adding SE Policy rules to allow usage of unix stream sockets by dbus and bluetooth contexts when Gatt notifications are turned on by remote.,
Naga Bhavani Akella
- [PATCH v1] Adding SE Policy rules to allow usage of unix stream sockets by dbus and bluetooth contexts when Gatt notifications are turned on by remote.,
Naga Bhavani Akella
- [PATCH v3] Setting bluetooth helper domain for bluetoothctl,
Naga Bhavani Akella
- [PATCH v2] Adding Sepolicy rules to allow pulseaudio to access bluetooth sockets.,
Raghavender Reddy Bujala
- [PATCH v1] Adding Sepolicy rules to allow pulseaudio to access bluetooth sockets.,
Raghavender Reddy Bujala
- [PATCH v2] Setting bluetooth helper domain for bluetoothctl,
Naga Bhavani Akella
- [PATCH v1] Setting bluetooth helper domain for bluetoothctl,
Naga Bhavani Akella
- [PATCH v2] Sepolicy changes for bluez to access uhid,
Amisha Jain
- [PATCH v1] Sepolicy changes for bluez to access uhid,
Amisha Jain
- [PATCH v4] Adding Sepolicy rules to allow bluetoothctl and dbus-daemon to access unix stream sockets.,
Naga Bhavani Akella
- [PATCH v3] Adding Sepolicy rules to allow bluetoothctl and dbus-daemon to access unix stream sockets.,
Naga Bhavani Akella
- [PATCH 2/2] Adding Sepolicy rules to allow bluetoothctl and dbus-daemon to access unix stream sockets.,
Naga Bhavani Akella
- [PATCH] Adding Sepolicy rules to allow bluetoothctl and dbus-daemon to access unix stream sockets., Naga Bhavani Akella
- [PATCH v1] Adding Sepolicy rules to allow bluetoothctl and dbus-daemon to access unix stream sockets.,
Naga Bhavani Akella
- [PATCH v1] Need bluetooth socket permission for pulseaudio.,
Raghavender Reddy Bujala
- ANN: SETools 4.5.1, Chris PeBenito
- ANN: SETools 4.5.0, Chris PeBenito
- ANN: Reference Policy 2.20240226, Chris PeBenito
- ANN: SETools 4.4.4, Chris PeBenito
- PSA: this list has moved to new vger infra (no action required), Konstantin Ryabitsev
- Re: [PATCH][RFC] selinuxfs: saner handling of policy reloads,
Paul Moore
- ANN: Reference Policy 2.20231002, Chris PeBenito
- append_lnk_files_pattern,
Russell Coker
- /usr/lib/NetworkManager/nm-dispatcher,
Russell Coker
- [PATCH] policy for firmware update daemon fwupd, Russell Coker
- [PATCH] Add noatsecure for $1_systemd_t executing $1_dbusd_t, Russell Coker
- syntax errors from sepolgen-ifgen, Russell Coker
- ANN: SETools 4.4.3, Chris PeBenito
- SELinux and systemd integration,
Paul Moore
- ANN: SELinux repository changes, Chris PeBenito
- ANN: SETools 4.4.2, Christopher J. PeBenito
- [refpolicy3 RFC] Drop suffixes?,
Chris PeBenito
- Re: [PATCH testsuite 2/3] policy: allow test_ibpkey_access_t to use RDMA netlink sockets,
Paul Moore
- Re: [PATCH testsuite 1/3] policy: make sure test_ibpkey_access_t can lock enough memory,
Paul Moore
- ANN: SETools 4.4.1, Chris PeBenito
- [refpolicy3 RFC] Split broad file contexts,
Chris PeBenito
- ANN/RFC: SELinux Reference Policy 3 pre-alpha, Chris PeBenito
- ANN: Reference Policy 2.20221101, Chris PeBenito
- [PATCH] misc strict patches,
Russell Coker
- [PATCH] Sympa list server,
Russell Coker
- ANN: Reference Policy 2.20220520, Chris PeBenito
- Daemons writing into HOME_DIR,
Stefan Schulze Frielinghaus
- [PATCH] machinectl shell and login fixes,
Russell Coker
- [PATCH] wm domains and sddm fixes,
Russell Coker
- [PATCH] new sddm V2,
Russell Coker
- [PATCH] certbot V3,
Russell Coker
- restricting desktop applications, Russell Coker
- [PATCH] certbot V2,
Russell Coker
- [PATCH] mailman3 V3,
Russell Coker
- [PATCH V4] security/selinux: Always allow FIOCLEX and FIONCLEX,
Richard Haines
- [PATCH V3] security/selinux: Always allow FIOCLEX and FIONCLEX,
Richard Haines
- [PATCH V2] security/selinux: Always allow FIOCLEX and FIONCLEX,
Richard Haines
- [PATCH] mailman3 V2.1,
Russell Coker
- [PATCH] mailman3 V2, Russell Coker
- [PATCH] certbot,
Russell Coker
- [PATCH] matrixd-synapse policy V3,
Russell Coker
- [PATCH] init dbus patch for GetDynamicUsers with systemd_use_nss() V2,
Russell Coker
- [PATCH] rasdaemon V2,
Russell Coker
- [PATCH] puppet V3,
Russell Coker
- [PATCH] init dbus patch for GetDynamicUsers with systemd_use_nss(),
Russell Coker
- [PATCH] new sddm pam patch,
Russell Coker
- [PATCH] rasdaemon policy,
Russell Coker
- [PATCH] sddm role,
Russell Coker
- [PATCH] init dbus patch for GetDynamicUsers,
Russell Coker
- [PATCH] dontaudit net_admin without hide_broken_symptoms,
Russell Coker
- [PATCH] puppet patch V2,
Russell Coker
- [PATCH] dontaudit net_admin,
Russell Coker
- [PATCH] remove aliases from 20210203,
Russell Coker
- [PATCH] puppet,
Russell Coker
- Re: kmod and unsigned modules,
Chris PeBenito
- Re: [RFC PATCH] selinux: split no transition execve check,
Paul Moore
- Re: [PATCH] SELinux: Always allow FIOCLEX and FIONCLEX,
Paul Moore
- ANN: Reference Policy 2.20220106, Chris PeBenito
- [PATCH 1/2] selinux: Add map perms,
Jason Zaman
- [PATCH 0/7] mcs, various: pull in changes from Fedora policy,
Kenton Groombridge
- [PATCH] strict policy patches,
Russell Coker
- [PATCH] misc kernel patches,
Russell Coker
- [PATCH] patch for sddm with PAM,
Russell Coker
- [PATCH] Add erofs as a SELinux capable file system,
Gao Xiang
- ANN: Reference Policy 2.20210908, Chris PeBenito
- [RFC] containers module in refpolicy,
Kenton Groombridge
- [PATCH] puppet changes,
Russell Coker
- [PATCH] cockpit web admin system,
Russell Coker
- Re: [PATCH] cockpit web admin system, Dominick Grift
[PATCH] rasdaemon (replacement for mcelog),
Russell Coker
ANN: SETools 4.4.0, Chris PeBenito
cgroups,
Russell Coker
unreserved_port_t,
Russell Coker
[PATCH] blkmapd,
Russell Coker
ANN: Reference Policy 2.20210203, Chris PeBenito
[PATCH] little misc patches,
Russell Coker
[PATCH] mailman 3,
Russell Coker
[PATCH] another systemd misc patch,
Russell Coker
[PATCH] matrixd,
Russell Coker
[PATCH] machined,
Russell Coker
[PATCH] small misc patches,
Russell Coker
[PATCH] new version of filetrans patch,
Russell Coker
[PATCH] type transition rules for Debian installations, Russell Coker
sddm issue and patch not for inclusion,
Russell Coker
[PATCH] misc network patches with Dominick's changes*2,
Russell Coker
[PATCH] selinux-notebook: Add new section for Embedded Systems,
Richard Haines
[PATCH] misc network patches with Dominick's changes,
Russell Coker
[PATCH] misc services patches with changes Dominick and Chris wanted,
Russell Coker
[PATCH] misc kernel and system patches with Dominick's changes,
Russell Coker
obsolete policy,
Russell Coker
[PATCH] remove deprecated from 20190201,
Russell Coker
[PATCH] misc services patches with changes Dominick wanted,
Russell Coker
policy releases,
Russell Coker
[PATCH] misc apps and admin patches,
Russell Coker
[PATCH] latest memlockd patch,
Russell Coker
[PATCH] misc kernel and system patches,
Russell Coker
[PATCH] strict 2,
Russell Coker
[PATCH] misc network patches,
Russell Coker
[PATCH] more Chrome stuff,
Russell Coker
[RFC PATCH 0/1] selinux-notebook: Add new section for Embedded Systems,
Richard Haines
[PATCH] matrixd (synapse) policy 2,
Russell Coker
[PATCH] matrixd (synapse) policy,
Russell Coker
[PATCH] latest iteration of certbot policy as patch,
Russell Coker
[PATCH] base chrome/chromium patch fixed,
Russell Coker
[PATCH] yet more strict patches fixed,
Russell Coker
[PATCH] latest iteration of certbot policy,
Russell Coker
[PATCH] strict patches,
Russell Coker
[PATCH] yet more strict patches,
Russell Coker
[PATCH] chrome/chromium stranger things, Russell Coker
[PATCH] base chrome/chromium patch,
Russell Coker
[PATCH] udevadm patch,
Russell Coker
[RFC] Purging dead modules,
Chris PeBenito
machinectl shell policy,
Russell Coker
[PATCH V3] Ensure correct monolithic binary policy is loaded,
Richard Haines
[PATCH V2] Ensure correct monolithic binary policy is loaded,
Richard Haines
[PATCH] Ensure correct monolithic binary policy is loaded,
Richard Haines
lockdown class,
Russell Coker
[PATCH] first udevadm patch,
Russell Coker
udevadm etc,
Russell Coker
How is policy.31 created from modules under /usr/share/selinux,
Ashish Mishra
Fwd: Failed to start Udev Kernel device manager,
Ashish Mishra
[PATCH 1/8] userdomain: Add watch on home dirs,
Jason Zaman
Selinux policy for x509_ima.der public certificate loaded by kernel during boot,
rishi gupta
[PATCH v2] xen: Allow xenstored to map /proc/xen/xsd_kva,
Anthony PERARD
[PATCH] bind: add a few fc specs for unbound,
Dominick Grift
ANN: Reference Policy 2.20200818, Chris PeBenito
[PATCH] Label /usr/libexec/packagekitd as apt_exec_t on debian, Laurent Bigonville
[PATCH] Also label polkit-agent-helper-1 when installed directly in /usr/libexec,
Laurent Bigonville
virt_use_sysfs,
Russell Coker
[PATCH] xen: Allow xenstored to map /proc/xen/xsd_kva,
Anthony PERARD
Are we on the wrong track?,
Russell Coker
[PATCH] Drop support for /dev/.udev and like, Laurent Bigonville
/dev/vhost-vsock,
Russell Coker
what is cap_userns?,
Russell Coker
systemd_generator_t vs systemd_generator_type,
Russell Coker
strict patch again with controversial sections removed,
Russell Coker
another chromium patch,
Russell Coker
another memlockd patch,
Russell Coker
another certbot patch,
Russell Coker
semanage coredump,
Russell Coker
logind shadow access,
Russell Coker
systemd_user_runtime_dir_t,
Russell Coker
latest ver of trivial mail server patch,
Russell Coker
latest memlockd patch,
Russell Coker
ANN: SETools 4.3.0, Chris PeBenito
[PATCH] Label bluetooth daemon as bluetooth_exec_t, Laurent Bigonville
ANN: Reference Policy 2.20200229, Chris PeBenito
/run/systemd/inaccessible,
Russell Coker
Access to raw memory: remove or make boolean?,
Topi Miettinen
new memlockd patch, Russell Coker
new certbot patch,
Russell Coker
[PATCH 01/10] fstools: add zfs-auto-snapshot,
Jason Zaman
- [PATCH 02/10] udev: Add watch perms, Jason Zaman
- [PATCH 03/10] accountsd: Add watch perms, Jason Zaman
- [PATCH 04/10] cron: watch cron spool, Jason Zaman
- [PATCH 05/10] colord: add watch perms, Jason Zaman
- [PATCH 06/10] policykit devicekit: Add watch perms, Jason Zaman
- [PATCH 07/10] userdomain: Add watch on home dirs, Jason Zaman
- [PATCH 08/10] dbus: add watch perms, Jason Zaman
- [PATCH 09/10] chromium: watch etc dirs, Jason Zaman
- [PATCH 10/10] gpg: add watch perms for agent, Jason Zaman
- <Possible follow-ups>
- [PATCH 01/10] fstools: add zfs-auto-snapshot, Jason Zaman
- [PATCH 02/10] udev: Add watch perms, Jason Zaman
- [PATCH 03/10] accountsd: Add watch perms, Jason Zaman
- [PATCH 04/10] cron: watch cron spool, Jason Zaman
- [PATCH 05/10] colord: add watch perms, Jason Zaman
- [PATCH 06/10] policykit devicekit: Add watch perms, Jason Zaman
- [PATCH 07/10] userdomain: Add watch on home dirs, Jason Zaman
- [PATCH 08/10] dbus: add watch perms, Jason Zaman
- [PATCH 09/10] chromium: watch etc dirs, Jason Zaman
- [PATCH 10/10] gpg: add watch perms for agent, Jason Zaman
- Re: [PATCH 01/10] fstools: add zfs-auto-snapshot, Chris PeBenito
memlockd,
Russell Coker
trivial mail server patch,
Russell Coker
small net patch,
Russell Coker
certbot patch,
Russell Coker
strict patch,
Russell Coker
pulseaudio patch,
Russell Coker
Chrome/Chromium patches,
Russell Coker
[PATCH v3] Allow systemd to getattr all files,
Sugar, David
[PATCH v3] audit daemon can halt system, allow this to happen.,
Sugar, David
[PATCH v2] audit daemon can halt system, allow this to happen.,
Sugar, David
[RFC] files: Make files_{relabel,manage}_non_security_types work on all file types,
Henrik Grindal Bakken
SELint,
Burgener, Daniel
[PATCH] Allow audit daemon to halt system,
Sugar, David
[PATCH v2] Allow systemd to getattr configfile,
Sugar, David
[RFC] refining systemd mountpoints,
Chris PeBenito
How to contribute to selinux-refpolicy (mcs),
Denis Obrezkov
[PATCH 1/9] systemd: Add elogind support,
Jason Zaman
[PATCH 1/2] Add interface to read efivarfs_t directory,
Sugar, David
Add support for apt-cacher-ng,
Laurent Bigonville
[PATCH 0/2] Fixes to enable slapd to run,
Lawrence, Stephen
[PATCH] Allow syslog to write to the runtime socket,
Sugar, David
[PATCH] resolve syslog imuxsock denial,
Sugar, David
Intent to add support for cryfs,
Nicolas Iooss
[PATCH] Add missing gen_require for init_t in init_script_domain, Sugar, David
[PATCH 01/10] Allow the systemd dbus-daemon to talk to systemd,
Laurent Bigonville
[Index of Archives]
[AMD Graphics]
[Linux USB Devel]
[Linux Media]
[Video for Linux]
[Linux SCSI]
[Yosemite Forum]