Fixed policy file leaks in semanage_load_module and semanage_write_module.
Merged further database work from Ivan Gyurdiev.
Fixed bug in semanage_direct_disconnect.
Merged interface renaming patch from Ivan Gyurdiev.
Merged policy component patch from Ivan Gyurdiev.
Renamed 'check=' configuration value to 'expand-check=' for clarity.
Changed semanage_commit_sandbox to check for and report errors on rename(2)
calls performed during rollback.
Added optional check= configuration value to semanage.conf and updated call
to sepol_expand_module to pass its value to control assertion and
hierarchy checking on module expansion.
Merged fixes for make DESTDIR= builds from Joshua Brindle.
Merged default database from Ivan Gyurdiev.
Merged removal of connect requirement in policydb backend from Ivan
Gyurdiev.
Merged commit locking fix and lock rename from Joshua Brindle.
Merged transaction rollback in lock patch from Joshua Brindle.
Changed default args for load_policy to be null, as it no longer takes a
pathname argument and we want to preserve booleans.
Merged move local dbase initialization patch from Ivan Gyurdiev.
Merged acquire/release read lock in databases patch from Ivan Gyurdiev.
Merged rename direct -> policydb as appropriate patch from Ivan Gyurdiev.
Added calls to sepol_policy_file_set_handle interface prior to invoking
sepol operations on policy files.
Updated call to sepol_policydb_from_image to pass the handle.
Changed default args for load_policy to be null, as it no longer takes a
pathname argument and we want to preserve booleans.
Merged move local dbase initialization patch from Ivan Gyurdiev.
Merged acquire/release read lock in databases patch from Ivan Gyurdiev.
Merged rename direct -> policydb as appropriate patch from Ivan Gyurdiev.
Added calls to sepol_policy_file_set_handle interface prior to invoking
sepol operations on policy files.
Updated call to sepol_policydb_from_image to pass the handle.
Merged user and port APIs - policy database patch from Ivan Gyurdiev.
Converted calls to sepol link_packages and expand_module interfaces from
using buffers to using sepol handles for error reporting, and changed
direct_connect/disconnect to create/destroy sepol handles.
Merged bugfix patch from Ivan Gyurdiev.
Merged seuser database patch from Ivan Gyurdiev. Merged direct user/port
databases to the handle from Ivan Gyurdiev.
Removed obsolete include/semanage/commit_api.h (leftover). Merged seuser
record patch from Ivan Gyurdiev.
Merged boolean and interface databases from Ivan Gyurdiev.
Updated to use get interfaces for hidden sepol_module_package type.
Changed semanage_expand_sandbox and semanage_install_active to
generate/install the latest policy version supported by libsepol by
default (unless overridden by semanage.conf), since libselinux will now
downgrade automatically for load_policy.
Merged new callback-based error reporting system and ongoing database work
from Ivan Gyurdiev.
Fixed semanage_install_active() to use the same logic for selecting a
policy version as semanage_expand_sandbox(). Dropped dead code from
semanage_install_sandbox().
Merged patch series from Ivan Gyurdiev. (pointer typedef elimination, file
renames, dbase work, backend separation)
Split interfaces from semanage.[hc] into handle.[hc], modules.[hc].
Separated handle create from connect interface.
Added a constructor for initialization.
Moved up src/include/*.h to src.
Created a symbol map file; dropped dso.h and hidden markings.
Split interfaces from semanage.[hc] into handle.[hc], modules.[hc].
Separated handle create from connect interface.
Added a constructor for initialization.
Moved up src/include/*.h to src.
Created a symbol map file; dropped dso.h and hidden markings.
Merged semod.conf template patch from Dan Walsh (Red Hat), but restored
location to /usr/share/semod/semod.conf.
Fixed several bugs found by valgrind.
Fixed bug in prior patch for the semod_build_module_list leak.
Merged errno fix from Joshua Brindle (Tresys).
Merged fix for semod_build_modules_list leak on error path from Serge
Hallyn (IBM). Bug found by Coverity.
Merged errno fix from Joshua Brindle (Tresys).
Merged fix for semod_build_modules_list leak on error path from Serge
Hallyn (IBM). Bug found by Coverity.
Merged several fixes from Serge Hallyn (IBM). Bugs found by Coverity.
Fixed several other bugs and warnings.
Merged patch to move module read/write code from libsemanage to libsepol
from Jason Tang (Tresys).
Merged relay records patch from Ivan Gyurdiev.
Merged key extract patch from Ivan Gyurdiev.