Commit Graph

85 Commits

Author SHA1 Message Date
Daniel J Walsh 2511741eac - Upgrade to latest from NSA
ustr cleanups from James Antill.
Ensure that /root gets labeled even if using the default context from Dan
    Walsh.
2007-10-05 17:20:57 +00:00
Daniel J Walsh 3ba23c823c - Upgrade to latest from NSA
Fix ordering of file_contexts.homedirs from Todd Miller and Dan Walsh.
2007-10-01 16:29:27 +00:00
Daniel J Walsh add9ada6d8 - Upgrade to latest from NSA
Fix error checking on getpw*_r functions from Todd Miller.
Make genhomedircon skip invalid homedir contexts from Todd Miller.
Set default user and prefix from seusers from Dan Walsh.
Add swigify Makefile target from Dan Walsh.
2007-09-28 13:53:30 +00:00
Daniel J Walsh 8bb5a230f2 - Upgrade to latest from NSA
Pass CFLAGS to CC even on link command, per Dennis Gilmore.
Clear errno on non-fatal errors to avoid reporting them upon a later error
    that does not set errno.
Improve reporting of system errors, e.g. full filesystem or read-only
    filesystem from Stephen Smalley.
2007-09-27 00:20:09 +00:00
Daniel J Walsh 422f3b68fd - Upgrade to latest from NSA
Change to use getpw* function calls to the _r versions from Todd Miller.
2007-09-13 12:29:42 +00:00
Daniel J Walsh 8f8294e39e - Upgrade to latest from NSA 2007-09-05 19:01:41 +00:00
Daniel J Walsh cf2b1c22f9 - Upgrade to latest from NSA
Allow dontaudits to be turned off via semanage interface when updating
    policy
2007-08-20 23:30:14 +00:00
Daniel J Walsh 3e627b0d72 - Upgrade to latest from NSA
Fix to libsemanage man patches so whatis will work better from Dan Walsh
2007-04-26 00:05:03 +00:00
Daniel J Walsh b8748b2834 - Upgrade to latest from NSA
Merged optimizations from Stephen Smalley.
- do not set all booleans upon commit, only those whose values have changed
- only install the sandbox upon commit if something was rebuilt
2007-04-25 15:11:21 +00:00
Daniel J Walsh c52428e9f1 Merged dbase_file_flush patch from Dan Walsh. This removes any mention of
specific tools (e.g. semanage) from the comment header of the
    auto-generated files, since there are multiple front-end tools.
2007-03-13 00:21:38 +00:00
Daniel J Walsh 7fe322b328 - Upgrade to latest from NSA
Merged Makefile test target patch from Caleb Case.
Merged get_commit_number function rename patch from Caleb Case.
Merged strnlen -> strlen patch from Todd Miller.
2007-02-20 14:32:39 +00:00
Daniel J Walsh 4b215a5b9f - Upgrade to latest from NSA
Merged python binding fix from Dan Walsh.
Updated version for stable branch.
2007-02-07 21:31:41 +00:00
Daniel J Walsh 4f442a2b56 - Upgrade to latest from NSA
Merged patch to optionally reduce disk usage by removing the backup module
    store and linked policy from Karl MacMillan
Merged patch to correctly propagate return values in libsemanage
2007-01-25 22:48:00 +00:00
Daniel J Walsh b91d944b4b - Upgrade to latest from NSA
Merged patch to optionally reduce disk usage by removing the backup module
    store and linked policy from Karl MacMillan
Merged patch to correctly propagate return values in libsemanage
2007-01-09 15:22:05 +00:00
Daniel J Walsh 6429e69e0b - Upgrade to latest from NSA
Merged patch to compile wit -fPIC instead of -fpic from Manoj Srivastava to
    prevent hitting the global offest table limit. Patch changed to include
    libselinux and libsemanage in addition to libsepol.
2006-11-28 19:02:17 +00:00
Daniel J Walsh 003cc65998 - Upgrade to latest from NSA
Updated version for release.
2006-10-25 02:52:37 +00:00
Daniel J Walsh 37c60b3ffc *** empty log message *** 2006-09-29 15:54:07 +00:00
Daniel J Walsh b1567cf808 *** empty log message *** 2006-08-23 17:59:58 +00:00
Daniel J Walsh f1afa1b22a *** empty log message *** 2006-08-12 11:56:13 +00:00
Daniel J Walsh c102f8109e - Upgrade to latest from NSA
Merged netfilter contexts support from Chris PeBenito.
2006-08-04 22:56:25 +00:00
Daniel J Walsh b4bff1fcc6 - Upgrade to latest from NSA
Merged support for read operations on read-only fs from Caleb Case (Tresys
    Technology).
2006-07-12 02:53:48 +00:00
Daniel J Walsh 43f2cfdf4d - Upgrade to latest from NSA
Lindent.
Merged setfiles location check patch from Dan Walsh.
2006-07-07 11:08:01 +00:00
Daniel J Walsh 1c63c08c2f - Upgrade to latest from NSA
dbase_file_cache: deref of uninit data on error path. dbase_policydb_cache:
    clear fp to avoid double fclose semanage_fc_sort: destroy temp on error
    paths
2006-06-16 19:14:07 +00:00
Daniel J Walsh 25b23d0cd3 - Upgrade to latest from NSA
[setfiles] path = /path/to/setfiles args = -q -c $@ $< [end]
2006-06-06 18:50:33 +00:00
Daniel J Walsh ce7274d07b - Upgrade to latest from NSA
Merged fix warnings patch from Karl MacMillan.
2006-05-08 18:34:45 +00:00
Daniel J Walsh 96b801b260 - Upgrade to latest from NSA
Merged updated file context sorting patch from Christopher Ashworth, with
    bug fix for escaped character flag.
Merged file context sorting code from Christopher Ashworth (Tresys
    Technology), based on fc_sort.c code in refpolicy.
Merged python binding t_output_helper removal patch from Dan Walsh.
Regenerated swig files.
2006-04-14 15:14:48 +00:00
Daniel J Walsh 9b0bb205bf - Upgrade to latest from NSA
Merged file context sorting code from Christopher Ashworth (Tresys
    Technology), based on fc_sort.c code in refpolicy.
Merged python binding t_output_helper removal patch from Dan Walsh.
Regenerated swig files.
2006-04-14 11:37:57 +00:00
Daniel J Walsh 6b31c1bb12 - Upgrade to latest from NSA
Merged Makefile PYLIBVER definition patch from Dan Walsh.
Merged man page reorganization from Ivan Gyurdiev.
2006-03-21 15:45:58 +00:00
Daniel J Walsh aa0c632103 - Make work on RHEL4
- Upgrade to latest from NSA
Merged abort early on merge errors patch from Ivan Gyurdiev.
Cleaned up error handling in semanage_split_fc based on a patch by Serge
    Hallyn (IBM) and suggestions by Ivan Gyurdiev.
Merged MLS handling fixes from Ivan Gyurdiev.
2006-03-17 20:25:31 +00:00
Daniel J Walsh 5a4115f50c - Upgrade to latest from NSA
Merged bug fix for fcontext validate handler from Ivan Gyurdiev.
Merged base_merge_components changes from Ivan Gyurdiev.
2006-02-17 20:00:24 +00:00
Daniel J Walsh 95d8014c0f - Upgrade to latest from NSA
Merged paths array patch from Ivan Gyurdiev.
Merged bug fix patch from Ivan Gyurdiev.
Merged improve bindings patch from Ivan Gyurdiev.
Merged use PyList patch from Ivan Gyurdiev.
Merged memory leak fix patch from Ivan Gyurdiev.
Merged nodecon support patch from Ivan Gyurdiev.
Merged cleanups patch from Ivan Gyurdiev.
Merged split swig patch from Ivan Gyurdiev.
2006-02-16 18:44:02 +00:00
Daniel J Walsh 5cdd750209 - Upgrade to latest from NSA
Merged optionals in base patch from Joshua Brindle.
Merged treat seusers/users_extra as optional sections patch from Ivan
    Gyurdiev.
Merged parse_optional fixes from Ivan Gyurdiev.
2006-02-13 19:31:17 +00:00
Daniel J Walsh b40694835e - Upgrade to latest from NSA
Merged seuser/user_extra support patch from Joshua Brindle.
Merged remote system dbase patch from Ivan Gyurdiev.
2006-02-07 15:30:09 +00:00
Daniel J Walsh c77fc837ef *** empty log message *** 2006-02-02 17:11:07 +00:00
Daniel J Walsh 9d3d831b72 *** empty log message *** 2006-01-31 00:02:55 +00:00
Daniel J Walsh 2d7ec48909 *** empty log message *** 2006-01-28 01:38:10 +00:00
Daniel J Walsh 659f45dbf4 *** empty log message *** 2006-01-20 20:28:52 +00:00
Daniel J Walsh 42ed049e66 *** empty log message *** 2006-01-18 16:29:44 +00:00
Daniel J Walsh cde1f77237 *** empty log message *** 2006-01-13 22:36:39 +00:00
Daniel J Walsh d70e17491c *** empty log message *** 2006-01-06 16:07:00 +00:00
Daniel J Walsh f12cd09ff8 *** empty log message *** 2006-01-05 19:52:36 +00:00
Daniel J Walsh eddd487028 - Upgrade to latest from NSA
Clarified error messages from parse_module_headers and parse_base_headers
    for base/module mismatches.
Merged string and file optimization patch from Russell Coker.
Merged swig header reordering patch from Ivan Gyurdiev.
Merged toggle modify on add patch from Ivan Gyurdiev.
Merged ports parser bugfix patch from Ivan Gyurdiev.
Merged fcontext swig patch from Ivan Gyurdiev.
Merged remove add/modify/delete for active booleans patch from Ivan
    Gyurdiev.
Merged man pages for dbase functions patch from Ivan Gyurdiev.
Merged pywrap tests patch from Ivan Gyurdiev.
2006-01-05 16:21:25 +00:00
Daniel J Walsh 5361ff6e72 - Upgrade to latest from NSA
- separate file rw code from linked list
- annotate objects
- fold together internal headers
- support ordering of records in compare function
- add active dbase backend, active booleans
- return commit numbers for ro database calls
- use modified flags to skip rebuild whenever possible
- enable port interfaces
- update swig interfaces and typemaps
- add an API for file_contexts.local and file_contexts
- flip the traversal order in iterate/list
- reorganize sandbox_expand
- add seusers MLS validation
- improve dbase spec/documentation
- clone record on set/add/modify
2006-01-04 18:39:06 +00:00
Daniel J Walsh c2b1e26fcc - Upgrade to latest from NSA
Merged further header cleanups from Ivan Gyurdiev.
Merged toggle modified flag in policydb_modify, fix memory leak in
    clear_obsolete, polymorphism vs headers fix, and include guards for
    internal headers patches from Ivan Gyurdiev.
2005-12-14 19:51:34 +00:00
Daniel J Walsh 9993e32e21 - Upgrade to latest from NSA
Merged toggle modified flag in policydb_modify, fix memory leak in
    clear_obsolete, polymorphism vs headers fix, and include guards for
    internal headers patches from Ivan Gyurdiev.
2005-12-13 16:22:20 +00:00
Daniel J Walsh 2b5b2a62e8 - Upgrade to latest from NSA
Added file-mode= setting to semanage.conf, default to 0644. Changed
    semanage_copy_file and callers to use this mode when installing policy
    files to runtime locations.
2005-12-13 04:54:54 +00:00
Daniel J Walsh 97de529789 - Update version for release 2005-12-07 17:32:18 +00:00
Daniel J Walsh d6123fe3c1 - Upgrade to latest from NSA
Changed semanage_handle_create() to set do_reload based on
    is_selinux_enabled(). This prevents improper attempts to load policy on
    a non-SELinux system.
2005-12-06 18:41:48 +00:00
Daniel J Walsh ff57ee576b - Upgrade to latest from NSA
Merged Makefile python definitions patch from Dan Walsh.
Removed is_selinux_mls_enabled() conditionals in seusers and users file
    parsers.
2005-11-29 19:07:13 +00:00
Daniel J Walsh 066e239ed5 - Add additional swig objects
Merged wrap char*** for user_get_roles patch from Joshua Brindle.
Merged remove defrole from sepol patch from Ivan Gyurdiev.
Merged swig wrappers for modifying users and seusers from Joshua Brindle.
2005-11-29 03:16:02 +00:00