Commit Graph

520 Commits

Author SHA1 Message Date
Dan Walsh 299b50a55d rsynccmd should run outside of execcon 2011-03-29 14:28:26 -04:00
Dan Walsh d04e8562ad More fixes for seunshare 2011-03-24 17:57:06 -04:00
Dan Walsh 121d321149 Fix rsync command to work if the directory is old.
Fix all tests
2011-03-18 18:03:37 -04:00
Dan Walsh 0c72a3e903 Fix seunshare man page to go back to original, allowing -t tmpfile 2011-03-16 09:41:52 -04:00
Dan Walsh 8e1859c6db Change sepolgen-ifgen to search all available policy files
Fix portspage in system-config-selinux to not crash
fix to sandbox
Fix seunshare to use more secure handling of /tmp
Rewrite seunshare to make sure /tmp is mounted stickybit owned by root
Change to allow sandbox to run on nfs homedirs, add start python script
change default location of HOMEDIR in sandbox to /tmp/.sandbox_home_*
Move seunshare to sandbox package
Fix sandbox to show correct types in  usage statement
2011-03-15 09:54:33 -04:00
Dan Walsh ab1e426fa7 - Fix setools require line 2010-11-01 09:50:40 -04:00
Dan Walsh d14afb9d6a - Fix sandbox handling of files with spaces in them 2010-10-18 16:50:33 -04:00
Dan Walsh 0bdae65be9 - Add seremote, to allow the execution of command inside the sandbox from outside the sandbox. 2010-09-14 17:35:00 -04:00
Dan Walsh cf96c73364 - Fix sandbox copyfile when copying a dir with a socket, print error 2010-09-13 11:42:53 -04:00
Dan Walsh 0f1eb5c333 - Fix bug preventing sandbox from using -l 2010-09-09 16:32:56 -04:00
Dan Walsh 680e7f371a - Eliminate quotes fro desktop files 2010-09-07 14:29:30 -04:00
Dan Walsh da69073802 - Tighten down seunshare to create /tmp dir with sticky bit and MS_NODEV | MS_NOSUID | MS_NOEXEC;
- Remove setsid on seunshare so ^c on sandbox will cause apps to exit
- Add dbus-launch --exit-with-session so all processes launched within the sandbox exit with the sandbox
- Clean up error handling so error will get sent back to sandbox tool
2010-08-25 08:58:00 -04:00
Dan Walsh 8ceb5eceb9 - Fix sandbox error handling 2010-08-13 17:02:34 -04:00
Dan Walsh 27aa4ea173 * Tue Jul 27 2010 Dan Walsh <dwalsh@redhat.com> 2.0.83-7
- Update translations
2010-07-30 13:20:11 -04:00
Daniel J Walsh 83ba7e08a0 * Tue Jun 15 2010 Dan Walsh <dwalsh@redhat.com> 2.0.82-31
- Fix sepolgen code generation
Resolve: #603001
2010-06-15 17:16:36 +00:00
Daniel J Walsh 288493882f * Thu Jun 3 2010 Dan Walsh <dwalsh@redhat.com> 2.0.82-28
- Fix sandbox init script
- Add dbus-launch to sandbox -X
Resolve: #599599
2010-06-03 21:14:52 +00:00
Daniel J Walsh 22b7be5824 * Thu Jun 3 2010 Dan Walsh <dwalsh@redhat.com> 2.0.82-27
- Move genhomedircon.8 to same package as genhomedircon
- Fix sandbox to pass unit test
Resolves: #595796
2010-06-03 15:05:42 +00:00
Daniel J Walsh 1cd1e852d8 * Thu May 27 2010 Dan Walsh <dwalsh@redhat.com> 2.0.82-24
- Man page fixes
- sandbox fixes
Resolves: #595796
- Move seunshare to base package
2010-05-27 21:22:56 +00:00
Daniel J Walsh 1097da1cdb * Fri May 21 2010 Dan Walsh <dwalsh@redhat.com> 2.0.82-23
- Fix seunshare translations
- Fix seunshare to work on all arches
- Fix icon for system-config-selinux
2010-05-25 20:20:56 +00:00
Daniel J Walsh ea96d11661 * Fri May 21 2010 Dan Walsh <dwalsh@redhat.com> 2.0.82-22
- Fix can_exec definition in sepolgen
2010-05-21 14:39:49 +00:00
Daniel J Walsh d7683056ef * Wed May 19 2010 Dan Walsh <dwalsh@redhat.com> 2.0.82-20
- Fixes from upstream for sandbox command
2010-05-19 20:04:32 +00:00
Daniel J Walsh 91e0a0ce0d * Thu May 13 2010 Dan Walsh <dwalsh@redhat.com> 2.0.82-18
- Fix sandbox error handling on copyfile
- Fix desktop files
2010-05-19 18:55:32 +00:00
Daniel J Walsh 164a05dfde * Wed May 19 2010 Dan Walsh <dwalsh@redhat.com> 2.0.82-19
- Fixes from upstream for sandbox command
2010-05-19 17:59:27 +00:00
Daniel J Walsh 09fe072042 * Thu May 13 2010 Dan Walsh <dwalsh@redhat.com> 2.0.82-18
- Fix sandbox error handling on copyfile
- Fix desktop files
2010-05-14 13:03:01 +00:00
Daniel J Walsh 5324213670 * Tue May 11 2010 Dan Walsh <dwalsh@redhat.com> 2.0.82-17
- Fix policy tool to have correct name in menus
- Fix seunshare to handle /tmp being in ~/home
Resolves: #589232
- Fix saving of altered files
Resolves: #580938
2010-05-11 20:28:00 +00:00
Daniel J Walsh c5e012d0ce * Tue May 11 2010 Dan Walsh <dwalsh@redhat.com> 2.0.82-16
- Fix policy tool to have correct name in menus
- Fix seunshare to handle /tmp being in ~/home
2010-05-11 19:53:42 +00:00
Daniel J Walsh a941635169 * Mon May 3 2010 Dan Walsh <dwalsh@redhat.com> 2.0.82-14
- Allow audit2allow to specify alternative policy file for analysis
- Update po
- Fix sepolgen --no_attrs
Resolves: #588280
2010-05-04 17:20:26 +00:00
Daniel J Walsh b813086803 * Thu Apr 29 2010 Dan Walsh <dwalsh@redhat.com> 2.0.82-13
- Make semanage boolean work on disabled machines and during livecd xguest
- Fix homedir and tmpdir handling in sandbox
Resolves: #587263
2010-04-30 14:50:24 +00:00
Daniel J Walsh 1577e6bdf7 * Thu Apr 29 2010 Dan Walsh <dwalsh@redhat.com> 2.0.82-12
- Make semanage boolean work on disabled machines and during livecd xguest
- Fix homedir and tmpdir handling in sandbox
Resolves: #587263
2010-04-29 17:35:00 +00:00
Daniel J Walsh 07e8306fc8 * Tue Apr 27 2010 Dan Walsh <dwalsh@redhat.com> 2.0.82-10
- Make sepolgen-ifgen be quiet
2010-04-27 14:11:17 +00:00
Daniel J Walsh 5969a34153 * Tue Apr 27 2010 Dan Walsh <dwalsh@redhat.com> 2.0.82-9
- Make sepolgen-ifgen be quiet
2010-04-27 12:34:59 +00:00
Daniel J Walsh 5fd62ac9ce * Wed Apr 21 2010 Dan Walsh <dwalsh@redhat.com> 2.0.82-8
- Make sepolgen report on more interfaces
- Fix system-config-selinux display of modules
2010-04-23 16:50:25 +00:00
Daniel J Walsh 3036511cda * Thu Apr 15 2010 Dan Walsh <dwalsh@redhat.com> 2.0.82-7
- Fix crash when args are empty
Resolves: #582542
- Fix semange to exit on bad options
- Fix semanage dontaudit man page section
Resolves: #582533
2010-04-16 13:32:29 +00:00
Daniel J Walsh cb03303e2a * Wed Apr 14 2010 Dan Walsh <dwalsh@redhat.com> 2.0.82-6
- Remove debug line from semanage
- Update po
2010-04-14 13:02:56 +00:00
Daniel J Walsh e227d2c1df * Tue Apr 13 2010 Dan Walsh <dwalsh@redhat.com> 2.0.82-5
- Fix sandbox comment on HOMEDIRS
- Fix sandbox to throw error on bad executable
2010-04-13 18:13:00 +00:00
Daniel J Walsh 4a46e3ba98 * Wed Mar 31 2010 Dan Walsh <dwalsh@redhat.com> 2.0.82-3
- Fix semanage return codes
2010-03-31 22:27:27 +00:00
Daniel J Walsh cf47f6f7a3 * Tue Mar 23 2010 Dan Walsh <dwalsh@redhat.com> 2.0.82-1
- Update to upstream
	* Add avc's since boot from Dan Walsh.
	* Fix unit tests from Dan Walsh.
2010-03-24 20:14:14 +00:00
Daniel J Walsh d4df7a7906 * Mon Mar 22 2010 Dan Walsh <dwalsh@redhat.com> 2.0.81-3
- Allow restorecon on > 2 Gig files
2010-03-22 18:13:05 +00:00
Daniel J Walsh cc1f471500 * Tue Mar 16 2010 Dan Walsh <dwalsh@redhat.com> 2.0.81-2
- Fix semanage handling of boolean options
- Update translations
2010-03-16 18:18:01 +00:00
Daniel J Walsh fde59fdf8d * Thu Mar 11 2010 Dan Walsh <dwalsh@redhat.com> 2.0.80-2
- Use --rbind in sandbox init scripts
2010-03-11 22:16:29 +00:00
Daniel J Walsh fe2d2361bc * Thu Mar 11 2010 Dan Walsh <dwalsh@redhat.com> 2.0.80-2
- Use --rbind in sandbox init scripts
2010-03-11 22:06:43 +00:00
Daniel J Walsh b3de7f6587 * Mon Mar 8 2010 Dan Walsh <dwalsh@redhat.com> 2.0.80-1
- Update to upstream
	* Module enable/disable support from Dan Walsh.
2010-03-09 15:34:05 +00:00
Daniel J Walsh 1ff0435303 * Mon Mar 1 2010 Dan Walsh <dwalsh@redhat.com> 2.0.79-5
- Rewrite of sandbox script, add unit test for sandbox
- Update translations
2010-03-04 21:49:04 +00:00
Daniel J Walsh 542a3ce800 * Wed Feb 17 2010 Dan Walsh <dwalsh@redhat.com> 2.0.79-2
- Fix sandbox to complain if mount-shared has not been run
- Fix to use /etc/sysconfig/sandbox
2010-02-26 21:17:08 +00:00
Daniel J Walsh d7cd0503ed * Fri Feb 26 2010 Dan Walsh <dwalsh@redhat.com> 2.0.79-3
- Fixes for fixfiles
2010-02-26 20:01:44 +00:00
Daniel J Walsh 9473b7f3ea * Wed Feb 17 2010 Dan Walsh <dwalsh@redhat.com> 2.0.79-2
- Fix sandbox to complain if mount-shared has not been run
- Fix to use /etc/sysconfig/sandbox
2010-02-17 20:13:26 +00:00
Daniel J Walsh be45950990 * Thu Feb 16 2010 Dan Walsh <dwalsh@redhat.com> 2.0.79-1
- Update to upstream
	* Fix double-free in newrole
- Fix python language handling
2010-02-16 21:35:16 +00:00
Daniel J Walsh fc6c93ebeb * Thu Feb 16 2010 Dan Walsh <dwalsh@redhat.com> 2.0.79-1
- Update to upstream
	* Fix double-free in newrole
2010-02-16 19:49:37 +00:00
Daniel J Walsh 8fd9d71264 * Thu Feb 11 2010 Dan Walsh <dwalsh@redhat.com> 2.0.78-21
- Fix display of command in sandbox
2010-02-11 22:13:39 +00:00
Daniel J Walsh fce031b620 * Thu Feb 11 2010 Dan Walsh <dwalsh@redhat.com> 2.0.78-21
- Fix display of command in sandbox
2010-02-11 21:56:38 +00:00