Advertisement
Guest User

Untitled

a guest
Feb 6th, 2017
6,166
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 394.32 KB | None | 0 0
  1. root@sugar-dev:/etc/yum.repos.d$ curl -4 --trace-time --trace-ascii - -O http://mirrors.ch-center.com/centos/7.3.1611/updates/x86_64/Packages/selinux-policy-3.13.1-102.el7_3.13.noarch.rpm
  2. % Total % Received % Xferd Average Speed Time Time Time Current
  3. Dload Upload Total Spent Left Speed
  4. 0 0 0 0 0 0 0 0 --:--:-- --:--:-- --:--:-- 013:00:16.709925 == Info: About to connect() to mirrors.ch-center.com port 80 (#0)
  5. 13:00:16.710297 == Info: Trying 93.113.36.66...
  6. 13:00:16.731068 == Info: Connected to mirrors.ch-center.com (93.113.36.66) port 80 (#0)
  7. 13:00:16.731532 => Send header, 170 bytes (0xaa)
  8. 0000: GET /centos/7.3.1611/updates/x86_64/Packages/selinux-policy-3.13
  9. 0040: .1-102.el7_3.13.noarch.rpm HTTP/1.1
  10. 0065: User-Agent: curl/7.29.0
  11. 007e: Host: mirrors.ch-center.com
  12. 009b: Accept: */*
  13. 00a8:
  14. 13:00:16.754909 <= Recv header, 17 bytes (0x11)
  15. 0000: HTTP/1.1 200 OK
  16. 13:00:16.754980 <= Recv header, 37 bytes (0x25)
  17. 0000: Date: Mon, 06 Feb 2017 13:00:16 GMT
  18. 13:00:16.755018 <= Recv header, 31 bytes (0x1f)
  19. 0000: Server: Apache/2.4.6 (CentOS)
  20. 13:00:16.755067 <= Recv header, 46 bytes (0x2e)
  21. 0000: Last-Modified: Wed, 18 Jan 2017 13:03:18 GMT
  22. 13:00:16.755116 <= Recv header, 29 bytes (0x1d)
  23. 0000: ETag: "6760c-5465e0a589180"
  24. 13:00:16.755153 <= Recv header, 22 bytes (0x16)
  25. 0000: Accept-Ranges: bytes
  26. 13:00:16.755235 <= Recv header, 24 bytes (0x18)
  27. 0000: Content-Length: 423436
  28. 13:00:16.755283 <= Recv header, 33 bytes (0x21)
  29. 0000: Content-Type: application/x-rpm
  30. 13:00:16.755318 <= Recv header, 2 bytes (0x2)
  31. 0000:
  32. 13:00:16.755346 <= Recv data, 2627 bytes (0xa43)
  33. 0000: ..........selinux-policy-3.13.1-102.el7_3.13....................
  34. 0040: ...................................................>.......t....
  35. 0080: ...........................................D...............H....
  36. 00c0: ...........`...............p..........Xg.$.........a...]JB...M.
  37. 0100: .{.SM.S7..|I...e..X(d.~....~.#.%...ZO..`..,...f.f.:Y ,.........N
  38. 0140: .m>T.......[.f@..5..KK#W... .P...yZ3L.D.a..h.$..p.....,......Y.
  39. 0180: E.B....... .Y..M.5.=.]boa..._...h..f,u<......y..3:aD31.&'{?g...I
  40. 01c0: .......pm...q........JT.n.[..}...........`.'.J.T...N~.\.a.(N.,.9
  41. 0200: .N..m..|...~G?.pzL.$.....#a]..5.W.z.J..Q_..g.hY#.,..x..I.!#Y_.x
  42. 0240: ....0U.......Ft..o...{.w.Cz..;..u....)t...\6~..ov.....x.q/.t....
  43. 0280: H.R....G......w..F....ZB2Y:.._..O.K<h..i..dV.:I.r-..r.....d.I...
  44. 02c0: h.......;.1..f......U2g..zE...$...A.Y....[c.L..<B...P...9b3b5eb3
  45. 0300: dc686b1411edeadca989c74880c311ad......p.......Xg.$.............
  46. 0340: ...v....."$.u@5Y..I.\b.r..o...Q1...X.mI..4.).....>.....8......\
  47. 0380: ....z..!..J...[..;e.:v\....N.&{H.<.3J.....M.YZ!..N0..#..-......
  48. 03c0: w...._V.......R..y....>.1.<.*h.......$a.t......2$\..n.^<~.....2
  49. 0400: ..T.....X.....t|..&.s.d.q+..O..2....e....d....>W.P.....{......Oa
  50. 0440: 5.'..Kj..2..b..z..O.%.......!?el..O=3a......9.C0..(..=...92....v
  51. 0480: ?..ur.3......}.........w.,Qb.........1..~v...E.}u.6.TMW.B.5|..x.
  52. 04c0: ..E(f.LW.-.uf@p..+.|....^..;..t/u.hQ.!..D_3s.N.En...r~..oy...^%
  53. 0500: ..u......2GV.._...@..;.2.@...........idE.c...g.p.d.m@.p..<.bm.Q.
  54. 0540: .'......[..2v..........>...........................A..g....?....
  55. 0580: ..g........d....................................................
  56. 05c0: ...................%...............B............................
  57. 0600: ................................................................
  58. 0640: ...................................................A............
  59. 0680: ...G...............N............................................
  60. 06c0: ................................................................
  61. 0700: ...................................(...............U............
  62. 0740: ................................................................
  63. 0780: ...,.......................(.......3.......).......:.......*....
  64. 07c0: ...........+...............,...............-...............8....
  65. 0800: ...........9......"........:...............>......dg.......@....
  66. 0840: ..do.......D......dw.......G......d........H......d........I....
  67. 0880: ..d........X......d........Y......d........\......e........]....
  68. 08c0: ..e0.......^......e........b......f........d......f........e....
  69. 0900: ..f........f......f........l......f........t......f........u....
  70. 0940: ..f........v......g........w......g4.......x......gX............
  71. 0980: ..g|....C.selinux-policy.3.13.1.102.el7_3.13.SELinux policy conf
  72. 09c0: iguration.SELinux Reference Policy - modular..Based off of refer
  73. 0a00: ence policy: Checked out revision 2.20091117...X~.-c1bm.rdu2.ce
  74. 0a40: nto
  75. 13:00:16.758047 <= Recv data, 11612 bytes (0x2d5c)
  76. 0000: s.org........CentOS.GPLv2+.CentOS BuildSystem <http://bugs.cento
  77. 0040: s.org>.System Environment/Base.http://oss.tresys.com/repos/refpo
  78. 0080: licy/.linux.noarch.if [ ! -s /etc/selinux/config ]; then.#.#
  79. 00c0: New install so we will default to targeted policy.#.echo ".# Th
  80. 0100: is file controls the state of SELinux on the system..# SELINUX=
  81. 0140: can take one of these three values:.# enforcing - SELinux se
  82. 0180: curity policy is enforced..# permissive - SELinux prints war
  83. 01c0: nings instead of enforcing..# disabled - No SELinux policy i
  84. 0200: s loaded..SELINUX=enforcing.# SELINUXTYPE= can take one of three
  85. 0240: two values:.# targeted - Targeted processes are protected,.
  86. 0280: # minimum - Modification of targeted policy. Only selected p
  87. 02c0: rocesses are protected. .# mls - Multi Level Security protec
  88. 0300: tion..SELINUXTYPE=targeted .." > /etc/selinux/config.. ln -s
  89. 0340: f ../selinux/config /etc/sysconfig/selinux . restorecon /etc
  90. 0380: /selinux/config 2> /dev/null || :.else. . /etc/selinux/confi
  91. 03c0: g.fi.exit 0.if [ $1 = 0 ]; then. setenforce 0 2> /dev/null.
  92. 0400: if [ ! -s /etc/selinux/config ]; then. echo "SELINU
  93. 0440: X=disabled" > /etc/selinux/config. else. sed -i 's/
  94. 0480: ^SELINUX=.*/SELINUX=disabled/g' /etc/selinux/config. fi.fi.e
  95. 04c0: xit 0.......T..............."...........V....A.....A.A.....A.A..
  96. 0500: .................X~.tX~..X~..X~..X~..X~..X~..X~..X~...e3b0c44298
  97. 0540: fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855.e3b0c4429
  98. 0580: 8fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855...bbc0a2
  99. 05c0: 36546caf6a1acfd7c0058aa02eb4615e31063958f03618a109c73dd49b.8a0be
  100. 0600: ca7f576064bfe85859d53e85dfc31157974115cac99b4e52ae31b77b185.....
  101. 0640: ................Q...@........................root.root.root.root
  102. 0680: .root.root.root.root.root.root.root.root.root.root.root.root.roo
  103. 06c0: t.root.selinux-policy-3.13.1-102.el7_3.13.src.rpm...............
  104. 0700: .........................config(selinux-policy).selinux-policy..
  105. 0740: ................................................./bin/awk./bin/s
  106. 0780: h./bin/sh./bin/sh./usr/bin/sha512sum.config(selinux-policy).libs
  107. 07c0: emanage.policycoreutils.rpmlib(CompressedFileNames).rpmlib(FileD
  108. 0800: igests).rpmlib(PayloadFilesHavePrefix).rpmlib(PayloadIsXz)......
  109. 0840: 3.13.1-102.el7_3.13.2.5.2.5.3.0.4-1.4.6.0-1.4.0-1.5.2-1.4.11.3.s
  110. 0880: elinuxenabled && semodule -nB.exit 0.rm -f /etc/selinux/*/module
  111. 08c0: s/active/modules/sandbox.pp.disabled 2>/dev/null.exit 0.pcre.sel
  112. 0900: inux-policy-targeted..3.12.1-74..................Xs{@Xl..XW..XR.
  113. 0940: .XO..XEV.X).@X#..X#..X.`@W.%.W.S.W._@W._@W.v@W.;.W..@W...W...W.:
  114. 0980: .W.Q.W..@W...W..@W..@W...W.~.W..@W..W~D@W{.@Ws.@Wrf.Wj}.Wb..W^.
  115. 09c0: @WYZ@WYZ@WUe.WM|.WB..W9.@W9.@W1.@W(..W ..V..@V..@V..@V...V.2.V..
  116. 0a00: @V._.V...V.C.V..@V.Z.V..@V.q.V.}@V.}@V.B.U...U...U..@U..@U.p.U..
  117. 0a40: .U...U...U.o.U.o.U.5@U...U..@U...U...U.W.U...U..@U...U.K@U...U..
  118. 0a80: .U.'.U.a@U~.@Uz..Uv.@UT.@U..@T.r@T..@T..@T.7.T...T...T.C@T..@T..
  119. 0ac0: .T...T}..Tto@Ts..Tk4.T`..T[b.TWn@T?.@T>a.T6x.T6x.T..@S..@S...S.D
  120. 0b00: .Sg}@SB.@S>..S;..S:.@S9X.S5d@S4..S2.@S0.@S,).S*.@S)..S)..S&..S&.
  121. 0b40: .S".@S!..S L@S...S...S..@S...S.c@S...S.n.S..@S...S.K@R...R...R..
  122. 0b80: @R...R.J@R.a@R...R...R.&.R.&.R...R...R.=.R...R...R..@R..@R..@R.v
  123. 0bc0: @R.v@R..@R...R..@R...R..@R..@R|.@Rz/@Rz/@Rs..Rp..RnQ.Ri..Rfh.R_.
  124. 0c00: @R_.@R[..R[..RS..RN..RN..RL..RIg.RB.@RB.@R:.@R1..R-.@R-.@R(r@R'
  125. 0c40: .R%.@R.7.R...R.N.R...R..@Q..@Q...Q.d.Q...Q..@Q...Q..@Q..@Q...Q..
  126. 0c80: .Q..@Q.z.Q...Q.4.Q.@@Q..@Q.K.Q...Q..@Q..@Q..@Q..@Q...Q..@Q...Q..
  127. 0cc0: .Q...Q..@Q..@Q...Q...Q.@Qzl@Qw.@Qvw.Qo.@Qo.@Qn..Qm=@Qk..Qf..Qb.
  128. 0d00: @Q`.@Q^..QZ.@QQ..QI..QG..Q@j@Q9..Q8.@Q4..Q0.@Q-.@Q&.@Q$..Q...Q..
  129. 0d40: @Q...Q..@Q..@Q.h@Q.s.P...P..@P..@P...P..@P.[.P...P.!@P.8@P.O@P..
  130. 0d80: @P.f@P...P.q.P. @P...P.7@P..@P...P...P.Y.P..@P..@P...P...P.M@P..
  131. 0dc0: .P.d@P..@P.o.P.{@P.{@P..@P...P.5@P.@.P~..P}L@Px.@Pv..Pv..Puc@Puc
  132. 0e00: @Pr.@Pmz@Pmz@Pmz@Pj.@Pd?.Pd?.Pb.@Pa..Pa..P[.@PXb@PW..PS.@PQ..PO'
  133. 0e40: .PM.@PI..P@.@P>.@P8.@P7l.P2&.P2&.P,..P,..P*=.P(.@P#.@P#.@P!.@P!.
  134. 0e80: @P..@P.k.P.w@P.w@P...P.<.P...P..@O.j.O...O...O.R.O.i.O.#.O./@O.:
  135. 0ec0: .O...O...O.h.O..@O...O.\@O...O..@O...O.!.O...O.D@O...O...O...O..
  136. 0f00: @O. .O. .O~..Oz.@Ou.@Or.@Or.@Ok.@Oi..Og..Og..Oc+@O`.@O`.@O].@OY.
  137. 0f40: .OX.@OT..OL..OKp@OF*@OD..OC.@OC.@O<..O:L.O8.@O5..O3.@O1.@O/..O+.
  138. 0f80: @O'..O&.@O!@@O..@O.K.O.K.O.W@O..@O...O.y.O.y.O.?@N.x.N.'@N...N.>
  139. 0fc0: @N...N.U@N...N.l@N..@N..@N...N..@N...N...N...N..@N...N...N..@N..
  140. 1000: @N.G.N.G.N.G.N..@N..@N...N.S@N.S@N.^.N.^.N..@N..@N...N.j@N.j@N..
  141. 1040: .N.$@N...N..@N./.N..@N..@N.F.N.F.N..@N...N...N..@N..@N..@N.].N.i
  142. 1080: @N.i@N.i@N|t.Ny..Nx.@Ns:@NoE.NoE.Ni..Nf.@N^"@N\..N[@NT..NS.@NS.
  143. 10c0: @NC.@NBr.N:..N98@N7..N6.@N2..N..@N*..N)f@N(..N%q.N$ @N..@N.7@N.e
  144. 1100: @N.p.N.p.M..@M..@M.d@M.d@M...M.{@M.@.M...M..@M..@M..@M..@M..@M..
  145. 1140: @M.y@M.y@M.3@M..@M..@M...M...M..@M...M...M...MT.Mx.@Mx.@Mv.@Ml.
  146. 1180: .MbS.M[.@MR..MQ0@MQ0@MJ..MG..MG..MA^@M>.@M9u@M6.@M5..M4/@M4/@M0:
  147. 11c0: .M,F@M$]@M..@M.9.M...M...M...M...M.\@M...M...M..@L.!.L.!.L..@L..
  148. 1200: .L..@L..@L..@L.O.L.O.L.[@L..@L..@L.r@L. .L.,@L.,@L..@L.7.L...L..
  149. 1240: .L.N.L..@L...L.e.L.|.L..@L.B@L.B@L.B@L..@L.M.L...L..@L.d.L...L.{
  150. 1280: .L.*@L..@L.5.L...L.A@L...L...L...L..@L.c.L..@L..@L..@L.z.L.)@L|.
  151. 12c0: .L|..L|..L{.@LvW@LvW@Ls.@Ls.@Lrb.Lrb.Lm..Lk.@Ljy.Le3.Lc.@La?@LZ.
  152. 1300: .LYV@LX..LN.@LN.@LMx.LMx.LI.@LH2.LF.@LE..L=..L=..L=..L;..L7.@L .
  153. 1340: .L.T@L..@L...L..@L..@L.0.L...L.G.L..@K.^.K.^.K...K...K.j@K.$@K..
  154. 1380: .K...K..@K..@K...K..@K.].K...K..@K.t.K.#@K...K..@K.:@K...K..@K..
  155. 13c0: @K.\.K.\.K..@K...K...K...K...K.9@K...K..@K...K..@K..@K...K...K..
  156. 1400: .K.r.K...K.~@K.,.K.,.K.,.K..@K...K.8@K...K...K..@K...K..@K.q.K.q
  157. 1440: .K}+.K{.@K{.@KuB.Ks.@KqN@Kj..Kie@Kf.@Ka|@K`*.K]..KXA.KTM@KPX.KE.
  158. 1480: .KE..KE..KD{@KC).KA.@K;@.K2.@K0..K/c@K+n.K*.@K(..K"4@K...K.>.K.>
  159. 14c0: .K.>.J...J...J.H@J.H@J...J...J._@J..@J.j.J.j.J..@J.v@J.v@J.v@J.v
  160. 1500: @J.$.J..@J...J.0@J..@J..@J.G@J.G@J..@J...J..@J..@J..@J...J...J.#
  161. 1540: .J..@J...J...J..@J.:.J..@J...J.Q.J..@J...J...J|.@Jz..Jyt@Jyt@Jx"
  162. 1580: .Jr..Jr..Jq.@Jn.@Jn.@Jm..JhP.Je..J\s@JW-@JT.@JS8.JKO.JI.@JCf.JCf
  163. 15c0: .JB.@J@..J@..J?r@J<.@J;}.J:,@J7.@J67.J2C@J0..J/.@J,.@J%.@J...J.B
  164. 1600: @J...J.M.J...J.d.J..@J..@J...J..@J.*@J.*@I...I..@I...I.A@I...I..
  165. 1640: .I...I..@I..@I...I...I.X@I.X@I.X@I...I..@I..@I.c.I...I.o@I.o@I.z
  166. 1680: .I.)@I..@I...I.@@I...I..@I..@I..@I...I..@I...I.n@I.3.I.3.I..@I..
  167. 16c0: .I..@I..@I.V@I...I.a.I...I.m@I..@I.'@I...I.2.I.I.I..@I...I...I..
  168. 1700: .I...I...I...I...I..@I...I...I..@I.1.I..@I...I...I~.@I}..Iy.@Ix_
  169. 1740: .Iw.@Iu..Itk@Itk@Io%@Ik0.Ie..IcG.Ia.@I`..IV..IO.@IJ;@IH..IA..I>]
  170. 1780: .I=.@I7.@I6t.I3..I.-.I..@I...I...I.9@I.9@I...I...I.P@I..@I...I.g
  171. 17c0: @I.g@H...H...H..@H.r.H.~@H.,.H..@H.C.H...H...H..@H..@H.f@H.f@H..
  172. 1800: @H.+.H..@H...H...H.7@H.B.H..@H...H..@H...H.|@H...H...H..@H.{@H.)
  173. 1840: .H...H.L@H..@H..@H..@H.n.H}..H|.@Ht.@HsV.Hr.@Hl.@Hkm.Hgy@Hc..H`.
  174. 1880: .H_.@H^>.HRa@HQ..HQ..HO.@HF..HF..H$<.H$<.H!..H!..H H@H._@H..@H..
  175. 18c0: @H...H.v@H.$.H..@H.G@G..@G..@G.^@G.^@G.i.G..@G.#.G./@G..@G..@G..
  176. 1900: @G...G.]@G.h.G.h.G..@G..@G...G.t@G.t@G.".G...G..@G..@G...G..@G.P
  177. 1940: .G..@G..@G..@G..@G..@G..@G.g.G..@G...G.~.G...G...G...G...G.O.G.O
  178. 1980: .G.O.G..@G...G.[@G.[@G...G...G.f.G.f.G...G..@G.}.G.,@G..@G..@G..
  179. 19c0: @G.C@G..@G.N.G..@G..@G..@G{|.Gx..Go.@Gl.@GjY@GjY@Gi..Gi..Gi..Gg.
  180. 1a00: @Gfd.Ga..G_.@G^{.G^{.GUA@GS..GO.@GMX@GAz.G5.@G...G...G..@G..@G.J
  181. 1a40: .G.J.G...G.V@G.a.G...G.m@G...G...G.2.G..@F..@F..@F..@F...F...F..
  182. 1a80: .F...F..@F..@F.`.F..@F..@F...F.l@F..@F..@F.1.F.=@F.=@F...F...F..
  183. 1ac0: @F..@F...F..@F..@F.%@F...F..@F..@F..@F..@F...F.S@F.S@F..@F..@F..
  184. 1b00: @F.u.F.u.F...F...F...F...F...F..@F...F...F.R@F.R@F..@F...F...F..
  185. 1b40: @F.t.F...F...F...F..@F...F...FV..FM.@FM.@FM.@FLC.FJ.@FJ.@FHO@F;
  186. 1b80: @F5.@F1..F/B.F,..F'Y.F'Y.F'Y.F&.@F$..F$..F.p.F..@F.|@F.|@F.*.F.*
  187. 1bc0: .F...F..@F.A.F.A.F...F..@F.o.F.o.F..@E...E...E...E.{@E.{@E.{@E.5
  188. 1c00: @E..@E..@E.@.E...E..@E.n.E..@E..@E.4@E...E.K@E...E..@E..@E...E..
  189. 1c40: @E..@E...E...E..@E..@E..@E.2@E..@E...E..@E...E..@E...E.<.E.<.E.<
  190. 1c80: .E.@E~..EyS.Ev..Ev..Et..Ep.@Ep.@En..El$.Eb.@Ea..Ea..E[.@E[.@EY.
  191. 1cc0: .EY..EX^@EX^@EX^@ETi.ETi.ES.@ES.@EQ..EQ..EQ..EPu@EPu@EO#.EK/@EK/
  192. 1d00: @EI..EH.@EG:.EE.@EA..EA..EA..E<..E<..E<..E<..E<..E8.@E7h.E7h.E6.
  193. 1d40: @E3t@E3t@E..@E+.@E(.@E&E@E$..E$..E$..E#.@E"P.E"P.E .@E...E...E..
  194. 1d80: .E...E..@E.g.E.g.E...E...E...E..@E..@E.-@E...E..@E..@E...E...E.D
  195. 1dc0: @E...E.O.E...E...D..@D.f.D.f.D. .D. .D..@D.}.D.,@D...D..@D...D..
  196. 1e00: .D...D.C@D...D...D.q@D...D..@D.|.D.+@D..@D..@D..@D...D.B@D...D.M
  197. 1e40: .D..@D.Y@D.Y@D.Y@D..@D..@D...D...D...D...D..@D.{.D.{.D..@D..@D.L
  198. 1e80: .D.L.D.L.D..@D.4.D..@D..@D..@D.K.D...D...D...D.W@D.W@D..@D.n@D.n
  199. 1ec0: @Dy..Dx?@Dv..Dv..DtJ.Dq..Dla.Dla.Dk.@Di..Dhm@Dhm@Ddx.Dc'@Dc'@Da.
  200. 1f00: .D_2.D[>@DX.@DU.@DN.@DN.@DL..DH.@DGw.DGw.DD..D@.@D?..D?..D;.@D;.
  201. 1f40: @D:H.D:H.D2_.D1.@D1.@D-..D+.@D+.@D'..D!<@D!<@D!<@D...D...D..@D..
  202. 1f80: @D..@D...D...D...D...D...D..@D..@D..@D..@D.u.D.$@D...D..@D..@D..
  203. 1fc0: .D...D.F.C..@C..@C..@C..@C...C...C...C...C.R@C...C...C...C...C..
  204. 2000: @C.i@C...C..@C..@C.t.C..@C..@C...C.:@C.E.C...C...C..@C..@C...C..
  205. 2040: .C...C...C...C..@C.-.C.-.C.-.C..@C..@C...C..@C..@C...C...C.P@C.P
  206. 2080: @C.[.C..@C..@C...C.g@C.g@C...C...C.!@C.~@C.,.C..@C.C.C.C.C..@C..
  207. 20c0: .C..@C..@C..@C.Z.C.Z.C..@C..@C...C...C.f@C.f@C.f@C...C..@C.q.C.q
  208. 2100: .C. @C. @C. @C...C...C.}@C.7@C.7@C.7@C.B.C.B.C.Y.C..@C..@C...C}.
  209. 2140: @Cq..Cq..Lukas Vrabec <lvrabec@redhat.com> - 3.13.1-102.13.Lukas
  210. 2180: Vrabec <lvrabec@redhat.com> - 3.13.1-102.12.Lukas Vrabec <lvrab
  211. 21c0: ec@redhat.com> - 3.13.1-102.11.Lukas Vrabec <lvrabec@redhat.com>
  212. 2200: - 3.13.1-102.10.Lukas Vrabec <lvrabec@redhat.com> - 3.13.1-102.
  213. 2240: 9.Lukas Vrabec <lvrabec@redhat.com> - 3.13.1-102.8.Lukas Vrabec
  214. 2280: <lvrabec@redhat.com> - 3.13.1-102.7.Lukas Vrabec <lvrabec@redhat
  215. 22c0: .com> - 3.13.1-102.6.Lukas Vrabec <lvrabec@redhat.com> - 3.13.1-
  216. 2300: 102.5.Miroslav Grepl <mgrepl@redhat.com> - 3.13.1-102.4.Petr Lau
  217. 2340: trbach <plautrba@redhat.com> - 3.13.1-102.3.Lukas Vrabec <lvrabe
  218. 2380: c@redhat.com> - 3.13.1-102.1.Dan Walsh <dwalsh@redhat.com> - 3.1
  219. 23c0: 3.1-102.Lukas Vrabec <lvrabec@redhat.com> - 3.13.1-101.Lukas Vra
  220. 2400: bec <lvrabec@redhat.com> - 3.13.1-100.Lukas Vrabec <lvrabec@redh
  221. 2440: at.com> - 3.13.1-99.Lukas Vrabec <lvrabec@redhat.com> - 3.13.1-9
  222. 2480: 8.Lukas Vrabec <lvrabec@redhat.com> - 3.13.1-97.Lukas Vrabec <lv
  223. 24c0: rabec@redhat.com> - 3.13.1-96.Lukas Vrabec <lvrabec@redhat.com>
  224. 2500: - 3.13.1-95.Lukas Vrabec <lvrabec@redhat.com> - 3.13.1-94.Lukas
  225. 2540: Vrabec <lvrabec@redhat.com> - 3.13.1-93.Lukas Vrabec <lvrabec@re
  226. 2580: dhat.com> - 3.13.1-92.Lukas Vrabec <lvrabec@redhat.com> - 3.13.1
  227. 25c0: -91.Lukas Vrabec <lvrabec@redhat.com> - 3.13.1-90.Lukas Vrabec <
  228. 2600: lvrabec@redhat.com> - 3.13.1-89.Lukas Vrabec <lvrabec@redhat.com
  229. 2640: > - 3.13.1-88.Lukas Vrabec <lvrabec@redhat.com> - 3.13.1-87.Luka
  230. 2680: s Vrabec <lvrabec@redhat.com> - 3.13.1-86.Lukas Vrabec <lvrabec@
  231. 26c0: redhat.com> - 3.13.1-85.Lukas Vrabec <lvrabec@redhat.com> - 3.13
  232. 2700: .1-84.Lukas Vrabec <lvrabec@redhat.com> - 3.13.1-83.Lukas Vrabec
  233. 2740: <lvrabec@redhat.com> - 3.13.1-82.Lukas Vrabec <lvrabec@redhat.c
  234. 2780: om> - 3.13.1-81.Lukas Vrabec <lvrabec@redhat.com> - 3.13.1-80.Pe
  235. 27c0: tr Lautrbach <plautrba@redhat.com> - 3.13.1-79.Lukas Vrabec <lvr
  236. 2800: abec@redhat.com> - 3.13.1-78.Lukas Vrabec <lvrabec@redhat.com> -
  237. 2840: 3.13.1-77.Lukas Vrabec <lvrabec@redhat.com> - 3.13.1-76.Lukas V
  238. 2880: rabec <lvrabec@redhat.com> - 3.13.1-75.Lukas Vrabec <lvrabec@red
  239. 28c0: hat.com> - 3.13.1-74.Lukas Vrabec <lvrabec@redhat.com> - 3.13.1-
  240. 2900: 73.Lukas Vrabec <lvrabec@redhat.com> - 3.13.1-72.Lukas Vrabec <l
  241. 2940: vrabec@redhat.com> - 3.13.1-71.Lukas Vrabec <lvrabec@redhat.com>
  242. 2980: - 3.13.1-70.Lukas Vrabec <lvrabec@redhat.com> - 3.13.1-69.Lukas
  243. 29c0: Vrabec <lvrabec@redhat.com> - 3.13.1-68.Lukas Vrabec <lvrabec@r
  244. 2a00: edhat.com> - 3.13.1-67.Petr Lautrbach <plautrba@redhat.com> - 3.
  245. 2a40: 13.1-66.Lukas Vrabec <lvrabec@redhat.com> 3.13.1-65.Lukas Vrabec
  246. 2a80: <lvrabec@redhat.com> 3.13.1-64.Lukas Vrabec <lvrabec@redhat.com
  247. 2ac0: > 3.13.1-63.Lukas Vrabec <lvrabec@redhat.com> 3.13.1-62.Lukas Vr
  248. 2b00: abec <lvrabec@redhat.com> 3.13.1-61.Miroslav Grepl <mgrepl@redha
  249. 2b40: t.com> 3.13.1-60.Miroslav Grepl <mgrepl@redhat.com> 3.13.1-59.Lu
  250. 2b80: kas Vrabec <lvrabec@redhat.com> 3.13.1-58.Lukas Vrabec <lvrabec@
  251. 2bc0: redhat.com> 3.13.1-57.Miroslav Grepl <mgrepl@redhat.com> 3.13.1-
  252. 2c00: 56.Lukas Vrabec <lvrabec@redhat.com> 3.13.1-55.Lukas Vrabec <lvr
  253. 2c40: abec@redhat.com> 3.13.1-54.Lukas Vrabec <lvrabec@redhat.com> 3.1
  254. 2c80: 3.1-53.Lukas Vrabec <lvrabec@redhat.com> 3.13.1-52.Miroslav Grep
  255. 2cc0: l <mgrepl@redhat.com> 3.13.1-51.Lukas Vrabec <lvrabec@redhat.com
  256. 2d00: > 3.13.1-50.Lukas Vrabec <lvrabec@redhat.com> 3.13.1-49.Lukas Vr
  257. 2d40: abec <lvrabec@redhat.com> 3.
  258. 13:00:16.774683 <= Recv data, 2896 bytes (0xb50)
  259. 0000: 13.1-48.Lukas Vrabec <lvrabec@redhat.com> 3.13.1-47.Lukas Vrabec
  260. 0040: <lvrabec@redhat.com> 3.13.1-46.Lukas Vrabec <lvrabec@redhat.com
  261. 0080: > 3.13.1-45.Lukas Vrabec <lvrabec@redhat.com> 3.13.1-44.Lukas Vr
  262. 00c0: abec <lvrabec@redhat.com> 3.13.1-43.Lukas Vrabec <lvrabec@redhat
  263. 0100: .com> 3.13.1-42.Lukas Vrabec <lvrabec@redhat.com> 3.13.1-41.Luka
  264. 0140: s Vrabec <lvrabec@redhat.com> 3.13.1-40.Miroslav Grepl <mgrepl@r
  265. 0180: edhat.com> 3.13.1-39.Lukas Vrabec <lvrabec@redhat.com> 3.13.1-38
  266. 01c0: .Lukas Vrabec <lvrabec@redhat.com> 3.13.1-37.Lukas Vrabec <lvrab
  267. 0200: ec@redhat.com> 3.13.1-36.Lukas Vrabec <lvrabec@redhat.com> 3.13.
  268. 0240: 1-35.Lukas Vrabec <lvrabec@redhat.com> 3.13.1-34.Lukas Vrabec <l
  269. 0280: vrabec@redhat.com> 3.13.1-33.Lukas Vrabec <lvrabec@redhat.com> 3
  270. 02c0: .13.1-32.Miroslav Grepl <mgrepl@redhat.com> 3.13.1-31.Miroslav G
  271. 0300: repl <mgrepl@redhat.com> 3.13.1-30.Miroslav Grepl <mgrepl@redhat
  272. 0340: .com> 3.13.1-29.Miroslav Grepl <mgrepl@redhat.com> 3.13.1-28.Mir
  273. 0380: oslav Grepl <mgrepl@redhat.com> 3.13.1-27.Miroslav Grepl <mgrepl
  274. 03c0: @redhat.com> 3.13.1-26.Miroslav Grepl <mgrepl@redhat.com> 3.13.1
  275. 0400: -25.Miroslav Grepl <mgrepl@redhat.com> 3.13.1-24.Miroslav Grepl
  276. 0440: <mgrepl@redhat.com> 3.13.1-23.Miroslav Grepl <mgrepl@redhat.com>
  277. 0480: 3.13.1-22.Miroslav Grepl <mgrepl@redhat.com> 3.13.1-21.Miroslav
  278. 04c0: Grepl <mgrepl@redhat.com> 3.13.1-20.Miroslav Grepl <mgrepl@redh
  279. 0500: at.com> 3.13.1-19.Miroslav Grepl <mgrepl@redhat.com> 3.13.1-18.M
  280. 0540: iroslav Grepl <mgrepl@redhat.com> 3.13.1-17.Miroslav Grepl <mgre
  281. 0580: pl@redhat.com> 3.13.1-16.Miroslav Grepl <mgrepl@redhat.com> 3.13
  282. 05c0: .1-15.Miroslav Grepl <mgrepl@redhat.com> 3.13.1-14.Miroslav Grep
  283. 0600: l <mgrepl@redhat.com> 3.13.1-13.Miroslav Grepl <mgrepl@redhat.co
  284. 0640: m> 3.13.1-12.Miroslav Grepl <mgrepl@redhat.com> 3.13.1-11.Mirosl
  285. 0680: av Grepl <mgrepl@redhat.com> 3.13.1-10.Miroslav Grepl <mgrepl@re
  286. 06c0: dhat.com> 3.13.1-9.Miroslav Grepl <mgrepl@redhat.com> 3.13.1-8.M
  287. 0700: iroslav Grepl <mgrepl@redhat.com> 3.13.1-7.Miroslav Grepl <mgrep
  288. 0740: l@redhat.com> 3.13.1-6.Miroslav Grepl <mgrepl@redhat.com> 3.13.1
  289. 0780: -5.Miroslav Grepl <mgrepl@redhat.com> 3.13.1-4.Miroslav Grepl <m
  290. 07c0: grepl@redhat.com> 3.13.1-3.Miroslav Grepl <mgrepl@redhat.com> 3.
  291. 0800: 13.1-2.Miroslav Grepl <mgrepl@redhat.com> 3.13.1-1.Miroslav Grep
  292. 0840: l <mgrepl@redhat.com> 3.12.1-156.Miroslav Grepl <mgrepl@redhat.c
  293. 0880: om> 3.12.1-155.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-154.Mir
  294. 08c0: oslav Grepl <mgrepl@redhat.com> 3.12.1-153.Miroslav Grepl <mgrep
  295. 0900: l@redhat.com> 3.12.1-152.Miroslav Grepl <mgrepl@redhat.com> 3.12
  296. 0940: .1-151.Miroslav Grepl<mgrepl@redhat.com> 3.12.1-149.Miroslav Gre
  297. 0980: pl<mgrepl@redhat.com> 3.12.1-149.Miroslav Grepl<mgrepl@redhat.co
  298. 09c0: m> 3.12.1-148.Miroslav Grepl<mgrepl@redhat.com> 3.12.1-147.Miros
  299. 0a00: lav Grepl<mgrepl@redhat.com> 3.12.1-146.Miroslav Grepl<mgrepl@re
  300. 0a40: dhat.com> 3.12.1-145.Miroslav Grepl<mgrepl@redhat.com> 3.12.1-14
  301. 0a80: 4.Lukas Vrabec <lvrabec@redhat.com> 3.12.1-143.Miroslav Grepl<mg
  302. 0ac0: repl@redhat.com> 3.12.1-142.Miroslav Grepl<mgrepl@redhat.com> 3.
  303. 0b00: 12.1-141.Miroslav Grepl<mgrepl@redhat.com> 3.12.1-140.Miroslav G
  304. 0b40: repl<mgrepl@redh
  305. 13:00:16.776747 <= Recv data, 8688 bytes (0x21f0)
  306. 0000: at.com> 3.12.1-139.Lukas Vrabec <lvrabec@redhat.com> 3.12.1-138.
  307. 0040: Miroslav Grepl<mgrepl@redhat.com> 3.12.1-137.Miroslav Grepl<mgre
  308. 0080: pl@redhat.com> 3.12.1-136.Miroslav Grepl<mgrepl@redhat.com> 3.12
  309. 00c0: .1-135.Miroslav Grepl<mgrepl@redhat.com> 3.12.1-134.Miroslav Gre
  310. 0100: pl<mgrepl@redhat.com> 3.12.1-133.Miroslav Grepl<mgrepl@redhat.co
  311. 0140: m> 3.12.1-132.Miroslav Grepl<mgrepl@redhat.com> 3.12.1-131.Miros
  312. 0180: lav Grepl<mgrepl@redhat.com> 3.12.1-130.Miroslav Grepl<mgrepl@re
  313. 01c0: dhat.com> 3.12.1-129.Miroslav Grepl<mgrepl@redhat.com> 3.12.1-12
  314. 0200: 8.Miroslav Grepl<mgrepl@redhat.com> 3.12.1-127.Miroslav Grepl<mg
  315. 0240: repl@redhat.com> 3.12.1-126.Miroslav Grepl<mgrepl@redhat.com> 3.
  316. 0280: 12.1-125.Miroslav Grepl<mgrepl@redhat.com> 3.12.1-124.Miroslav G
  317. 02c0: repl<mgrepl@redhat.com> 3.12.1-123.Miroslav Grepl<mgrepl@redhat.
  318. 0300: com> 3.12.1-122.Miroslav Grepl<mgrepl@redhat.com> 3.12.1-121.Mir
  319. 0340: oslav Grepl<mgrepl@redhat.com> 3.12.1-120.Miroslav Grepl<mgrepl@
  320. 0380: redhat.com> 3.12.1-119.Miroslav Grepl <mgrepl@redhat.com> 3.12.1
  321. 03c0: -118.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-117.Miroslav Grep
  322. 0400: l <mgrepl@redhat.com> 3.12.1-116.Miroslav Grepl <mgrepl@redhat.c
  323. 0440: om> 3.12.1-115.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-114.Mir
  324. 0480: oslav Grepl <mgrepl@redhat.com> 3.12.1-113.Miroslav Grepl <mgrep
  325. 04c0: l@redhat.com> 3.12.1-112.Miroslav Grepl <mgrepl@redhat.com> 3.12
  326. 0500: .1-111.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-110.Miroslav Gr
  327. 0540: epl <mgrepl@redhat.com> 3.12.1-109.Miroslav Grepl <mgrepl@redhat
  328. 0580: .com> 3.12.1-108.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-107.D
  329. 05c0: an Walsh <dwalsh@redhat.com> 3.12.1-106.Miroslav Grepl <mgrepl@r
  330. 0600: edhat.com> 3.12.1-105.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-
  331. 0640: 104.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-103.Miroslav Grepl
  332. 0680: <mgrepl@redhat.com> 3.12.1-102.Miroslav Grepl <mgrepl@redhat.co
  333. 06c0: m> 3.12.1-101.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-100.Miro
  334. 0700: slav Grepl <mgrepl@redhat.com> 3.12.1-99.Miroslav Grepl <mgrepl@
  335. 0740: redhat.com> 3.12.1-98.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-
  336. 0780: 97.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-96.Miroslav Grepl <
  337. 07c0: mgrepl@redhat.com> 3.12.1-95.Miroslav Grepl <mgrepl@redhat.com>
  338. 0800: 3.12.1-94.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-94.Miroslav
  339. 0840: Grepl <mgrepl@redhat.com> 3.12.1-93.Miroslav Grepl <mgrepl@redha
  340. 0880: t.com> 3.12.1-92.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-91.Mi
  341. 08c0: roslav Grepl <mgrepl@redhat.com> 3.12.1-90.Miroslav Grepl <mgrep
  342. 0900: l@redhat.com> 3.12.1-89.Miroslav Grepl <mgrepl@redhat.com> 3.12.
  343. 0940: 1-88.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-87.Miroslav Grepl
  344. 0980: <mgrepl@redhat.com> 3.12.1-86.Miroslav Grepl <mgrepl@redhat.com
  345. 09c0: > 3.12.1-85.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-84.Mirosla
  346. 0a00: v Grepl <mgrepl@redhat.com> 3.12.1-83.Miroslav Grepl <mgrepl@red
  347. 0a40: hat.com> 3.12.1-82.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-81.
  348. 0a80: Miroslav Grepl <mgrepl@redhat.com> 3.12.1-80.Miroslav Grepl <mgr
  349. 0ac0: epl@redhat.com> 3.12.1-79.Miroslav Grepl <mgrepl@redhat.com> 3.1
  350. 0b00: 2.1-78.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-77.Miroslav Gre
  351. 0b40: pl <mgrepl@redhat.com> 3.12.1-76.Miroslav Grepl <mgrepl@redhat.c
  352. 0b80: om> 3.12.1-75.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-74.Miros
  353. 0bc0: lav Grepl <mgrepl@redhat.com> 3.12.1-73.Miroslav Grepl <mgrepl@r
  354. 0c00: edhat.com> 3.12.1-72.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-7
  355. 0c40: 1.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-70.Miroslav Grepl <m
  356. 0c80: grepl@redhat.com> 3.12.1-69.Miroslav Grepl <mgrepl@redhat.com> 3
  357. 0cc0: .12.1-68.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-67.Miroslav G
  358. 0d00: repl <mgrepl@redhat.com> 3.12.1-66.Miroslav Grepl <mgrepl@redhat
  359. 0d40: .com> 3.12.1-65.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-64.Mir
  360. 0d80: oslav Grepl <mgrepl@redhat.com> 3.12.1-63.Miroslav Grepl <mgrepl
  361. 0dc0: @redhat.com> 3.12.1-62.Miroslav Grepl <mgrepl@redhat.com> 3.12.1
  362. 0e00: -61.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-60.Miroslav Grepl
  363. 0e40: <mgrepl@redhat.com> 3.12.1-59.Miroslav Grepl <mgrepl@redhat.com>
  364. 0e80: 3.12.1-58.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-57.Miroslav
  365. 0ec0: Grepl <mgrepl@redhat.com> 3.12.1-56.Miroslav Grepl <mgrepl@redh
  366. 0f00: at.com> 3.12.1-55.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-54.M
  367. 0f40: iroslav Grepl <mgrepl@redhat.com> 3.12.1-53.Miroslav Grepl <mgre
  368. 0f80: pl@redhat.com> 3.12.1-52.Miroslav Grepl <mgrepl@redhat.com> 3.12
  369. 0fc0: .1-51.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-50.Miroslav Grep
  370. 1000: l <mgrepl@redhat.com> 3.12.1-49.Miroslav Grepl <mgrepl@redhat.co
  371. 1040: m> 3.12.1-48.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-47.Mirosl
  372. 1080: av Grepl <mgrepl@redhat.com> 3.12.1-46.Miroslav Grepl <mgrepl@re
  373. 10c0: dhat.com> 3.12.1-45.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-44
  374. 1100: .Miroslav Grepl <mgrepl@redhat.com> 3.12.1-43.Miroslav Grepl <mg
  375. 1140: repl@redhat.com> 3.12.1-42.Miroslav Grepl <mgrepl@redhat.com> 3.
  376. 1180: 12.1-41.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-40.Miroslav Gr
  377. 11c0: epl <mgrepl@redhat.com> 3.12.1-39.Miroslav Grepl <mgrepl@redhat.
  378. 1200: com> 3.12.1-38.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-37.Miro
  379. 1240: slav Grepl <mgrepl@redhat.com> 3.12.1-36.Miroslav Grepl <mgrepl@
  380. 1280: redhat.com> 3.12.1-35.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-
  381. 12c0: 34.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-33.Miroslav Grepl <
  382. 1300: mgrepl@redhat.com> 3.12.1-32.Miroslav Grepl <mgrepl@redhat.com>
  383. 1340: 3.12.1-31.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-30.Miroslav
  384. 1380: Grepl <mgrepl@redhat.com> 3.12.1-29.Dan Walsh <dwalsh@redhat.com
  385. 13c0: > 3.12.1-28.Dan Walsh <dwalsh@redhat.com> 3.12.1-27.Miroslav Gre
  386. 1400: pl <mgrepl@redhat.com> 3.12.1-26.Miroslav Grepl <mgrepl@redhat.c
  387. 1440: om> 3.12.1-25.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-24.Miros
  388. 1480: lav Grepl <mgrepl@redhat.com> 3.12.1-23.Miroslav Grepl <mgrepl@r
  389. 14c0: edhat.com> 3.12.1-22.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-2
  390. 1500: 1.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-20.Miroslav Grepl <m
  391. 1540: grepl@redhat.com> 3.12.1-19.Miroslav Grepl <mgrepl@redhat.com> 3
  392. 1580: .12.1-18.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-17.Miroslav G
  393. 15c0: repl <mgrepl@redhat.com> 3.12.1-16.Miroslav Grepl <mgrepl@redhat
  394. 1600: .com> 3.12.1-15.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-14.Mir
  395. 1640: oslav Grepl <mgrepl@redhat.com> 3.12.1-13.Miroslav Grepl <mgrepl
  396. 1680: @redhat.com> 3.12.1-12.Miroslav Grepl <mgrepl@redhat.com> 3.12.1
  397. 16c0: -11.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-10.Miroslav Grepl
  398. 1700: <mgrepl@redhat.com> 3.12.1-9.Miroslav Grepl <mgrepl@redhat.com>
  399. 1740: 3.12.1-8.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-7.Miroslav Gr
  400. 1780: epl <mgrepl@redhat.com> 3.12.1-6.Miroslav Grepl <mgrepl@redhat.c
  401. 17c0: om> 3.12.1-5.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-4.Mirosla
  402. 1800: v Grepl <mgrepl@redhat.com> 3.12.1-3.Miroslav Grepl <mgrepl@redh
  403. 1840: at.com> 3.12.1-2.Miroslav Grepl <mgrepl@redhat.com> 3.12.1-1.Dan
  404. 1880: Walsh <dwalsh@redhat.com> 3.11.1-69.1.Miroslav Grepl <mgrepl@re
  405. 18c0: dhat.com> 3.11.1-69.Miroslav Grepl <mgrepl@redhat.com> 3.11.1-68
  406. 1900: .Miroslav Grepl <mgrepl@redhat.com> 3.11.1-67.Miroslav Grepl <mg
  407. 1940: repl@redhat.com> 3.11.1-66.Miroslav Grepl <mgrepl@redhat.com> 3.
  408. 1980: 11.1-65.Miroslav Grepl <mgrepl@redhat.com> 3.11.1-64.Miroslav Gr
  409. 19c0: epl <mgrepl@redhat.com> 3.11.1-63.Miroslav Grepl <mgrepl@redhat.
  410. 1a00: com> 3.11.1-62.Miroslav Grepl <mgrepl@redhat.com> 3.11.1-61.Miro
  411. 1a40: slav Grepl <mgrepl@redhat.com> 3.11.1-60.Miroslav Grepl <mgrepl@
  412. 1a80: redhat.com> 3.11.1-59.Miroslav Grepl <mgrepl@redhat.com> 3.11.1-
  413. 1ac0: 58.Miroslav Grepl <mgrepl@redhat.com> 3.11.1-57.Miroslav Grepl <
  414. 1b00: mgrepl@redhat.com> 3.11.1-56.Miroslav Grepl <mgrepl@redhat.com>
  415. 1b40: 3.11.1-55.Miroslav Grepl <mgrepl@redhat.com> 3.11.1-54.Miroslav
  416. 1b80: Grepl <mgrepl@redhat.com> 3.11.1-53.Miroslav Grepl <mgrepl@redha
  417. 1bc0: t.com> 3.11.1-52.Miroslav Grepl <mgrepl@redhat.com> 3.11.1-51.Mi
  418. 1c00: roslav Grepl <mgrepl@redhat.com> 3.11.1-50.Miroslav Grepl <mgrep
  419. 1c40: l@redhat.com> 3.11.1-49.Miroslav Grepl <mgrepl@redhat.com> 3.11.
  420. 1c80: 1-48.Miroslav Grepl <mgrepl@redhat.com> 3.11.1-47.Miroslav Grepl
  421. 1cc0: <mgrepl@redhat.com> 3.11.1-46.Miroslav Grepl <mgrepl@redhat.com
  422. 1d00: > 3.11.1-45.Miroslav Grepl <mgrepl@redhat.com> 3.11.1-44.Mirosla
  423. 1d40: v Grepl <mgrepl@redhat.com> 3.11.1-43.Miroslav Grepl <mgrepl@red
  424. 1d80: hat.com> 3.11.1-42.Miroslav Grepl <mgrepl@redhat.com> 3.11.1-41.
  425. 1dc0: Miroslav Grepl <mgrepl@redhat.com> 3.11.1-40.Miroslav Grepl <mgr
  426. 1e00: epl@redhat.com> 3.11.1-39.Miroslav Grepl <mgrepl@redhat.com> 3.1
  427. 1e40: 1.1-38.Miroslav Grepl <mgrepl@redhat.com> 3.11.1-37.Miroslav Gre
  428. 1e80: pl <mgrepl@redhat.com> 3.11.1-36.Miroslav Grepl <mgrepl@redhat.c
  429. 1ec0: om> 3.11.1-35.Miroslav Grepl <mgrepl@redhat.com> 3.11.1-34.Miros
  430. 1f00: lav Grepl <mgrepl@redhat.com> 3.11.1-33.Miroslav Grepl <mgrepl@r
  431. 1f40: edhat.com> 3.11.1-32.Miroslav Grepl <mgrepl@redhat.com> 3.11.1-3
  432. 1f80: 1.Miroslav Grepl <mgrepl@redhat.com> 3.11.1-30.Miroslav Grepl <m
  433. 1fc0: grepl@redhat.com> 3.11.1-29.Miroslav Grepl <mgrepl@redhat.com> 3
  434. 2000: .11.1-28.Miroslav Grepl <mgrepl@redhat.com> 3.11.1-27.Miroslav G
  435. 2040: repl <mgrepl@redhat.com> 3.11.1-26.Miroslav Grepl <mgrepl@redhat
  436. 2080: .com> 3.11.1-25.Miroslav Grepl <mgrepl@redhat.com> 3.11.1-24.Mir
  437. 20c0: oslav Grepl <mgrepl@redhat.com> 3.11.1-23.Miroslav Grepl <mgrepl
  438. 2100: @redhat.com> 3.11.1-22.Miroslav Grepl <mgrepl@redhat.com> 3.11.1
  439. 2140: -21.Miroslav Grepl <mgrepl@redhat.com> 3.11.1-20.Miroslav Grepl
  440. 2180: <mgrepl@redhat.com> 3.11.1-19.Miroslav Grepl <mgrepl@redhat.com>
  441. 21c0: 3.11.1-18.Miroslav Grepl <mgrepl@redhat.com> 3.
  442. 13:00:16.783099 <= Recv data, 16384 bytes (0x4000)
  443. 0000: 11.1-17.Miroslav Grepl <mgrepl@redhat.com> 3.11.1-16.Dan Walsh <
  444. 0040: dwalsh@redhat.com> 3.11.1-15.Miroslav Grepl <mgrepl@redhat.com>
  445. 0080: 3.11.1-14.Dan Walsh <dwalsh@redhat.com> 3.11.1-13.Miroslav Grepl
  446. 00c0: <mgrepl@redhat.com> 3.11.1-12.Miroslav Grepl <mgrepl@redhat.com
  447. 0100: > 3.11.1-11.Miroslav Grepl <mgrepl@redhat.com> 3.11.1-10.Dan Wal
  448. 0140: sh <dwalsh@redhat.com> 3.11.1-9.Dan Walsh <dwalsh@redhat.com> 3.
  449. 0180: 11.1-8.Dan Walsh <dwalsh@redhat.com> 3.11.1-7.Dan Walsh <dwalsh@
  450. 01c0: redhat.com> 3.11.1-6.Miroslav Grepl <mgrepl@redhat.com> 3.11.1-5
  451. 0200: .Miroslav Grepl <mgrepl@redhat.com> 3.11.1-4.Miroslav Grepl <mgr
  452. 0240: epl@redhat.com> 3.11.1-3.Miroslav Grepl <mgrepl@redhat.com> 3.11
  453. 0280: .1-2.Miroslav Grepl <mgrepl@redhat.com> 3.11.1-1.Miroslav Grepl
  454. 02c0: <mgrepl@redhat.com> 3.11.1-0.Miroslav Grepl <mgrepl@redhat.com>
  455. 0300: 3.11.0-15.Miroslav Grepl <mgrepl@redhat.com> 3.11.0-14.Miroslav
  456. 0340: Grepl <mgrepl@redhat.com> 3.11.0-13.Miroslav Grepl <mgrepl@redha
  457. 0380: t.com> 3.11.0-12.Fedora Release Engineering <rel-eng@lists.fedor
  458. 03c0: aproject.org> - 3.11.0-11.Miroslav Grepl <mgrepl@redhat.com> 3.1
  459. 0400: 1.0-10.Miroslav Grepl <mgrepl@redhat.com> 3.11.0-9.Miroslav Grep
  460. 0440: l <mgrepl@redhat.com> 3.11.0-8.Miroslav Grepl <mgrepl@redhat.com
  461. 0480: > 3.11.0-7.Miroslav Grepl <mgrepl@redhat.com> 3.11.0-6.Miroslav
  462. 04c0: Grepl <mgrepl@redhat.com> 3.11.0-5.Miroslav Grepl <mgrepl@redhat
  463. 0500: .com> 3.11.0-4.Miroslav Grepl <mgrepl@redhat.com> 3.11.0-3.Miros
  464. 0540: lav Grepl <mgrepl@redhat.com> 3.11.0-2.Miroslav Grepl <mgrepl@re
  465. 0580: dhat.com> 3.11.0-1.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-128
  466. 05c0: .Miroslav Grepl <mgrepl@redhat.com> 3.10.0-127.Miroslav Grepl <m
  467. 0600: grepl@redhat.com> 3.10.0-126.Miroslav Grepl <mgrepl@redhat.com>
  468. 0640: 3.10.0-125.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-124.Mirosla
  469. 0680: v Grepl <mgrepl@redhat.com> 3.10.0-123.Miroslav Grepl <mgrepl@re
  470. 06c0: dhat.com> 3.10.0-122.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-1
  471. 0700: 21.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-120.Miroslav Grepl
  472. 0740: <mgrepl@redhat.com> 3.10.0-119.Miroslav Grepl <mgrepl@redhat.com
  473. 0780: > 3.10.0-118.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-117.Miros
  474. 07c0: lav Grepl <mgrepl@redhat.com> 3.10.0-116.Miroslav Grepl <mgrepl@
  475. 0800: redhat.com> 3.10.0-115.Miroslav Grepl <mgrepl@redhat.com> 3.10.0
  476. 0840: -114.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-113.Miroslav Grep
  477. 0880: l <mgrepl@redhat.com> 3.10.0-112.Miroslav Grepl <mgrepl@redhat.c
  478. 08c0: om> 3.10.0-111.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-110.Mir
  479. 0900: oslav Grepl <mgrepl@redhat.com> 3.10.0-109.Miroslav Grepl <mgrep
  480. 0940: l@redhat.com> 3.10.0-108.Miroslav Grepl <mgrepl@redhat.com> 3.10
  481. 0980: .0-107.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-106.Miroslav Gr
  482. 09c0: epl <mgrepl@redhat.com> 3.10.0-105.Miroslav Grepl <mgrepl@redhat
  483. 0a00: .com> 3.10.0-104.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-103.M
  484. 0a40: iroslav Grepl <mgrepl@redhat.com> 3.10.0-102.Miroslav Grepl <mgr
  485. 0a80: epl@redhat.com> 3.10.0-101.Miroslav Grepl <mgrepl@redhat.com> 3.
  486. 0ac0: 10.0-100.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-99.Miroslav G
  487. 0b00: repl <mgrepl@redhat.com> 3.10.0-98.Miroslav Grepl <mgrepl@redhat
  488. 0b40: .com> 3.10.0-97.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-96.Mir
  489. 0b80: oslav Grepl <mgrepl@redhat.com> 3.10.0-95.Miroslav Grepl <mgrepl
  490. 0bc0: @redhat.com> 3.10.0-94.Miroslav Grepl <mgrepl@redhat.com> 3.10.0
  491. 0c00: -93.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-92.Miroslav Grepl
  492. 0c40: <mgrepl@redhat.com> 3.10.0-91.Miroslav Grepl <mgrepl@redhat.com>
  493. 0c80: 3.10.0-90.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-89.Miroslav
  494. 0cc0: Grepl <mgrepl@redhat.com> 3.10.0-88.Miroslav Grepl <mgrepl@redh
  495. 0d00: at.com> 3.10.0-87.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-86.M
  496. 0d40: iroslav Grepl <mgrepl@redhat.com> 3.10.0-85.Miroslav Grepl <mgre
  497. 0d80: pl@redhat.com> 3.10.0-84.Miroslav Grepl <mgrepl@redhat.com> 3.10
  498. 0dc0: .0-83.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-82.Dan Walsh <dw
  499. 0e00: alsh@redhat.com> 3.10.0-81.2.Miroslav Grepl <mgrepl@redhat.com>
  500. 0e40: 3.10.0-81.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-80.Miroslav
  501. 0e80: Grepl <mgrepl@redhat.com> 3.10.0-79.Miroslav Grepl <mgrepl@redha
  502. 0ec0: t.com> 3.10.0-78.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-77.Mi
  503. 0f00: roslav Grepl <mgrepl@redhat.com> 3.10.0-76.Miroslav Grepl <mgrep
  504. 0f40: l@redhat.com> 3.10.0-75.Dan Walsh <dwalsh@redhat.com> 3.10.0-74.
  505. 0f80: 2.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-74.Miroslav Grepl <m
  506. 0fc0: grepl@redhat.com> 3.10.0-73.Miroslav Grepl <mgrepl@redhat.com> 3
  507. 1000: .10.0-72.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-71.Miroslav G
  508. 1040: repl <mgrepl@redhat.com> 3.10.0-70.Miroslav Grepl <mgrepl@redhat
  509. 1080: .com> 3.10.0-69.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-68.Mir
  510. 10c0: oslav Grepl <mgrepl@redhat.com> 3.10.0-67.Miroslav Grepl <mgrepl
  511. 1100: @redhat.com> 3.10.0-66.Miroslav Grepl <mgrepl@redhat.com> 3.10.0
  512. 1140: -65.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-64.Miroslav Grepl
  513. 1180: <mgrepl@redhat.com> 3.10.0-63.Miroslav Grepl <mgrepl@redhat.com>
  514. 11c0: 3.10.0-59.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-58.Dan Wals
  515. 1200: h <dwalsh@redhat.com> 3.10.0-57.Dan Walsh <dwalsh@redhat.com> 3.
  516. 1240: 10.0-56.Dan Walsh <dwalsh@redhat.com> 3.10.0-55.2.Dan Walsh <dwa
  517. 1280: lsh@redhat.com> 3.10.0-55.1.Miroslav Grepl <mgrepl@redhat.com> 3
  518. 12c0: .10.0-55.Dan Walsh <dwalsh@redhat.com> 3.10.0-54.1.Miroslav Grep
  519. 1300: l <mgrepl@redhat.com> 3.10.0-54.Dan Walsh <dwalsh@redhat.com> 3.
  520. 1340: 10.0-53.1.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-53.Miroslav
  521. 1380: Grepl <mgrepl@redhat.com> 3.10.0-52.Miroslav Grepl <mgrepl@redha
  522. 13c0: t.com> 3.10.0-51.Dan Walsh <dwalsh@redhat.com> 3.10.0-50.2.Dan W
  523. 1400: alsh <dwalsh@redhat.com> 3.10.0-50.1.Miroslav Grepl <mgrepl@redh
  524. 1440: at.com> 3.10.0-50.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-49.M
  525. 1480: iroslav Grepl <mgrepl@redhat.com> 3.10.0-48.Miroslav Grepl <mgre
  526. 14c0: pl@redhat.com> 3.10.0-47.Dan Walsh <dwalsh@redhat.com> 3.10.0-46
  527. 1500: .1.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-46.Dan Walsh <dwals
  528. 1540: h@redhat.com> 3.10.0-45.1.Miroslav Grepl <mgrepl@redhat.com> 3.1
  529. 1580: 0.0-45.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-43.Miroslav Gre
  530. 15c0: pl <mgrepl@redhat.com> 3.10.0-42.Miroslav Grepl <mgrepl@redhat.c
  531. 1600: om> 3.10.0-41.Dan Walsh <dwalsh@redhat.com> 3.10.0-40.2.Miroslav
  532. 1640: Grepl <mgrepl@redhat.com> 3.10.0-40.Dan Walsh <dwalsh@redhat.co
  533. 1680: m> 3.10.0-39.3.Dan Walsh <dwalsh@redhat.com> 3.10.0-39.2.Dan Wal
  534. 16c0: sh <dwalsh@redhat.com> 3.10.0-39.1.Miroslav Grepl <mgrepl@redhat
  535. 1700: .com> 3.10.0-39.Dan Walsh <dwalsh@redhat.com> 3.10.0-38.1.Mirosl
  536. 1740: av Grepl <mgrepl@redhat.com> 3.10.0-38.Miroslav Grepl <mgrepl@re
  537. 1780: dhat.com> 3.10.0-37.Dan Walsh <dwalsh@redhat.com> 3.10.0-36.1.Mi
  538. 17c0: roslav Grepl <mgrepl@redhat.com> 3.10.0-36.Dan Walsh <dwalsh@red
  539. 1800: hat.com> 3.10.0-35.Dan Walsh <dwalsh@redhat.com> 3.10.0-34.7.Dan
  540. 1840: Walsh <dwalsh@redhat.com> 3.10.0-34.6.Dan Walsh <dwalsh@redhat.
  541. 1880: com> 3.10.0-34.4.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-34.3.
  542. 18c0: Dan Walsh <dwalsh@redhat.com> 3.10.0-34.2.Dan Walsh <dwalsh@redh
  543. 1900: at.com> 3.10.0-34.1.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-34
  544. 1940: .Miroslav Grepl <mgrepl@redhat.com> 3.10.0-33.Dan Walsh <dwalsh@
  545. 1980: redhat.com> 3.10.0-31.1.Miroslav Grepl <mgrepl@redhat.com> 3.10.
  546. 19c0: 0-31.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-29.Miroslav Grepl
  547. 1a00: <mgrepl@redhat.com> 3.10.0-28.Miroslav Grepl <mgrepl@redhat.com
  548. 1a40: > 3.10.0-27.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-26.Mirosla
  549. 1a80: v Grepl <mgrepl@redhat.com> 3.10.0-25.Miroslav Grepl <mgrepl@red
  550. 1ac0: hat.com> 3.10.0-24.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-23.
  551. 1b00: Miroslav Grepl <mgrepl@redhat.com> 3.10.0-22.Miroslav Grepl <mgr
  552. 1b40: epl@redhat.com> 3.10.0-21.Dan Walsh <dwalsh@redhat.com> 3.10.0-2
  553. 1b80: 0.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-19.Miroslav Grepl <m
  554. 1bc0: grepl@redhat.com> 3.10.0-18.Miroslav Grepl <mgrepl@redhat.com> 3
  555. 1c00: .10.0-17.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-16.Miroslav G
  556. 1c40: repl <mgrepl@redhat.com> 3.10.0-14.Miroslav Grepl <mgrepl@redhat
  557. 1c80: .com> 3.10.0-13.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-12.Mir
  558. 1cc0: oslav Grepl <mgrepl@redhat.com> 3.10.0-11.Miroslav Grepl <mgrepl
  559. 1d00: @redhat.com> 3.10.0-10.Miroslav Grepl <mgrepl@redhat.com> 3.10.0
  560. 1d40: -9.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-8.Miroslav Grepl <m
  561. 1d80: grepl@redhat.com> 3.10.0-7.Miroslav Grepl <mgrepl@redhat.com> 3.
  562. 1dc0: 10.0-6.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-5.Miroslav Grep
  563. 1e00: l <mgrepl@redhat.com> 3.10.0-4.Miroslav Grepl <mgrepl@redhat.com
  564. 1e40: > 3.10.0-3.Miroslav Grepl <mgrepl@redhat.com> 3.10.0-2.Miroslav
  565. 1e80: Grepl <mgrepl@redhat.com> 3.10.0-1.Miroslav Grepl <mgrepl@redhat
  566. 1ec0: .com> 3.9.16-30.Dan Walsh <dwalsh@redhat.com> 3.9.16-29.1.Mirosl
  567. 1f00: av Grepl <mgrepl@redhat.com> 3.9.16-29.Dan Walsh <dwalsh@redhat.
  568. 1f40: com> 3.9.16-28.1.Miroslav Grepl <mgrepl@redhat.com> 3.9.16-27.Mi
  569. 1f80: roslav Grepl <mgrepl@redhat.com> 3.9.16-26.Miroslav Grepl <mgrep
  570. 1fc0: l@redhat.com> 3.9.16-25.Miroslav Grepl <mgrepl@redhat.com> 3.9.1
  571. 2000: 6-24.Miroslav Grepl <mgrepl@redhat.com> 3.9.16-23.Miroslav Grepl
  572. 2040: <mgrepl@redhat.com> 3.9.16-22.Miroslav Grepl <mgrepl@redhat.com
  573. 2080: > 3.9.16-21.Miroslav Grepl <mgrepl@redhat.com> 3.9.16-20.Mirosla
  574. 20c0: v Grepl <mgrepl@redhat.com> 3.9.16-19.Miroslav Grepl <mgrepl@red
  575. 2100: hat.com> 3.9.16-18.Miroslav Grepl <mgrepl@redhat.com> 3.9.16-17.
  576. 2140: Dan Walsh <dwalsh@redhat.com> 3.9.16-16.1.Miroslav Grepl <mgrepl
  577. 2180: @redhat.com> 3.9.16-16.Miroslav Grepl <mgrepl@redhat.com> 3.9.16
  578. 21c0: -15.Miroslav Grepl <mgrepl@redhat.com> 3.9.16-14.Miroslav Grepl
  579. 2200: <mgrepl@redhat.com> 3.9.16-13.Miroslav Grepl <mgrepl@redhat.com>
  580. 2240: 3.9.16-12.Miroslav Grepl <mgrepl@redhat.com> 3.9.16-11.Miroslav
  581. 2280: Grepl <mgrepl@redhat.com> 3.9.16-10.Miroslav Grepl <mgrepl@redh
  582. 22c0: at.com> 3.9.16-7.Miroslav Grepl <mgrepl@redhat.com> 3.9.16-6.Mir
  583. 2300: oslav Grepl <mgrepl@redhat.com> 3.9.16-5.Miroslav Grepl <mgrepl@
  584. 2340: redhat.com> 3.9.16-4.Miroslav Grepl <mgrepl@redhat.com> 3.9.16-3
  585. 2380: .Miroslav Grepl <mgrepl@redhat.com> 3.9.16-2.Miroslav Grepl <mgr
  586. 23c0: epl@redhat.com> 3.9.16-1.Miroslav Grepl <mgrepl@redhat.com> 3.9.
  587. 2400: 15-5.Miroslav Grepl <mgrepl@redhat.com> 3.9.15-2.Miroslav Grepl
  588. 2440: <mgrepl@redhat.com> 3.9.15-1.Fedora Release Engineering <rel-eng
  589. 2480: @lists.fedoraproject.org> - 3.9.14-2.Dan Walsh <dwalsh@redhat.co
  590. 24c0: m> 3.9.14-1.Miroslav Grepl <mgrepl@redhat.com> 3.9.13-10.Mirosla
  591. 2500: v Grepl <mgrepl@redhat.com> 3.9.13-9.Dan Walsh <dwalsh@redhat.co
  592. 2540: m> 3.9.13-8.Miroslav Grepl <mgrepl@redhat.com> 3.9.13-7.Miroslav
  593. 2580: Grepl <mgrepl@redhat.com> 3.9.13-6.Miroslav Grepl <mgrepl@redha
  594. 25c0: t.com> 3.9.13-5.Miroslav Grepl <mgrepl@redhat.com> 3.9.13-4.Miro
  595. 2600: slav Grepl <mgrepl@redhat.com> 3.9.13-3.Miroslav Grepl <mgrepl@r
  596. 2640: edhat.com> 3.9.13-2.Miroslav Grepl <mgrepl@redhat.com> 3.9.13-1.
  597. 2680: Miroslav Grepl <mgrepl@redhat.com> 3.9.12-8.Miroslav Grepl <mgre
  598. 26c0: pl@redhat.com> 3.9.12-7.Miroslav Grepl <mgrepl@redhat.com> 3.9.1
  599. 2700: 2-6.Miroslav Grepl <mgrepl@redhat.com> 3.9.12-5.Dan Walsh <dwals
  600. 2740: h@redhat.com> 3.9.12-4.Dan Walsh <dwalsh@redhat.com> 3.9.12-3.Da
  601. 2780: n Walsh <dwalsh@redhat.com> 3.9.12-2.Miroslav Grepl <mgrepl@redh
  602. 27c0: at.com> 3.9.12-1.Dan Walsh <dwalsh@redhat.com> 3.9.11-2.Miroslav
  603. 2800: Grepl <mgrepl@redhat.com> 3.9.11-1.Miroslav Grepl <mgrepl@redha
  604. 2840: t.com> 3.9.10-13.Dan Walsh <dwalsh@redhat.com> 3.9.10-12.Mirosla
  605. 2880: v Grepl <mgrepl@redhat.com> 3.9.10-11.Miroslav Grepl <mgrepl@red
  606. 28c0: hat.com> 3.9.10-10.Miroslav Grepl <mgrepl@redhat.com> 3.9.10-9.M
  607. 2900: iroslav Grepl <mgrepl@redhat.com> 3.9.10-8.Miroslav Grepl <mgrep
  608. 2940: l@redhat.com> 3.9.10-7.Miroslav Grepl <mgrepl@redhat.com> 3.9.10
  609. 2980: -6.Miroslav Grepl <mgrepl@redhat.com> 3.9.10-5.Dan Walsh <dwalsh
  610. 29c0: @redhat.com> 3.9.10-4.Miroslav Grepl <mgrepl@redhat.com> 3.9.10-
  611. 2a00: 3.Miroslav Grepl <mgrepl@redhat.com> 3.9.10-2.Miroslav Grepl <mg
  612. 2a40: repl@redhat.com> 3.9.10-1.Miroslav Grepl <mgrepl@redhat.com> 3.9
  613. 2a80: .9-4.Dan Walsh <dwalsh@redhat.com> 3.9.9-3.Miroslav Grepl <mgrep
  614. 2ac0: l@redhat.com> 3.9.9-2.Miroslav Grepl <mgrepl@redhat.com> 3.9.9-1
  615. 2b00: .Miroslav Grepl <mgrepl@redhat.com> 3.9.8-7.Dan Walsh <dwalsh@re
  616. 2b40: dhat.com> 3.9.8-6.Miroslav Grepl <mgrepl@redhat.com> 3.9.8-5.Mir
  617. 2b80: oslav Grepl <mgrepl@redhat.com> 3.9.8-4.Dan Walsh <dwalsh@redhat
  618. 2bc0: .com> 3.9.8-3.Dan Walsh <dwalsh@redhat.com> 3.9.8-2.Dan Walsh <d
  619. 2c00: walsh@redhat.com> 3.9.8-1.Dan Walsh <dwalsh@redhat.com> 3.9.7-10
  620. 2c40: .Dan Walsh <dwalsh@redhat.com> 3.9.7-9.Dan Walsh <dwalsh@redhat.
  621. 2c80: com> 3.9.7-8.Dan Walsh <dwalsh@redhat.com> 3.9.7-7.Dan Walsh <dw
  622. 2cc0: alsh@redhat.com> 3.9.7-6.Dan Walsh <dwalsh@redhat.com> 3.9.7-5.D
  623. 2d00: an Walsh <dwalsh@redhat.com> 3.9.7-4.Dan Walsh <dwalsh@redhat.co
  624. 2d40: m> 3.9.7-3.Dan Walsh <dwalsh@redhat.com> 3.9.7-2.Dan Walsh <dwal
  625. 2d80: sh@redhat.com> 3.9.7-1.Dan Walsh <dwalsh@redhat.com> 3.9.6-3.Dan
  626. 2dc0: Walsh <dwalsh@redhat.com> 3.9.6-2.Dan Walsh <dwalsh@redhat.com>
  627. 2e00: 3.9.6-1.Dan Walsh <dwalsh@redhat.com> 3.9.5-11.Dan Walsh <dwals
  628. 2e40: h@redhat.com> 3.9.5-10.Dan Walsh <dwalsh@redhat.com> 3.9.5-9.Dan
  629. 2e80: Walsh <dwalsh@redhat.com> 3.9.5-8.Dan Walsh <dwalsh@redhat.com>
  630. 2ec0: 3.9.5-7.Dan Walsh <dwalsh@redhat.com> 3.9.5-6.Dan Walsh <dwalsh
  631. 2f00: @redhat.com> 3.9.5-5.Dan Walsh <dwalsh@redhat.com> 3.9.5-4.Dan W
  632. 2f40: alsh <dwalsh@redhat.com> 3.9.5-3.Dan Walsh <dwalsh@redhat.com> 3
  633. 2f80: .9.5-2.Dan Walsh <dwalsh@redhat.com> 3.9.5-1.Dan Walsh <dwalsh@r
  634. 2fc0: edhat.com> 3.9.4-3.Dan Walsh <dwalsh@redhat.com> 3.9.4-2.Dan Wal
  635. 3000: sh <dwalsh@redhat.com> 3.9.4-1.Dan Walsh <dwalsh@redhat.com> 3.9
  636. 3040: .3-4.Dan Walsh <dwalsh@redhat.com> 3.9.3-3.Dan Walsh <dwalsh@red
  637. 3080: hat.com> 3.9.3-2.Dan Walsh <dwalsh@redhat.com> 3.9.3-1.Dan Walsh
  638. 30c0: <dwalsh@redhat.com> 3.9.2-1.Dan Walsh <dwalsh@redhat.com> 3.9.1
  639. 3100: -3.Dan Walsh <dwalsh@redhat.com> 3.9.1-2.Dan Walsh <dwalsh@redha
  640. 3140: t.com> 3.9.1-1.Dan Walsh <dwalsh@redhat.com> 3.9.0-2.Dan Walsh <
  641. 3180: dwalsh@redhat.com> 3.9.0-1.Dan Walsh <dwalsh@redhat.com> 3.8.8-2
  642. 31c0: 1.Dan Walsh <dwalsh@redhat.com> 3.8.8-20.Dan Walsh <dwalsh@redha
  643. 3200: t.com> 3.8.8-19.Dan Walsh <dwalsh@redhat.com> 3.8.8-18.Dan Walsh
  644. 3240: <dwalsh@redhat.com> 3.8.8-17.Dan Walsh <dwalsh@redhat.com> 3.8.
  645. 3280: 8-16.Dan Walsh <dwalsh@redhat.com> 3.8.8-15.Dan Walsh <dwalsh@re
  646. 32c0: dhat.com> 3.8.8-14.Dan Walsh <dwalsh@redhat.com> 3.8.8-13.Dan Wa
  647. 3300: lsh <dwalsh@redhat.com> 3.8.8-12.Dan Walsh <dwalsh@redhat.com> 3
  648. 3340: .8.8-11.Dan Walsh <dwalsh@redhat.com> 3.8.8-10.Dan Walsh <dwalsh
  649. 3380: @redhat.com> 3.8.8-9.Dan Walsh <dwalsh@redhat.com> 3.8.8-8.Dan W
  650. 33c0: alsh <dwalsh@redhat.com> 3.8.8-7.Dan Walsh <dwalsh@redhat.com> 3
  651. 3400: .8.8-6.Dan Walsh <dwalsh@redhat.com> 3.8.8-5.Dan Walsh <dwalsh@r
  652. 3440: edhat.com> 3.8.8-4.Dan Walsh <dwalsh@redhat.com> 3.8.8-3.Dan Wal
  653. 3480: sh <dwalsh@redhat.com> 3.8.8-2.Dan Walsh <dwalsh@redhat.com> 3.8
  654. 34c0: .8-1.Dan Walsh <dwalsh@redhat.com> 3.8.7-3.Dan Walsh <dwalsh@red
  655. 3500: hat.com> 3.8.7-2.Dan Walsh <dwalsh@redhat.com> 3.8.7-1.Dan Walsh
  656. 3540: <dwalsh@redhat.com> 3.8.6-3.Miroslav Grepl <mgrepl@redhat.com>
  657. 3580: 3.8.6-2.Dan Walsh <dwalsh@redhat.com> 3.8.6-1.Dan Walsh <dwalsh@
  658. 35c0: redhat.com> 3.8.5-1.Dan Walsh <dwalsh@redhat.com> 3.8.4-1.Dan Wa
  659. 3600: lsh <dwalsh@redhat.com> 3.8.3-4.Dan Walsh <dwalsh@redhat.com> 3.
  660. 3640: 8.3-3.Dan Walsh <dwalsh@redhat.com> 3.8.3-2.Dan Walsh <dwalsh@re
  661. 3680: dhat.com> 3.8.3-1.Dan Walsh <dwalsh@redhat.com> 3.8.2-1.Dan Wals
  662. 36c0: h <dwalsh@redhat.com> 3.8.1-5.Dan Walsh <dwalsh@redhat.com> 3.8.
  663. 3700: 1-4.Dan Walsh <dwalsh@redhat.com> 3.8.1-3.Dan Walsh <dwalsh@redh
  664. 3740: at.com> 3.8.1-2.Dan Walsh <dwalsh@redhat.com> 3.8.1-1.Dan Walsh
  665. 3780: <dwalsh@redhat.com> 3.7.19-22.Dan Walsh <dwalsh@redhat.com> 3.7.
  666. 37c0: 19-21.Dan Walsh <dwalsh@redhat.com> 3.7.19-20.Dan Walsh <dwalsh@
  667. 3800: redhat.com> 3.7.19-19.Dan Walsh <dwalsh@redhat.com> 3.7.19-17.Da
  668. 3840: n Walsh <dwalsh@redhat.com> 3.7.19-16.Dan Walsh <dwalsh@redhat.c
  669. 3880: om> 3.7.19-15.Dan Walsh <dwalsh@redhat.com> 3.7.19-14.Dan Walsh
  670. 38c0: <dwalsh@redhat.com> 3.7.19-13.Dan Walsh <dwalsh@redhat.com> 3.7.
  671. 3900: 19-12.Dan Walsh <dwalsh@redhat.com> 3.7.19-11.Dan Walsh <dwalsh@
  672. 3940: redhat.com> 3.7.19-10.Dan Walsh <dwalsh@redhat.com> 3.7.19-9.Dan
  673. 3980: Walsh <dwalsh@redhat.com> 3.7.19-8.Dan Walsh <dwalsh@redhat.com
  674. 39c0: > 3.7.19-7.Dan Walsh <dwalsh@redhat.com> 3.7.19-6.Dan Walsh <dwa
  675. 3a00: lsh@redhat.com> 3.7.19-5.Dan Walsh <dwalsh@redhat.com> 3.7.19-4.
  676. 3a40: Dan Walsh <dwalsh@redhat.com> 3.7.19-3.Dan Walsh <dwalsh@redhat.
  677. 3a80: com> 3.7.19-2.Dan Walsh <dwalsh@redhat.com> 3.7.19-1.Dan Walsh <
  678. 3ac0: dwalsh@redhat.com> 3.7.18-3.Dan Walsh <dwalsh@redhat.com> 3.7.18
  679. 3b00: -2.Dan Walsh <dwalsh@redhat.com> 3.7.18-1.Dan Walsh <dwalsh@redh
  680. 3b40: at.com> 3.7.17-6.Dan Walsh <dwalsh@redhat.com> 3.7.17-5.Dan Wals
  681. 3b80: h <dwalsh@redhat.com> 3.7.17-4.Dan Walsh <dwalsh@redhat.com> 3.7
  682. 3bc0: .17-3.Dan Walsh <dwalsh@redhat.com> 3.7.17-2.Dan Walsh <dwalsh@r
  683. 3c00: edhat.com> 3.7.17-1.Dan Walsh <dwalsh@redhat.com> 3.7.16-2.Dan W
  684. 3c40: alsh <dwalsh@redhat.com> 3.7.16-1.Dan Walsh <dwalsh@redhat.com>
  685. 3c80: 3.7.15-4.Dan Walsh <dwalsh@redhat.com> 3.7.15-3.Dan Walsh <dwals
  686. 3cc0: h@redhat.com> 3.7.15-2.Dan Walsh <dwalsh@redhat.com> 3.7.15-1.Da
  687. 3d00: n Walsh <dwalsh@redhat.com> 3.7.14-5.Dan Walsh <dwalsh@redhat.co
  688. 3d40: m> 3.7.14-4.Dan Walsh <dwalsh@redhat.com> 3.7.14-3.Dan Walsh <dw
  689. 3d80: alsh@redhat.com> 3.7.14-2.Dan Walsh <dwalsh@redhat.com> 3.7.14-1
  690. 3dc0: .Dan Walsh <dwalsh@redhat.com> 3.7.13-4.Dan Walsh <dwalsh@redhat
  691. 3e00: .com> 3.7.13-3.Dan Walsh <dwalsh@redhat.com> 3.7.13-2.Dan Walsh
  692. 3e40: <dwalsh@redhat.com> 3.7.13-1.Dan Walsh <dwalsh@redhat.com> 3.7.1
  693. 3e80: 2-1.Dan Walsh <dwalsh@redhat.com> 3.7.11-1.Dan Walsh <dwalsh@red
  694. 3ec0: hat.com> 3.7.10-5.Dan Walsh <dwalsh@redhat.com> 3.7.10-4.Dan Wal
  695. 3f00: sh <dwalsh@redhat.com> 3.7.10-3.Dan Walsh <dwalsh@redhat.com> 3.
  696. 3f40: 7.10-2.Dan Walsh <dwalsh@redhat.com> 3.7.10-1.Dan Walsh <dwalsh@
  697. 3f80: redhat.com> 3.7.9-4.Dan Walsh <dwalsh@redhat.com> 3.7.9-3.Dan Wa
  698. 3fc0: lsh <dwalsh@redhat.com> 3.7.9-2.Dan Walsh <dwalsh@redhat.com> 3.
  699. 13:00:16.789809 <= Recv data, 992 bytes (0x3e0)
  700. 0000: 7.9-1.Dan Walsh <dwalsh@redhat.com> 3.7.8-11.Dan Walsh <dwalsh@r
  701. 0040: edhat.com> 3.7.8-9.Dan Walsh <dwalsh@redhat.com> 3.7.8-8.Dan Wal
  702. 0080: sh <dwalsh@redhat.com> 3.7.8-7.Dan Walsh <dwalsh@redhat.com> 3.7
  703. 00c0: .8-6.Dan Walsh <dwalsh@redhat.com> 3.7.8-5.Dan Walsh <dwalsh@red
  704. 0100: hat.com> 3.7.8-4.Dan Walsh <dwalsh@redhat.com> 3.7.8-3.Dan Walsh
  705. 0140: <dwalsh@redhat.com> 3.7.8-2.Dan Walsh <dwalsh@redhat.com> 3.7.8
  706. 0180: -1.Dan Walsh <dwalsh@redhat.com> 3.7.7-3.Dan Walsh <dwalsh@redha
  707. 01c0: t.com> 3.7.7-2.Dan Walsh <dwalsh@redhat.com> 3.7.7-1.Dan Walsh <
  708. 0200: dwalsh@redhat.com> 3.7.6-1.Dan Walsh <dwalsh@redhat.com> 3.7.5-8
  709. 0240: .Dan Walsh <dwalsh@redhat.com> 3.7.5-7.Dan Walsh <dwalsh@redhat.
  710. 0280: com> 3.7.5-6.Dan Walsh <dwalsh@redhat.com> 3.7.5-5.Dan Walsh <dw
  711. 02c0: alsh@redhat.com> 3.7.5-4.Dan Walsh <dwalsh@redhat.com> 3.7.5-3.D
  712. 0300: an Walsh <dwalsh@redhat.com> 3.7.5-2.Dan Walsh <dwalsh@redhat.co
  713. 0340: m> 3.7.5-1.Dan Walsh <dwalsh@redhat.com> 3.7.4-4.Dan Walsh <dwal
  714. 0380: sh@redhat.com> 3.7.4-3.Dan Walsh <dwalsh@redhat.com> 3.7.4-2.Dan
  715. 03c0: Walsh <dwalsh@redhat.com> 3.7.4
  716. 13:00:16.793305 <= Recv data, 1448 bytes (0x5a8)
  717. 0000: -1.Dan Walsh <dwalsh@redhat.com> 3.7.3-1.Dan Walsh <dwalsh@redha
  718. 0040: t.com> 3.7.1-1.Dan Walsh <dwalsh@redhat.com> 3.6.33-2.Dan Walsh
  719. 0080: <dwalsh@redhat.com> 3.6.33-1.Dan Walsh <dwalsh@redhat.com> 3.6.3
  720. 00c0: 2-17.Dan Walsh <dwalsh@redhat.com> 3.6.32-16.Dan Walsh <dwalsh@r
  721. 0100: edhat.com> 3.6.32-15.Dan Walsh <dwalsh@redhat.com> 3.6.32-13.Dan
  722. 0140: Walsh <dwalsh@redhat.com> 3.6.32-12.Dan Walsh <dwalsh@redhat.co
  723. 0180: m> 3.6.32-11.Dan Walsh <dwalsh@redhat.com> 3.6.32-10.Dan Walsh <
  724. 01c0: dwalsh@redhat.com> 3.6.32-9.Dan Walsh <dwalsh@redhat.com> 3.6.32
  725. 0200: -8.Dan Walsh <dwalsh@redhat.com> 3.6.32-7.Dan Walsh <dwalsh@redh
  726. 0240: at.com> 3.6.32-6.Dan Walsh <dwalsh@redhat.com> 3.6.32-5.Dan Wals
  727. 0280: h <dwalsh@redhat.com> 3.6.32-4.Dan Walsh <dwalsh@redhat.com> 3.6
  728. 02c0: .32-3.Dan Walsh <dwalsh@redhat.com> 3.6.32-2.Dan Walsh <dwalsh@r
  729. 0300: edhat.com> 3.6.32-1.Dan Walsh <dwalsh@redhat.com> 3.6.31-5.Dan W
  730. 0340: alsh <dwalsh@redhat.com> 3.6.31-4.Dan Walsh <dwalsh@redhat.com>
  731. 0380: 3.6.31-3.Dan Walsh <dwalsh@redhat.com> 3.6.31-2.Dan Walsh <dwals
  732. 03c0: h@redhat.com> 3.6.30-6.Dan Walsh <dwalsh@redhat.com> 3.6.30-5.Da
  733. 0400: n Walsh <dwalsh@redhat.com> 3.6.30-4.Dan Walsh <dwalsh@redhat.co
  734. 0440: m> 3.6.30-3.Dan Walsh <dwalsh@redhat.com> 3.6.30-2.Dan Walsh <dw
  735. 0480: alsh@redhat.com> 3.6.30-1.Dan Walsh <dwalsh@redhat.com> 3.6.29-2
  736. 04c0: .Dan Walsh <dwalsh@redhat.com> 3.6.29-1.Dan Walsh <dwalsh@redhat
  737. 0500: .com> 3.6.28-9.Dan Walsh <dwalsh@redhat.com> 3.6.28-8.Dan Walsh
  738. 0540: <dwalsh@redhat.com> 3.6.28-7.Dan Walsh <dwalsh@redhat.com> 3.6.2
  739. 0580: 8-6.Dan Walsh <dwalsh@redhat.com> 3.6.28
  740. 13:00:16.793733 <= Recv data, 1448 bytes (0x5a8)
  741. 0000: -5.Dan Walsh <dwalsh@redhat.com> 3.6.28-4.Dan Walsh <dwalsh@redh
  742. 0040: at.com> 3.6.28-3.Dan Walsh <dwalsh@redhat.com> 3.6.28-2.Dan Wals
  743. 0080: h <dwalsh@redhat.com> 3.6.28-1.Dan Walsh <dwalsh@redhat.com> 3.6
  744. 00c0: .27-1.Dan Walsh <dwalsh@redhat.com> 3.6.26-11.Dan Walsh <dwalsh@
  745. 0100: redhat.com> 3.6.26-10.Dan Walsh <dwalsh@redhat.com> 3.6.26-9.Bil
  746. 0140: l Nottingham <notting@redhat.com> 3.6.26-8.Dan Walsh <dwalsh@red
  747. 0180: hat.com> 3.6.26-7.Dan Walsh <dwalsh@redhat.com> 3.6.26-6.Dan Wal
  748. 01c0: sh <dwalsh@redhat.com> 3.6.26-5.Dan Walsh <dwalsh@redhat.com> 3.
  749. 0200: 6.26-4.Dan Walsh <dwalsh@redhat.com> 3.6.26-3.Dan Walsh <dwalsh@
  750. 0240: redhat.com> 3.6.26-2.Dan Walsh <dwalsh@redhat.com> 3.6.26-1.Dan
  751. 0280: Walsh <dwalsh@redhat.com> 3.6.25-1.Dan Walsh <dwalsh@redhat.com>
  752. 02c0: 3.6.24-1.Dan Walsh <dwalsh@redhat.com> 3.6.23-2.Dan Walsh <dwal
  753. 0300: sh@redhat.com> 3.6.23-1.Dan Walsh <dwalsh@redhat.com> 3.6.22-3.D
  754. 0340: an Walsh <dwalsh@redhat.com> 3.6.22-1.Dan Walsh <dwalsh@redhat.c
  755. 0380: om> 3.6.21-4.Dan Walsh <dwalsh@redhat.com> 3.6.21-3.Tom "spot" C
  756. 03c0: allaway <tcallawa@redhat.com> 3.6.21-2.Dan Walsh <dwalsh@redhat.
  757. 0400: com> 3.6.21-1.Dan Walsh <dwalsh@redhat.com> 3.6.20-2.Dan Walsh <
  758. 0440: dwalsh@redhat.com> 3.6.20-1.Dan Walsh <dwalsh@redhat.com> 3.6.19
  759. 0480: -5.Dan Walsh <dwalsh@redhat.com> 3.6.19-4.Dan Walsh <dwalsh@redh
  760. 04c0: at.com> 3.6.19-3.Dan Walsh <dwalsh@redhat.com> 3.6.19-2.Dan Wals
  761. 0500: h <dwalsh@redhat.com> 3.6.19-1.Dan Walsh <dwalsh@redhat.com> 3.6
  762. 0540: .18-1.Dan Walsh <dwalsh@redhat.com> 3.6.17-1.Dan Walsh <dwalsh@r
  763. 0580: edhat.com> 3.6.16-4.Dan Walsh <dwalsh@re
  764. 13:00:16.794296 <= Recv data, 2896 bytes (0xb50)
  765. 0000: dhat.com> 3.6.16-3.Dan Walsh <dwalsh@redhat.com> 3.6.16-2.Dan Wa
  766. 0040: lsh <dwalsh@redhat.com> 3.6.16-1.Dan Walsh <dwalsh@redhat.com> 3
  767. 0080: .6.14-3.Dan Walsh <dwalsh@redhat.com> 3.6.14-2.Dan Walsh <dwalsh
  768. 00c0: @redhat.com> 3.6.14-1.Dan Walsh <dwalsh@redhat.com> 3.6.13-3.Dan
  769. 0100: Walsh <dwalsh@redhat.com> 3.6.13-2.Dan Walsh <dwalsh@redhat.com
  770. 0140: > 3.6.13-1.Dan Walsh <dwalsh@redhat.com> 3.6.12-39.Dan Walsh <dw
  771. 0180: alsh@redhat.com> 3.6.12-38.Dan Walsh <dwalsh@redhat.com> 3.6.12-
  772. 01c0: 37.Dan Walsh <dwalsh@redhat.com> 3.6.12-36.Dan Walsh <dwalsh@red
  773. 0200: hat.com> 3.6.12-35.Dan Walsh <dwalsh@redhat.com> 3.6.12-34.Dan W
  774. 0240: alsh <dwalsh@redhat.com> 3.6.12-33.Dan Walsh <dwalsh@redhat.com>
  775. 0280: 3.6.12-31.Dan Walsh <dwalsh@redhat.com> 3.6.12-30.Dan Walsh <dw
  776. 02c0: alsh@redhat.com> 3.6.12-29.Dan Walsh <dwalsh@redhat.com> 3.6.12-
  777. 0300: 28.Dan Walsh <dwalsh@redhat.com> 3.6.12-27.Dan Walsh <dwalsh@red
  778. 0340: hat.com> 3.6.12-26.Dan Walsh <dwalsh@redhat.com> 3.6.12-25.Dan W
  779. 0380: alsh <dwalsh@redhat.com> 3.6.12-24.Dan Walsh <dwalsh@redhat.com>
  780. 03c0: 3.6.12-23.Dan Walsh <dwalsh@redhat.com> 3.6.12-22.Dan Walsh <dw
  781. 0400: alsh@redhat.com> 3.6.12-21.Dan Walsh <dwalsh@redhat.com> 3.6.12-
  782. 0440: 20.Dan Walsh <dwalsh@redhat.com> 3.6.12-19.Dan Walsh <dwalsh@red
  783. 0480: hat.com> 3.6.12-16.Dan Walsh <dwalsh@redhat.com> 3.6.12-15.Dan W
  784. 04c0: alsh <dwalsh@redhat.com> 3.6.12-14.Dan Walsh <dwalsh@redhat.com>
  785. 0500: 3.6.12-13.Dan Walsh <dwalsh@redhat.com> 3.6.12-12.Dan Walsh <dw
  786. 0540: alsh@redhat.com> 3.6.12-11.Dan Walsh <dwalsh@redhat.com> 3.6.12-
  787. 0580: 10.Dan Walsh <dwalsh@redhat.com> 3.6.12-9.Dan Walsh <dwalsh@redh
  788. 05c0: at.com> 3.6.12-8.Dan Walsh <dwalsh@redhat.com> 3.6.12-7.Dan Wals
  789. 0600: h <dwalsh@redhat.com> 3.6.12-6.Dan Walsh <dwalsh@redhat.com> 3.6
  790. 0640: .12-5.Dan Walsh <dwalsh@redhat.com> 3.6.12-4.Dan Walsh <dwalsh@r
  791. 0680: edhat.com> 3.6.12-3.Dan Walsh <dwalsh@redhat.com> 3.6.12-2.Dan W
  792. 06c0: alsh <dwalsh@redhat.com> 3.6.12-1.Dan Walsh <dwalsh@redhat.com>
  793. 0700: 3.6.11-1.Dan Walsh <dwalsh@redhat.com> 3.6.10-9.Dan Walsh <dwals
  794. 0740: h@redhat.com> 3.6.10-8.Dan Walsh <dwalsh@redhat.com> 3.6.10-7.Da
  795. 0780: n Walsh <dwalsh@redhat.com> 3.6.10-6.Dan Walsh <dwalsh@redhat.co
  796. 07c0: m> 3.6.10-5.Dan Walsh <dwalsh@redhat.com> 3.6.10-4.Dan Walsh <dw
  797. 0800: alsh@redhat.com> 3.6.10-3.Dan Walsh <dwalsh@redhat.com> 3.6.10-2
  798. 0840: .Dan Walsh <dwalsh@redhat.com> 3.6.10-1.Dan Walsh <dwalsh@redhat
  799. 0880: .com> 3.6.9-4.Dan Walsh <dwalsh@redhat.com> 3.6.9-3.Dan Walsh <d
  800. 08c0: walsh@redhat.com> 3.6.9-2.Dan Walsh <dwalsh@redhat.com> 3.6.9-1.
  801. 0900: Dan Walsh <dwalsh@redhat.com> 3.6.8-4.Dan Walsh <dwalsh@redhat.c
  802. 0940: om> 3.6.8-3.Dan Walsh <dwalsh@redhat.com> 3.6.8-2.Dan Walsh <dwa
  803. 0980: lsh@redhat.com> 3.6.8-1.Dan Walsh <dwalsh@redhat.com> 3.6.7-2.Da
  804. 09c0: n Walsh <dwalsh@redhat.com> 3.6.7-1.Dan Walsh <dwalsh@redhat.com
  805. 0a00: > 3.6.6-9.Dan Walsh <dwalsh@redhat.com> 3.6.6-8.Fedora Release E
  806. 0a40: ngineering <rel-eng@lists.fedoraproject.org> - 3.6.6-7.Dan Walsh
  807. 0a80: <dwalsh@redhat.com> 3.6.6-6.Dan Walsh <dwalsh@redhat.com> 3.6.6
  808. 0ac0: -5.Dan Walsh <dwalsh@redhat.com> 3.6.6-4.Dan Walsh <dwalsh@redha
  809. 0b00: t.com> 3.6.6-3.Dan Walsh <dwalsh@redhat.com> 3.6.6-2.Dan Walsh <
  810. 0b40: dwalsh@redhat.co
  811. 13:00:16.796791 <= Recv data, 1448 bytes (0x5a8)
  812. 0000: m> 3.6.6-1.Dan Walsh <dwalsh@redhat.com> 3.6.5-3.Dan Walsh <dwal
  813. 0040: sh@redhat.com> 3.6.5-1.Dan Walsh <dwalsh@redhat.com> 3.6.4-6.Dan
  814. 0080: Walsh <dwalsh@redhat.com> 3.6.4-5.Dan Walsh <dwalsh@redhat.com>
  815. 00c0: 3.6.4-4.Dan Walsh <dwalsh@redhat.com> 3.6.4-3.Dan Walsh <dwalsh
  816. 0100: @redhat.com> 3.6.4-2.Dan Walsh <dwalsh@redhat.com> 3.6.4-1.Dan W
  817. 0140: alsh <dwalsh@redhat.com> 3.6.3-13.Dan Walsh <dwalsh@redhat.com>
  818. 0180: 3.6.3-12.Dan Walsh <dwalsh@redhat.com> 3.6.3-11.Dan Walsh <dwals
  819. 01c0: h@redhat.com> 3.6.3-10.Dan Walsh <dwalsh@redhat.com> 3.6.3-9.Dan
  820. 0200: Walsh <dwalsh@redhat.com> 3.6.3-8.Dan Walsh <dwalsh@redhat.com>
  821. 0240: 3.6.3-7.Dan Walsh <dwalsh@redhat.com> 3.6.3-6.Dan Walsh <dwalsh
  822. 0280: @redhat.com> 3.6.3-3.Dan Walsh <dwalsh@redhat.com> 3.6.3-2.Dan W
  823. 02c0: alsh <dwalsh@redhat.com> 3.6.3-1.Dan Walsh <dwalsh@redhat.com> 3
  824. 0300: .6.2-5.Dan Walsh <dwalsh@redhat.com> 3.6.2-4.Dan Walsh <dwalsh@r
  825. 0340: edhat.com> 3.6.2-3.Dan Walsh <dwalsh@redhat.com> 3.6.2-2.Dan Wal
  826. 0380: sh <dwalsh@redhat.com> 3.6.2-1.Dan Walsh <dwalsh@redhat.com> 3.6
  827. 03c0: .1-15.Dan Walsh <dwalsh@redhat.com> 3.6.1-14.Dan Walsh <dwalsh@r
  828. 0400: edhat.com> 3.6.1-13.Dan Walsh <dwalsh@redhat.com> 3.6.1-12.Dan W
  829. 0440: alsh <dwalsh@redhat.com> 3.6.1-11.Dan Walsh <dwalsh@redhat.com>
  830. 0480: 3.6.1-10.Dan Walsh <dwalsh@redhat.com> 3.6.1-9.Dan Walsh <dwalsh
  831. 04c0: @redhat.com> 3.6.1-8.Dan Walsh <dwalsh@redhat.com> 3.6.1-7.Dan W
  832. 0500: alsh <dwalsh@redhat.com> 3.6.1-4.Ignacio Vazquez-Abrams <ivazque
  833. 0540: znet+rpm@gmail.com> - 3.6.1-2.Dan Walsh <dwalsh@redhat.com> 3.5.
  834. 0580: 13-19.Dan Walsh <dwalsh@redhat.com> 3.5.
  835. 13:00:16.797536 <= Recv data, 4344 bytes (0x10f8)
  836. 0000: 13-18.Dan Walsh <dwalsh@redhat.com> 3.5.13-17.Dan Walsh <dwalsh@
  837. 0040: redhat.com> 3.5.13-16.Dan Walsh <dwalsh@redhat.com> 3.5.13-15.Da
  838. 0080: n Walsh <dwalsh@redhat.com> 3.5.13-14.Dan Walsh <dwalsh@redhat.c
  839. 00c0: om> 3.5.13-13.Dan Walsh <dwalsh@redhat.com> 3.5.13-12.Dan Walsh
  840. 0100: <dwalsh@redhat.com> 3.5.13-11.Dan Walsh <dwalsh@redhat.com> 3.5.
  841. 0140: 13-9.Dan Walsh <dwalsh@redhat.com> 3.5.13-8.Dan Walsh <dwalsh@re
  842. 0180: dhat.com> 3.5.13-7.Dan Walsh <dwalsh@redhat.com> 3.5.13-6.Dan Wa
  843. 01c0: lsh <dwalsh@redhat.com> 3.5.13-5.Dan Walsh <dwalsh@redhat.com> 3
  844. 0200: .5.13-4.Dan Walsh <dwalsh@redhat.com> 3.5.13-3.Dan Walsh <dwalsh
  845. 0240: @redhat.com> 3.5.13-2.Dan Walsh <dwalsh@redhat.com> 3.5.13-1.Dan
  846. 0280: Walsh <dwalsh@redhat.com> 3.5.12-3.Dan Walsh <dwalsh@redhat.com
  847. 02c0: > 3.5.12-2.Dan Walsh <dwalsh@redhat.com> 3.5.12-1.Dan Walsh <dwa
  848. 0300: lsh@redhat.com> 3.5.11-1.Dan Walsh <dwalsh@redhat.com> 3.5.10-3.
  849. 0340: Dan Walsh <dwalsh@redhat.com> 3.5.10-2.Dan Walsh <dwalsh@redhat.
  850. 0380: com> 3.5.10-1.Dan Walsh <dwalsh@redhat.com> 3.5.9-4.Dan Walsh <d
  851. 03c0: walsh@redhat.com> 3.5.9-3.Dan Walsh <dwalsh@redhat.com> 3.5.9-2.
  852. 0400: Dan Walsh <dwalsh@redhat.com> 3.5.9-1.Dan Walsh <dwalsh@redhat.c
  853. 0440: om> 3.5.8-7.Dan Walsh <dwalsh@redhat.com> 3.5.8-6.Dan Walsh <dwa
  854. 0480: lsh@redhat.com> 3.5.8-5.Dan Walsh <dwalsh@redhat.com> 3.5.8-4.Da
  855. 04c0: n Walsh <dwalsh@redhat.com> 3.5.8-3.Dan Walsh <dwalsh@redhat.com
  856. 0500: > 3.5.8-1.Dan Walsh <dwalsh@redhat.com> 3.5.7-2.Dan Walsh <dwals
  857. 0540: h@redhat.com> 3.5.7-1.Dan Walsh <dwalsh@redhat.com> 3.5.6-2.Dan
  858. 0580: Walsh <dwalsh@redhat.com> 3.5.6-1.Dan Walsh <dwalsh@redhat.com>
  859. 05c0: 3.5.5-4.Dan Walsh <dwalsh@redhat.com> 3.5.5-3.Dan Walsh <dwalsh@
  860. 0600: redhat.com> 3.5.5-2.Dan Walsh <dwalsh@redhat.com> 3.5.4-2.Dan Wa
  861. 0640: lsh <dwalsh@redhat.com> 3.5.4-1.Dan Walsh <dwalsh@redhat.com> 3.
  862. 0680: 5.3-1.Dan Walsh <dwalsh@redhat.com> 3.5.2-2.Dan Walsh <dwalsh@re
  863. 06c0: dhat.com> 3.5.1-5.Dan Walsh <dwalsh@redhat.com> 3.5.1-4.Dan Wals
  864. 0700: h <dwalsh@redhat.com> 3.5.1-3.Dan Walsh <dwalsh@redhat.com> 3.5.
  865. 0740: 1-2.Dan Walsh <dwalsh@redhat.com> 3.5.1-1.Dan Walsh <dwalsh@redh
  866. 0780: at.com> 3.5.0-1.Dan Walsh <dwalsh@redhat.com> 3.4.2-14.Dan Walsh
  867. 07c0: <dwalsh@redhat.com> 3.4.2-13.Dan Walsh <dwalsh@redhat.com> 3.4.
  868. 0800: 2-12.Dan Walsh <dwalsh@redhat.com> 3.4.2-11.Dan Walsh <dwalsh@re
  869. 0840: dhat.com> 3.4.2-10.Dan Walsh <dwalsh@redhat.com> 3.4.2-9.Dan Wal
  870. 0880: sh <dwalsh@redhat.com> 3.4.2-8.Dan Walsh <dwalsh@redhat.com> 3.4
  871. 08c0: .2-7.Dan Walsh <dwalsh@redhat.com> 3.4.2-6.Dan Walsh <dwalsh@red
  872. 0900: hat.com> 3.4.2-5.Dan Walsh <dwalsh@redhat.com> 3.4.2-4.Dan Walsh
  873. 0940: <dwalsh@redhat.com> 3.4.2-3.Dan Walsh <dwalsh@redhat.com> 3.4.2
  874. 0980: -2.Dan Walsh <dwalsh@redhat.com> 3.4.2-1.Dan Walsh <dwalsh@redha
  875. 09c0: t.com> 3.4.1-5.Dan Walsh <dwalsh@redhat.com> 3.4.1-3.Dan Walsh <
  876. 0a00: dwalsh@redhat.com> 3.4.1-2.Dan Walsh <dwalsh@redhat.com> 3.4.1-1
  877. 0a40: .Dan Walsh <dwalsh@redhat.com> 3.3.1-48.Dan Walsh <dwalsh@redhat
  878. 0a80: .com> 3.3.1-47.Dan Walsh <dwalsh@redhat.com> 3.3.1-46.Dan Walsh
  879. 0ac0: <dwalsh@redhat.com> 3.3.1-45.Dan Walsh <dwalsh@redhat.com> 3.3.1
  880. 0b00: -44.Dan Walsh <dwalsh@redhat.com> 3.3.1-43.Dan Walsh <dwalsh@red
  881. 0b40: hat.com> 3.3.1-42.Dan Walsh <dwalsh@redhat.com> 3.3.1-41.Dan Wal
  882. 0b80: sh <dwalsh@redhat.com> 3.3.1-39.Dan Walsh <dwalsh@redhat.com> 3.
  883. 0bc0: 3.1-37.Dan Walsh <dwalsh@redhat.com> 3.3.1-36.Dan Walsh <dwalsh@
  884. 0c00: redhat.com> 3.3.1-33.Dan Walsh <dwalsh@redhat.com> 3.3.1-32.Dan
  885. 0c40: Walsh <dwalsh@redhat.com> 3.3.1-31.Dan Walsh <dwalsh@redhat.com>
  886. 0c80: 3.3.1-30.Dan Walsh <dwalsh@redhat.com> 3.3.1-29.Dan Walsh <dwal
  887. 0cc0: sh@redhat.com> 3.3.1-28.Dan Walsh <dwalsh@redhat.com> 3.3.1-27.D
  888. 0d00: an Walsh <dwalsh@redhat.com> 3.3.1-26.Dan Walsh <dwalsh@redhat.c
  889. 0d40: om> 3.3.1-25.Dan Walsh <dwalsh@redhat.com> 3.3.1-24.Dan Walsh <d
  890. 0d80: walsh@redhat.com> 3.3.1-23.Dan Walsh <dwalsh@redhat.com> 3.3.1-2
  891. 0dc0: 2.Dan Walsh <dwalsh@redhat.com> 3.3.1-21.Dan Walsh <dwalsh@redha
  892. 0e00: t.com> 3.3.1-20.Dan Walsh <dwalsh@redhat.com> 3.3.1-19.Dan Walsh
  893. 0e40: <dwalsh@redhat.com> 3.3.1-18.Dan Walsh <dwalsh@redhat.com> 3.3.
  894. 0e80: 1-17.Dan Walsh <dwalsh@redhat.com> 3.3.1-16.Dan Walsh <dwalsh@re
  895. 0ec0: dhat.com> 3.3.1-15.Bill Nottingham <notting@redhat.com> 3.3.1-14
  896. 0f00: .Dan Walsh <dwalsh@redhat.com> 3.3.1-13.Dan Walsh <dwalsh@redhat
  897. 0f40: .com> 3.3.1-12.Dan Walsh <dwalsh@redhat.com> 3.3.1-11.Dan Walsh
  898. 0f80: <dwalsh@redhat.com> 3.3.1-10.Dan Walsh <dwalsh@redhat.com> 3.3.1
  899. 0fc0: -9.Dan Walsh <dwalsh@redhat.com> 3.3.1-8.Dan Walsh <dwalsh@redha
  900. 1000: t.com> 3.3.1-6.Dan Walsh <dwalsh@redhat.com> 3.3.1-5.Dan Walsh <
  901. 1040: dwalsh@redhat.com> 3.3.1-4.Dan Walsh <dwalsh@redhat.com> 3.3.1-2
  902. 1080: .Dan Walsh <dwalsh@redhat.com> 3.3.1-1.Dan Walsh <dwalsh@redhat.
  903. 10c0: com> 3.3.0-2.Dan Walsh <dwalsh@redhat.com> 3.3.0-1.Dan W
  904. 13:00:16.799226 <= Recv data, 10136 bytes (0x2798)
  905. 0000: alsh <dwalsh@redhat.com> 3.2.9-2.Dan Walsh <dwalsh@redhat.com> 3
  906. 0040: .2.9-1.Dan Walsh <dwalsh@redhat.com> 3.2.8-2.Dan Walsh <dwalsh@r
  907. 0080: edhat.com> 3.2.8-1.Dan Walsh <dwalsh@redhat.com> 3.2.7-6.Dan Wal
  908. 00c0: sh <dwalsh@redhat.com> 3.2.7-5.Dan Walsh <dwalsh@redhat.com> 3.2
  909. 0100: .7-3.Dan Walsh <dwalsh@redhat.com> 3.2.7-2.Dan Walsh <dwalsh@red
  910. 0140: hat.com> 3.2.7-1.Dan Walsh <dwalsh@redhat.com> 3.2.6-7.Dan Walsh
  911. 0180: <dwalsh@redhat.com> 3.2.6-6.Dan Walsh <dwalsh@redhat.com> 3.2.6
  912. 01c0: -5.Dan Walsh <dwalsh@redhat.com> 3.2.6-4.Dan Walsh <dwalsh@redha
  913. 0200: t.com> 3.2.6-3.Dan Walsh <dwalsh@redhat.com> 3.2.6-2.Dan Walsh <
  914. 0240: dwalsh@redhat.com> 3.2.6-1.Dan Walsh <dwalsh@redhat.com> 3.2.5-2
  915. 0280: 5.Dan Walsh <dwalsh@redhat.com> 3.2.5-24.Dan Walsh <dwalsh@redha
  916. 02c0: t.com> 3.2.5-22.Dan Walsh <dwalsh@redhat.com> 3.2.5-21.Dan Walsh
  917. 0300: <dwalsh@redhat.com> 3.2.5-20.Dan Walsh <dwalsh@redhat.com> 3.2.
  918. 0340: 5-19.Dan Walsh <dwalsh@redhat.com> 3.2.5-18.Dan Walsh <dwalsh@re
  919. 0380: dhat.com> 3.2.5-17.Dan Walsh <dwalsh@redhat.com> 3.2.5-16.Dan Wa
  920. 03c0: lsh <dwalsh@redhat.com> 3.2.5-15.Dan Walsh <dwalsh@redhat.com> 3
  921. 0400: .2.5-14.Dan Walsh <dwalsh@redhat.com> 3.2.5-13.Dan Walsh <dwalsh
  922. 0440: @redhat.com> 3.2.5-12.Dan Walsh <dwalsh@redhat.com> 3.2.5-11.Dan
  923. 0480: Walsh <dwalsh@redhat.com> 3.2.5-10.Dan Walsh <dwalsh@redhat.com
  924. 04c0: > 3.2.5-9.Dan Walsh <dwalsh@redhat.com> 3.2.5-8.Dan Walsh <dwals
  925. 0500: h@redhat.com> 3.2.5-7.Dan Walsh <dwalsh@redhat.com> 3.2.5-6.Dan
  926. 0540: Walsh <dwalsh@redhat.com> 3.2.5-5.Dan Walsh <dwalsh@redhat.com>
  927. 0580: 3.2.5-4.Dan Walsh <dwalsh@redhat.com> 3.2.5-3.Dan Walsh <dwalsh@
  928. 05c0: redhat.com> 3.2.5-2.Dan Walsh <dwalsh@redhat.com> 3.2.5-1.Dan Wa
  929. 0600: lsh <dwalsh@redhat.com> 3.2.4-5.Dan Walsh <dwalsh@redhat.com> 3.
  930. 0640: 2.4-4.Dan Walsh <dwalsh@redhat.com> 3.2.4-3.Dan Walsh <dwalsh@re
  931. 0680: dhat.com> 3.2.4-1.Dan Walsh <dwalsh@redhat.com> 3.2.4-1.Dan Wals
  932. 06c0: h <dwalsh@redhat.com> 3.2.3-2.Dan Walsh <dwalsh@redhat.com> 3.2.
  933. 0700: 3-1.Dan Walsh <dwalsh@redhat.com> 3.2.2-1.Dan Walsh <dwalsh@redh
  934. 0740: at.com> 3.2.1-3.Dan Walsh <dwalsh@redhat.com> 3.2.1-1.Dan Walsh
  935. 0780: <dwalsh@redhat.com> 3.1.2-2.Dan Walsh <dwalhh@redhat.com> 3.1.2-
  936. 07c0: 1.Dan Walsh <dwalsh@redhat.com> 3.1.1-1.Dan Walsh <dwalsh@redhat
  937. 0800: .com> 3.1.0-1.Dan Walsh <dwalsh@redhat.com> 3.0.8-30.Dan Walsh <
  938. 0840: dwalsh@redhat.com> 3.0.8-28.Dan Walsh <dwalsh@redhat.com> 3.0.8-
  939. 0880: 27.Dan Walsh <dwalsh@redhat.com> 3.0.8-26.Dan Walsh <dwalsh@redh
  940. 08c0: at.com> 3.0.8-25.Dan Walsh <dwalsh@redhat.com> 3.0.8-24.Dan Wals
  941. 0900: h <dwalsh@redhat.com> 3.0.8-23.Dan Walsh <dwalsh@redhat.com> 3.0
  942. 0940: .8-22.Dan Walsh <dwalsh@redhat.com> 3.0.8-21.Dan Walsh <dwalsh@r
  943. 0980: edhat.com> 3.0.8-20.Dan Walsh <dwalsh@redhat.com> 3.0.8-19.Dan W
  944. 09c0: alsh <dwalsh@redhat.com> 3.0.8-18.Dan Walsh <dwalsh@redhat.com>
  945. 0a00: 3.0.8-17.Dan Walsh <dwalsh@redhat.com> 3.0.8-16.Dan Walsh <dwals
  946. 0a40: h@redhat.com> 3.0.8-15.Dan Walsh <dwalsh@redhat.com> 3.0.8-14.Da
  947. 0a80: n Walsh <dwalsh@redhat.com> 3.0.8-13.Dan Walsh <dwalsh@redhat.co
  948. 0ac0: m> 3.0.8-12.Dan Walsh <dwalsh@redhat.com> 3.0.8-11.Dan Walsh <dw
  949. 0b00: alsh@redhat.com> 3.0.8-10.Dan Walsh <dwalsh@redhat.com> 3.0.8-9.
  950. 0b40: Dan Walsh <dwalsh@redhat.com> 3.0.8-8.Dan Walsh <dwalsh@redhat.c
  951. 0b80: om> 3.0.8-7.Dan Walsh <dwalsh@redhat.com> 3.0.8-5.Dan Walsh <dwa
  952. 0bc0: lsh@redhat.com> 3.0.8-4.Dan Walsh <dwalsh@redhat.com> 3.0.8-3.Da
  953. 0c00: n Walsh <dwalsh@redhat.com> 3.0.8-2.Dan Walsh <dwalsh@redhat.com
  954. 0c40: > 3.0.8-1.Dan Walsh <dwalsh@redhat.com> 3.0.7-10.Dan Walsh <dwal
  955. 0c80: sh@redhat.com> 3.0.7-9.Dan Walsh <dwalsh@redhat.com> 3.0.7-8.Dan
  956. 0cc0: Walsh <dwalsh@redhat.com> 3.0.7-7.Dan Walsh <dwalsh@redhat.com>
  957. 0d00: 3.0.7-6.Dan Walsh <dwalsh@redhat.com> 3.0.7-5.Dan Walsh <dwalsh
  958. 0d40: @redhat.com> 3.0.7-4.Dan Walsh <dwalsh@redhat.com> 3.0.7-3.Dan W
  959. 0d80: alsh <dwalsh@redhat.com> 3.0.7-2.Dan Walsh <dwalsh@redhat.com> 3
  960. 0dc0: .0.7-1.Dan Walsh <dwalsh@redhat.com> 3.0.6-3.Dan Walsh <dwalsh@r
  961. 0e00: edhat.com> 3.0.6-2.Dan Walsh <dwalsh@redhat.com> 3.0.6-1.Dan Wal
  962. 0e40: sh <dwalsh@redhat.com> 3.0.5-11.Dan Walsh <dwalsh@redhat.com> 3.
  963. 0e80: 0.5-10.Dan Walsh <dwalsh@redhat.com> 3.0.5-9.Dan Walsh <dwalsh@r
  964. 0ec0: edhat.com> 3.0.5-8.Dan Walsh <dwalsh@redhat.com> 3.0.5-7.Dan Wal
  965. 0f00: sh <dwalsh@redhat.com> 3.0.5-6.Dan Walsh <dwalsh@redhat.com> 3.0
  966. 0f40: .5-5.Dan Walsh <dwalsh@redhat.com> 3.0.5-4.Dan Walsh <dwalsh@red
  967. 0f80: hat.com> 3.0.5-3.Dan Walsh <dwalsh@redhat.com> 3.0.5-2.Dan Walsh
  968. 0fc0: <dwalsh@redhat.com> 3.0.5-1.Dan Walsh <dwalsh@redhat.com> 3.0.4
  969. 1000: -6.Dan Walsh <dwalsh@redhat.com> 3.0.4-5.Dan Walsh <dwalsh@redha
  970. 1040: t.com> 3.0.4-4.Dan Walsh <dwalsh@redhat.com> 3.0.4-3.Dan Walsh <
  971. 1080: dwalsh@redhat.com> 3.0.4-2.Dan Walsh <dwalsh@redhat.com> 3.0.4-1
  972. 10c0: .Dan Walsh <dwalsh@redhat.com> 3.0.3-6.Dan Walsh <dwalsh@redhat.
  973. 1100: com> 3.0.3-5.Dan Walsh <dwalsh@redhat.com> 3.0.3-4.Dan Walsh <dw
  974. 1140: alsh@redhat.com> 3.0.3-3.Dan Walsh <dwalsh@redhat.com> 3.0.3-2.D
  975. 1180: an Walsh <dwalsh@redhat.com> 3.0.3-1.Dan Walsh <dwalsh@redhat.co
  976. 11c0: m> 3.0.2-9.Dan Walsh <dwalsh@redhat.com> 3.0.2-8.Dan Walsh <dwal
  977. 1200: sh@redhat.com> 3.0.2-7.Dan Walsh <dwalsh@redhat.com> 3.0.2-5.Dan
  978. 1240: Walsh <dwalsh@redhat.com> 3.0.2-4.Dan Walsh <dwalsh@redhat.com>
  979. 1280: 3.0.2-3.Dan Walsh <dwalsh@redhat.com> 3.0.2-2.Dan Walsh <dwalsh
  980. 12c0: @redhat.com> 3.0.1-5.Dan Walsh <dwalsh@redhat.com> 3.0.1-4.Dan W
  981. 1300: alsh <dwalsh@redhat.com> 3.0.1-3.Dan Walsh <dwalsh@redhat.com> 3
  982. 1340: .0.1-2.Dan Walsh <dwalsh@redhat.com> 3.0.1-1.Dan Walsh <dwalsh@r
  983. 1380: edhat.com> 2.6.5-3.Dan Walsh <dwalsh@redhat.com> 2.6.5-2.Dan Wal
  984. 13c0: sh <dwalsh@redhat.com> 2.6.4-7.Dan Walsh <dwalsh@redhat.com> 2.6
  985. 1400: .4-6.Dan Walsh <dwalsh@redhat.com> 2.6.4-5.Dan Walsh <dwalsh@red
  986. 1440: hat.com> 2.6.4-2.Dan Walsh <dwalsh@redhat.com> 2.6.4-1.Dan Walsh
  987. 1480: <dwalsh@redhat.com> 2.6.3-1.Dan Walsh <dwalsh@redhat.com> 2.6.2
  988. 14c0: -1.Dan Walsh <dwalsh@redhat.com> 2.6.1-4.Dan Walsh <dwalsh@redha
  989. 1500: t.com> 2.6.1-2.Dan Walsh <dwalsh@redhat.com> 2.6.1-1.Dan Walsh <
  990. 1540: dwalsh@redhat.com> 2.5.12-12.Dan Walsh <dwalsh@redhat.com> 2.5.1
  991. 1580: 2-11.Dan Walsh <dwalsh@redhat.com> 2.5.12-10.Dan Walsh <dwalsh@r
  992. 15c0: edhat.com> 2.5.12-8.Dan Walsh <dwalsh@redhat.com> 2.5.12-5.Dan W
  993. 1600: alsh <dwalsh@redhat.com> 2.5.12-4.Dan Walsh <dwalsh@redhat.com>
  994. 1640: 2.5.12-3.Dan Walsh <dwalsh@redhat.com> 2.5.12-2.Dan Walsh <dwals
  995. 1680: h@redhat.com> 2.5.12-1.Dan Walsh <dwalsh@redhat.com> 2.5.11-8.Da
  996. 16c0: n Walsh <dwalsh@redhat.com> 2.5.11-7.Dan Walsh <dwalsh@redhat.co
  997. 1700: m> 2.5.11-6.Dan Walsh <dwalsh@redhat.com> 2.5.11-5.Dan Walsh <dw
  998. 1740: alsh@redhat.com> 2.5.11-4.Dan Walsh <dwalsh@redhat.com> 2.5.11-3
  999. 1780: .Dan Walsh <dwalsh@redhat.com> 2.5.11-2.Dan Walsh <dwalsh@redhat
  1000. 17c0: .com> 2.5.11-1.Dan Walsh <dwalsh@redhat.com> 2.5.10-2.Dan Walsh
  1001. 1800: <dwalsh@redhat.com> 2.5.10-1.Dan Walsh <dwalsh@redhat.com> 2.5.9
  1002. 1840: -6.Dan Walsh <dwalsh@redhat.com> 2.5.9-5.Dan Walsh <dwalsh@redha
  1003. 1880: t.com> 2.5.9-4.Dan Walsh <dwalsh@redhat.com> 2.5.9-3.Dan Walsh <
  1004. 18c0: dwalsh@redhat.com> 2.5.9-2.Dan Walsh <dwalsh@redhat.com> 2.5.8-8
  1005. 1900: .Dan Walsh <dwalsh@redhat.com> 2.5.8-7.Dan Walsh <dwalsh@redhat.
  1006. 1940: com> 2.5.8-6.Dan Walsh <dwalsh@redhat.com> 2.5.8-5.Dan Walsh <dw
  1007. 1980: alsh@redhat.com> 2.5.8-4.Dan Walsh <dwalsh@redhat.com> 2.5.8-3.D
  1008. 19c0: an Walsh <dwalsh@redhat.com> 2.5.8-2.Dan Walsh <dwalsh@redhat.co
  1009. 1a00: m> 2.5.8-1.Dan Walsh <dwalsh@redhat.com> 2.5.7-1.Dan Walsh <dwal
  1010. 1a40: sh@redhat.com> 2.5.6-1.Dan Walsh <dwalsh@redhat.com> 2.5.5-2.Dan
  1011. 1a80: Walsh <dwalsh@redhat.com> 2.5.5-1.Dan Walsh <dwalsh@redhat.com>
  1012. 1ac0: 2.5.4-2.Dan Walsh <dwalsh@redhat.com> 2.5.4-1.Dan Walsh <dwalsh
  1013. 1b00: @redhat.com> 2.5.3-3.Dan Walsh <dwalsh@redhat.com> 2.5.3-2.Dan W
  1014. 1b40: alsh <dwalsh@redhat.com> 2.5.3-1.Dan Walsh <dwalsh@redhat.com> 2
  1015. 1b80: .5.2-6.Dan Walsh <dwalsh@redhat.com> 2.5.2-5.Dan Walsh <dwalsh@r
  1016. 1bc0: edhat.com> 2.5.2-4.Dan Walsh <dwalsh@redhat.com> 2.5.2-3.Dan Wal
  1017. 1c00: sh <dwalsh@redhat.com> 2.5.2-2.Dan Walsh <dwalsh@redhat.com> 2.5
  1018. 1c40: .2-1.Dan Walsh <dwalsh@redhat.com> 2.5.1-5.Dan Walsh <dwalsh@red
  1019. 1c80: hat.com> 2.5.1-4.Dan Walsh <dwalsh@redhat.com> 2.5.1-2.Dan Walsh
  1020. 1cc0: <dwalsh@redhat.com> 2.5.1-1.Dan Walsh <dwalsh@redhat.com> 2.4.6
  1021. 1d00: -20.Dan Walsh <dwalsh@redhat.com> 2.4.6-19.Dan Walsh <dwalsh@red
  1022. 1d40: hat.com> 2.4.6-18.Dan Walsh <dwalsh@redhat.com> 2.4.6-17.Dan Wal
  1023. 1d80: sh <dwalsh@redhat.com> 2.4.6-16.Dan Walsh <dwalsh@redhat.com> 2.
  1024. 1dc0: 4.6-15.Dan Walsh <dwalsh@redhat.com> 2.4.6-14.Dan Walsh <dwalsh@
  1025. 1e00: redhat.com> 2.4.6-13.Dan Walsh <dwalsh@redhat.com> 2.4.6-12.Dan
  1026. 1e40: Walsh <dwalsh@redhat.com> 2.4.6-11.Dan Walsh <dwalsh@redhat.com>
  1027. 1e80: 2.4.6-10.Dan Walsh <dwalsh@redhat.com> 2.4.6-9.Dan Walsh <dwals
  1028. 1ec0: h@redhat.com> 2.4.6-8.Dan Walsh <dwalsh@redhat.com> 2.4.6-7.Dan
  1029. 1f00: Walsh <dwalsh@redhat.com> 2.4.6-6.Dan Walsh <dwalsh@redhat.com>
  1030. 1f40: 2.4.6-5.Dan Walsh <dwalsh@redhat.com> 2.4.6-4.Dan Walsh <dwalsh@
  1031. 1f80: redhat.com> 2.4.6-3.Dan Walsh <dwalsh@redhat.com> 2.4.6-1.Dan Wa
  1032. 1fc0: lsh <dwalsh@redhat.com> 2.4.5-4.Dan Walsh <dwalsh@redhat.com> 2.
  1033. 2000: 4.5-3.Dan Walsh <dwalsh@redhat.com> 2.4.5-2.Dan Walsh <dwalsh@re
  1034. 2040: dhat.com> 2.4.5-1.Dan Walsh <dwalsh@redhat.com> 2.4.4-2.Dan Wals
  1035. 2080: h <dwalsh@redhat.com> 2.4.4-2.Dan Walsh <dwalsh@redhat.com> 2.4.
  1036. 20c0: 4-1.Dan Walsh <dwalsh@redhat.com> 2.4.3-13.Dan Walsh <dwalsh@red
  1037. 2100: hat.com> 2.4.3-12.Dan Walsh <dwalsh@redhat.com> 2.4.3-11.Dan Wal
  1038. 2140: sh <dwalsh@redhat.com> 2.4.3-10.Dan Walsh <dwalsh@redhat.com> 2.
  1039. 2180: 4.3-9.Dan Walsh <dwalsh@redhat.com> 2.4.3-8.Dan Walsh <dwalsh@re
  1040. 21c0: dhat.com> 2.4.3-7.Dan Walsh <dwalsh@redhat.com> 2.4.3-6.Dan Wals
  1041. 2200: h <dwalsh@redhat.com> 2.4.3-5.Dan Walsh <dwalsh@redhat.com> 2.4.
  1042. 2240: 3-4.Dan Walsh <dwalsh@redhat.com> 2.4.3-3.Dan Walsh <dwalsh@redh
  1043. 2280: at.com> 2.4.3-2.Dan Walsh <dwalsh@redhat.com> 2.4.3-1.Dan Walsh
  1044. 22c0: <dwalsh@redhat.com> 2.4.2-8.Dan Walsh <dwalsh@redhat.com> 2.4.2-
  1045. 2300: 7.James Antill <james.antill@redhat.com> 2.4.2-6.Dan Walsh <dwal
  1046. 2340: sh@redhat.com> 2.4.2-5.Dan Walsh <dwalsh@redhat.com> 2.4.2-4.Dan
  1047. 2380: Walsh <dwalsh@redhat.com> 2.4.2-3.Dan Walsh <dwalsh@redhat.com>
  1048. 23c0: 2.4.2-2.Dan Walsh <dwalsh@redhat.com> 2.4.2-1.Dan Walsh <dwalsh
  1049. 2400: @redhat.com> 2.4.1-5.Dan Walsh <dwalsh@redhat.com> 2.4.1-4.Dan W
  1050. 2440: alsh <dwalsh@redhat.com> 2.4.1-3.Dan Walsh <dwalsh@redhat.com> 2
  1051. 2480: .4.1-2.Dan Walsh <dwalsh@redhat.com> 2.4-4.Dan Walsh <dwalsh@red
  1052. 24c0: hat.com> 2.4-3.Dan Walsh <dwalsh@redhat.com> 2.4-2.Dan Walsh <dw
  1053. 2500: alsh@redhat.com> 2.4-1.Dan Walsh <dwalsh@redhat.com> 2.3.19-4.Da
  1054. 2540: n Walsh <dwalsh@redhat.com> 2.3.19-3.Dan Walsh <dwalsh@redhat.co
  1055. 2580: m> 2.3.19-2.Dan Walsh <dwalsh@redhat.com> 2.3.19-1.James Antill
  1056. 25c0: <jantill@redhat.com> 2.3.18-10.James Antill <jantill@redhat.com>
  1057. 2600: 2.3.18-9.Dan Walsh <dwalsh@redhat.com> 2.3.18-8.Dan Walsh <dwal
  1058. 2640: sh@redhat.com> 2.3.18-7.Dan Walsh <dwalsh@redhat.com> 2.3.18-6.D
  1059. 2680: an Walsh <dwalsh@redhat.com> 2.3.18-5.Dan Walsh <dwalsh@redhat.c
  1060. 26c0: om> 2.3.18-4.Dan Walsh <dwalsh@redhat.com> 2.3.18-3.Dan Walsh <d
  1061. 2700: walsh@redhat.com> 2.3.18-2.Dan Walsh <dwalsh@redhat.com> 2.3.18-
  1062. 2740: 1.Dan Walsh <dwalsh@redhat.com> 2.3.17-2.Dan Walsh <dwalsh@redha
  1063. 2780: t.com> 2.3.17-1.Dan Wals
  1064. 13:00:16.803990 <= Recv data, 16384 bytes (0x4000)
  1065. 0000: h <dwalsh@redhat.com> 2.3.16-9.Dan Walsh <dwalsh@redhat.com> 2.3
  1066. 0040: .16-8.Dan Walsh <dwalsh@redhat.com> 2.3.16-7.Dan Walsh <dwalsh@r
  1067. 0080: edhat.com> 2.3.16-6.Dan Walsh <dwalsh@redhat.com> 2.3.16-5.Dan W
  1068. 00c0: alsh <dwalsh@redhat.com> 2.3.16-4.Dan Walsh <dwalsh@redhat.com>
  1069. 0100: 2.3.16-2.Dan Walsh <dwalsh@redhat.com> 2.3.16-1.Dan Walsh <dwals
  1070. 0140: h@redhat.com> 2.3.15-2.Dan Walsh <dwalsh@redhat.com> 2.3.15-1.Da
  1071. 0180: n Walsh <dwalsh@redhat.com> 2.3.14-8.Dan Walsh <dwalsh@redhat.co
  1072. 01c0: m> 2.3.14-7.Dan Walsh <dwalsh@redhat.com> 2.3.14-6.Dan Walsh <dw
  1073. 0200: alsh@redhat.com> 2.3.14-4.Dan Walsh <dwalsh@redhat.com> 2.3.14-3
  1074. 0240: .Dan Walsh <dwalsh@redhat.com> 2.3.14-2.Dan Walsh <dwalsh@redhat
  1075. 0280: .com> 2.3.14-1.Dan Walsh <dwalsh@redhat.com> 2.3.13-6.Dan Walsh
  1076. 02c0: <dwalsh@redhat.com> 2.3.13-5.Dan Walsh <dwalsh@redhat.com> 2.3.1
  1077. 0300: 3-4.Dan Walsh <dwalsh@redhat.com> 2.3.13-3.Dan Walsh <dwalsh@red
  1078. 0340: hat.com> 2.3.13-2.Dan Walsh <dwalsh@redhat.com> 2.3.13-1.Dan Wal
  1079. 0380: sh <dwalsh@redhat.com> 2.3.12-2.Dan Walsh <dwalsh@redhat.com> 2.
  1080. 03c0: 3.12-1.Dan Walsh <dwalsh@redhat.com> 2.3.11-1.Dan Walsh <dwalsh@
  1081. 0400: redhat.com> 2.3.10-7.Dan Walsh <dwalsh@redhat.com> 2.3.10-6.Dan
  1082. 0440: Walsh <dwalsh@redhat.com> 2.3.10-3.Dan Walsh <dwalsh@redhat.com>
  1083. 0480: 2.3.10-1.Dan Walsh <dwalsh@redhat.com> 2.3.9-6.Dan Walsh <dwals
  1084. 04c0: h@redhat.com> 2.3.9-5.Dan Walsh <dwalsh@redhat.com> 2.3.9-4.Dan
  1085. 0500: Walsh <dwalsh@redhat.com> 2.3.9-3.Dan Walsh <dwalsh@redhat.com>
  1086. 0540: 2.3.9-2.Dan Walsh <dwalsh@redhat.com> 2.3.9-1.Dan Walsh <dwalsh@
  1087. 0580: redhat.com> 2.3.8-2.Dan Walsh <dwalsh@redhat.com> 2.3.7-1.Dan Wa
  1088. 05c0: lsh <dwalsh@redhat.com> 2.3.6-4.Dan Walsh <dwalsh@redhat.com> 2.
  1089. 0600: 3.6-3.Dan Walsh <dwalsh@redhat.com> 2.3.6-2.Dan Walsh <dwalsh@re
  1090. 0640: dhat.com> 2.3.6-1.Dan Walsh <dwalsh@redhat.com> 2.3.5-1.Dan Wals
  1091. 0680: h <dwalsh@redhat.com> 2.3.4-1.Dan Walsh <dwalsh@redhat.com> 2.3.
  1092. 06c0: 3-20.Dan Walsh <dwalsh@redhat.com> 2.3.3-19.Dan Walsh <dwalsh@re
  1093. 0700: dhat.com> 2.3.3-18.Dan Walsh <dwalsh@redhat.com> 2.3.3-17.Dan Wa
  1094. 0740: lsh <dwalsh@redhat.com> 2.3.3-16.Dan Walsh <dwalsh@redhat.com> 2
  1095. 0780: .3.3-15.Dan Walsh <dwalsh@redhat.com> 2.3.3-14.Dan Walsh <dwalsh
  1096. 07c0: @redhat.com> 2.3.3-13.Dan Walsh <dwalsh@redhat.com> 2.3.3-12.Dan
  1097. 0800: Walsh <dwalsh@redhat.com> 2.3.3-11.Dan Walsh <dwalsh@redhat.com
  1098. 0840: > 2.3.3-10.Dan Walsh <dwalsh@redhat.com> 2.3.3-9.Dan Walsh <dwal
  1099. 0880: sh@redhat.com> 2.3.3-8.Dan Walsh <dwalsh@redhat.com> 2.3.3-7.Dan
  1100. 08c0: Walsh <dwalsh@redhat.com> 2.3.3-6.Dan Walsh <dwalsh@redhat.com>
  1101. 0900: 2.3.3-5.Dan Walsh <dwalsh@redhat.com> 2.3.3-4.Dan Walsh <dwalsh
  1102. 0940: @redhat.com> 2.3.3-3.Dan Walsh <dwalsh@redhat.com> 2.3.3-2.Dan W
  1103. 0980: alsh <dwalsh@redhat.com> 2.3.3-1.Dan Walsh <dwalsh@redhat.com> 2
  1104. 09c0: .3.2-4.Dan Walsh <dwalsh@redhat.com> 2.3.2-3.Dan Walsh <dwalsh@r
  1105. 0a00: edhat.com> 2.3.2-2.Dan Walsh <dwalsh@redhat.com> 2.3.2-1.Dan Wal
  1106. 0a40: sh <dwalsh@redhat.com> 2.3.1-1.Dan Walsh <dwalsh@redhat.com> 2.2
  1107. 0a80: .49-1.Dan Walsh <dwalsh@redhat.com> 2.2.48-1.Dan Walsh <dwalsh@r
  1108. 0ac0: edhat.com> 2.2.47-5.Dan Walsh <dwalsh@redhat.com> 2.2.47-4.Dan W
  1109. 0b00: alsh <dwalsh@redhat.com> 2.2.47-3.Dan Walsh <dwalsh@redhat.com>
  1110. 0b40: 2.2.47-1.Dan Walsh <dwalsh@redhat.com> 2.2.46-2.Dan Walsh <dwals
  1111. 0b80: h@redhat.com> 2.2.46-1.Dan Walsh <dwalsh@redhat.com> 2.2.45-3.Da
  1112. 0bc0: n Walsh <dwalsh@redhat.com> 2.2.45-2.Dan Walsh <dwalsh@redhat.co
  1113. 0c00: m> 2.2.45-1.Dan Walsh <dwalsh@redhat.com> 2.2.44-1.Dan Walsh <dw
  1114. 0c40: alsh@redhat.com> 2.2.43-4.Dan Walsh <dwalsh@redhat.com> 2.2.43-3
  1115. 0c80: .Dan Walsh <dwalsh@redhat.com> 2.2.43-2.Dan Walsh <dwalsh@redhat
  1116. 0cc0: .com> 2.2.43-1.Dan Walsh <dwalsh@redhat.com> 2.2.42-4.Dan Walsh
  1117. 0d00: <dwalsh@redhat.com> 2.2.42-3.Dan Walsh <dwalsh@redhat.com> 2.2.4
  1118. 0d40: 2-2.Dan Walsh <dwalsh@redhat.com> 2.2.42-1.Dan Walsh <dwalsh@red
  1119. 0d80: hat.com> 2.2.41-1.Dan Walsh <dwalsh@redhat.com> 2.2.40-2.Dan Wal
  1120. 0dc0: sh <dwalsh@redhat.com> 2.2.40-1.Dan Walsh <dwalsh@redhat.com> 2.
  1121. 0e00: 2.39-2.Dan Walsh <dwalsh@redhat.com> 2.2.39-1.Dan Walsh <dwalsh@
  1122. 0e40: redhat.com> 2.2.38-6.Dan Walsh <dwalsh@redhat.com> 2.2.38-5.Dan
  1123. 0e80: Walsh <dwalsh@redhat.com> 2.2.38-4.Dan Walsh <dwalsh@redhat.com>
  1124. 0ec0: 2.2.38-3.Dan Walsh <dwalsh@redhat.com> 2.2.38-2.Dan Walsh <dwal
  1125. 0f00: sh@redhat.com> 2.2.38-1.Dan Walsh <dwalsh@redhat.com> 2.2.37-1.D
  1126. 0f40: an Walsh <dwalsh@redhat.com> 2.2.36-2.Dan Walsh <dwalsh@redhat.c
  1127. 0f80: om> 2.2.36-1.James Antill <jantill@redhat.com> 2.2.35-2.Dan Wals
  1128. 0fc0: h <dwalsh@redhat.com> 2.2.35-1.Dan Walsh <dwalsh@redhat.com> 2.2
  1129. 1000: .34-3.Dan Walsh <dwalsh@redhat.com> 2.2.34-2.Dan Walsh <dwalsh@r
  1130. 1040: edhat.com> 2.2.34-1.Dan Walsh <dwalsh@redhat.com> 2.2.33-1.Dan W
  1131. 1080: alsh <dwalsh@redhat.com> 2.2.32-2.Dan Walsh <dwalsh@redhat.com>
  1132. 10c0: 2.2.32-1.Dan Walsh <dwalsh@redhat.com> 2.2.31-1.Dan Walsh <dwals
  1133. 1100: h@redhat.com> 2.2.30-2.Dan Walsh <dwalsh@redhat.com> 2.2.30-1.Da
  1134. 1140: n Walsh <dwalsh@redhat.com> 2.2.29-6.Russell Coker <rcoker@redha
  1135. 1180: t.com> 2.2.29-5.Dan Walsh <dwalsh@redhat.com> 2.2.29-4.Dan Walsh
  1136. 11c0: <dwalsh@redhat.com> 2.2.29-3.Dan Walsh <dwalsh@redhat.com> 2.2.
  1137. 1200: 29-2.Dan Walsh <dwalsh@redhat.com> 2.2.29-1.Dan Walsh <dwalsh@re
  1138. 1240: dhat.com> 2.2.28-3.Dan Walsh <dwalsh@redhat.com> 2.2.28-2.Dan Wa
  1139. 1280: lsh <dwalsh@redhat.com> 2.2.28-1.Dan Walsh <dwalsh@redhat.com> 2
  1140. 12c0: .2.27-1.Dan Walsh <dwalsh@redhat.com> 2.2.25-3.Dan Walsh <dwalsh
  1141. 1300: @redhat.com> 2.2.25-2.Dan Walsh <dwalsh@redhat.com> 2.2.24-1.Dan
  1142. 1340: Walsh <dwalsh@redhat.com> 2.2.23-19.Dan Walsh <dwalsh@redhat.co
  1143. 1380: m> 2.2.23-18.Dan Walsh <dwalsh@redhat.com> 2.2.23-17.Karsten Hop
  1144. 13c0: p <karsten@redhat.de> 2.2.23-16.Dan Walsh <dwalsh@redhat.com> 2.
  1145. 1400: 2.23-15.Dan Walsh <dwalsh@redhat.com> 2.2.23-14.Dan Walsh <dwals
  1146. 1440: h@redhat.com> 2.2.23-13.Dan Walsh <dwalsh@redhat.com> 2.2.23-12.
  1147. 1480: Jeremy Katz <katzj@redhat.com> - 2.2.23-11.Jeremy Katz <katzj@re
  1148. 14c0: dhat.com> - 2.2.23-10.Dan Walsh <dwalsh@redhat.com> 2.2.23-9.Dan
  1149. 1500: Walsh <dwalsh@redhat.com> 2.2.23-8.Dan Walsh <dwalsh@redhat.com
  1150. 1540: > 2.2.23-7.Dan Walsh <dwalsh@redhat.com> 2.2.23-5.Dan Walsh <dwa
  1151. 1580: lsh@redhat.com> 2.2.23-4.Dan Walsh <dwalsh@redhat.com> 2.2.23-3.
  1152. 15c0: Dan Walsh <dwalsh@redhat.com> 2.2.23-2.Dan Walsh <dwalsh@redhat.
  1153. 1600: com> 2.2.23-1.Dan Walsh <dwalsh@redhat.com> 2.2.22-2.Dan Walsh <
  1154. 1640: dwalsh@redhat.com> 2.2.22-1.Dan Walsh <dwalsh@redhat.com> 2.2.21
  1155. 1680: -9.Dan Walsh <dwalsh@redhat.com> 2.2.21-8.Dan Walsh <dwalsh@redh
  1156. 16c0: at.com> 2.2.21-7.Dan Walsh <dwalsh@redhat.com> 2.2.21-6.Dan Wals
  1157. 1700: h <dwalsh@redhat.com> 2.2.21-5.Dan Walsh <dwalsh@redhat.com> 2.2
  1158. 1740: .21-4.Dan Walsh <dwalsh@redhat.com> 2.2.21-3.Dan Walsh <dwalsh@r
  1159. 1780: edhat.com> 2.2.21-2.Dan Walsh <dwalsh@redhat.com> 2.2.21-1.Dan W
  1160. 17c0: alsh <dwalsh@redhat.com> 2.2.20-1.Dan Walsh <dwalsh@redhat.com>
  1161. 1800: 2.2.19-2.Dan Walsh <dwalsh@redhat.com> 2.2.19-1.Dan Walsh <dwals
  1162. 1840: h@redhat.com> 2.2.18-2.Dan Walsh <dwalsh@redhat.com> 2.2.18-1.Da
  1163. 1880: n Walsh <dwalsh@redhat.com> 2.2.17-2.Dan Walsh <dwalsh@redhat.co
  1164. 18c0: m> 2.2.16-1.Dan Walsh <dwalsh@redhat.com> 2.2.15-4.Dan Walsh <dw
  1165. 1900: alsh@redhat.com> 2.2.15-3.Dan Walsh <dwalsh@redhat.com> 2.2.15-1
  1166. 1940: .Dan Walsh <dwalsh@redhat.com> 2.2.14-2.Dan Walsh <dwalsh@redhat
  1167. 1980: .com> 2.2.14-1.Dan Walsh <dwalsh@redhat.com> 2.2.13-1.Dan Walsh
  1168. 19c0: <dwalsh@redhat.com> 2.2.12-1.Dan Walsh <dwalsh@redhat.com> 2.2.1
  1169. 1a00: 1-2.Dan Walsh <dwalsh@redhat.com> 2.2.11-1.Dan Walsh <dwalsh@red
  1170. 1a40: hat.com> 2.2.10-1.Dan Walsh <dwalsh@redhat.com> 2.2.9-2.Dan Wals
  1171. 1a80: h <dwalsh@redhat.com> 2.2.9-1.Dan Walsh <dwalsh@redhat.com> 2.2.
  1172. 1ac0: 8-2.Dan Walsh <dwalsh@redhat.com> 2.2.7-1.Dan Walsh <dwalsh@redh
  1173. 1b00: at.com> 2.2.6-3.Dan Walsh <dwalsh@redhat.com> 2.2.6-2.Dan Walsh
  1174. 1b40: <dwalsh@redhat.com> 2.2.6-1.Dan Walsh <dwalsh@redhat.com> 2.2.5-
  1175. 1b80: 1.Dan Walsh <dwalsh@redhat.com> 2.2.4-1.Dan Walsh <dwalsh@redhat
  1176. 1bc0: .com> 2.2.3-1.Dan Walsh <dwalsh@redhat.com> 2.2.2-1.Dan Walsh <d
  1177. 1c00: walsh@redhat.com> 2.2.1-1.Dan Walsh <dwalsh@redhat.com> 2.1.13-1
  1178. 1c40: .Dan Walsh <dwalsh@redhat.com> 2.1.12-3.Dan Walsh <dwalsh@redhat
  1179. 1c80: .com> 2.1.11-1.Dan Walsh <dwalsh@redhat.com> 2.1.10-1.Jeremy Kat
  1180. 1cc0: z <katzj@redhat.com> - 2.1.9-2.Dan Walsh <dwalsh@redhat.com> 2.1
  1181. 1d00: .9-1.Dan Walsh <dwalsh@redhat.com> 2.1.8-3.Dan Walsh <dwalsh@red
  1182. 1d40: hat.com> 2.1.8-2.Dan Walsh <dwalsh@redhat.com> 2.1.8-1.Dan Walsh
  1183. 1d80: <dwalsh@redhat.com> 2.1.7-4.Dan Walsh <dwalsh@redhat.com> 2.1.7
  1184. 1dc0: -3.Dan Walsh <dwalsh@redhat.com> 2.1.7-2.Dan Walsh <dwalsh@redha
  1185. 1e00: t.com> 2.1.7-1.Dan Walsh <dwalsh@redhat.com> 2.1.6-24.Dan Walsh
  1186. 1e40: <dwalsh@redhat.com> 2.1.6-23.Dan Walsh <dwalsh@redhat.com> 2.1.6
  1187. 1e80: -22.Dan Walsh <dwalsh@redhat.com> 2.1.6-21.Dan Walsh <dwalsh@red
  1188. 1ec0: hat.com> 2.1.6-20.Dan Walsh <dwalsh@redhat.com> 2.1.6-18.Dan Wal
  1189. 1f00: sh <dwalsh@redhat.com> 2.1.6-17.Dan Walsh <dwalsh@redhat.com> 2.
  1190. 1f40: 1.6-16.Dan Walsh <dwalsh@redhat.com> 2.1.6-15.Dan Walsh <dwalsh@
  1191. 1f80: redhat.com> 2.1.6-14.Dan Walsh <dwalsh@redhat.com> 2.1.6-13.Dan
  1192. 1fc0: Walsh <dwalsh@redhat.com> 2.1.6-11.Dan Walsh <dwalsh@redhat.com>
  1193. 2000: 2.1.6-10.Dan Walsh <dwalsh@redhat.com> 2.1.6-9.Dan Walsh <dwals
  1194. 2040: h@redhat.com> 2.1.6-8.Dan Walsh <dwalsh@redhat.com> 2.1.6-5.Dan
  1195. 2080: Walsh <dwalsh@redhat.com> 2.1.6-4.Dan Walsh <dwalsh@redhat.com>
  1196. 20c0: 2.1.6-3.Dan Walsh <dwalsh@redhat.com> 2.1.6-2.Dan Walsh <dwalsh@
  1197. 2100: redhat.com> 2.1.6-1.Dan Walsh <dwalsh@redhat.com> 2.1.4-2.Dan Wa
  1198. 2140: lsh <dwalsh@redhat.com> 2.1.4-1.Dan Walsh <dwalsh@redhat.com> 2.
  1199. 2180: 1.3-1.Jeremy Katz <katzj@redhat.com> - 2.1.2-3.Dan Walsh <dwalsh
  1200. 21c0: @redhat.com> 2.1.2-2.Dan Walsh <dwalsh@redhat.com> 2.1.2-1.Dan W
  1201. 2200: alsh <dwalsh@redhat.com> 2.1.1-3.Dan Walsh <dwalsh@redhat.com> 2
  1202. 2240: .1.1-2.Dan Walsh <dwalsh@redhat.com> 2.1.1-1.Dan Walsh <dwalsh@r
  1203. 2280: edhat.com> 2.1.0-3.Dan Walsh <dwalsh@redhat.com> 2.1.0-2..Dan Wa
  1204. 22c0: lsh <dwalsh@redhat.com> 2.1.0-1..Dan Walsh <dwalsh@redhat.com> 2
  1205. 2300: .0.11-2..Dan Walsh <dwalsh@redhat.com> 2.0.11-1..Dan Walsh <dwal
  1206. 2340: sh@redhat.com> 2.0.9-1..Dan Walsh <dwalsh@redhat.com> 2.0.8-1..D
  1207. 2380: an Walsh <dwalsh@redhat.com> 2.0.7-3.Dan Walsh <dwalsh@redhat.co
  1208. 23c0: m> 2.0.7-2.Dan Walsh <dwalsh@redhat.com> 2.0.6-2.Dan Walsh <dwal
  1209. 2400: sh@redhat.com> 2.0.5-4.Dan Walsh <dwalsh@redhat.com> 2.0.5-1.Dan
  1210. 2440: Walsh <dwalsh@redhat.com> 2.0.4-1.Dan Walsh <dwalsh@redhat.com>
  1211. 2480: 2.0.2-2.Dan Walsh <dwalsh@redhat.com> 2.0.2-1.Dan Walsh <dwalsh
  1212. 24c0: @redhat.com> 2.0.1-2.Dan Walsh <dwalsh@redhat.com> 2.0.1-1.- All
  1213. 2500: ow systemd container to read/write usermodehelperstate.Resolves:
  1214. 2540: rhbz#1408126.- Allow glusterd_t to bind on glusterd_port_t udp
  1215. 2580: ports..Resolves: rhbz#1408128.- Allow glusterd_t to bind on glus
  1216. 25c0: terd_port_t udp ports..Resolves: rhbz#1408128.- Allow glusterd_t
  1217. 2600: send signals to userdomain. Label new glusterd binaries as glus
  1218. 2640: terd_exec_t.Resolves: rhbz#1408128.- Fixes for containers.- Allo
  1219. 2680: w containers to attempt to write to unix_sysctls..- Allow cotain
  1220. 26c0: ers to use the FD's leaked to them from parent processes..Resolv
  1221. 2700: es: rhbz#1408126.- Allow systemd to stop glusterd_t domains..Res
  1222. 2740: olves: rhbz#1408125.- Update ctdbd_t policy to reflect all chang
  1223. 2780: es..Resolves: rhbz#1403266.- Allow ctdbd_t domain transition to
  1224. 27c0: rpcd_t.Resolves:rhbz#1403266.- Make working CTDB:NFS: CTDB failo
  1225. 2800: ver from selinux-policy POV.Resolves: rhbz#1403266.- Allow puppe
  1226. 2840: tagent_t to access timedated dbus. Use the systemd_dbus_chat_tim
  1227. 2880: edated interface to allow puppetagent_t the access..Resolves: rh
  1228. 28c0: bz#1400505.- Update systemd on RHEL-7.2 box to version from RHEL
  1229. 2900: -7.3 and then as a separate yum command update the selinux polic
  1230. 2940: y systemd will start generating USER_AVC denials and will start
  1231. 2980: returning "Access Denied" errors to DBus clients..Resolves: rhbz
  1232. 29c0: #1394715.- Allow cluster_t communicate to fprintd_t via dbus.Res
  1233. 2a00: olves: rhbz#1349798.- Fix error message during update from RHEL-
  1234. 2a40: 7.2 to RHEL-7.3, when /usr/sbin/semanage command is not installe
  1235. 2a80: d and selinux-policy-migrate-local-changes.sh script is executed
  1236. 2ac0: in %post install phase of selinux-policy package.Resolves: rhbz
  1237. 2b00: #1393045.- Allow GlusterFS with RDMA transport to be started cor
  1238. 2b40: rectly. It requires ipc_lock capability together with rw permiss
  1239. 2b80: ion on rdma_cm device..Resolves:#1386620.- Allow glusterd to get
  1240. 2bc0: attributes on /sys/kernel/config directory..Resolves:#1386621.-
  1241. 2c00: Use selinux-policy-migrate-local-changes.sh instead of migrateS
  1242. 2c40: tore* macros.Resolves: rhbz#1383450.- Add selinux-policy-migrate
  1243. 2c80: -local-changes service.Resolves: rhbz#1383450.- Allow sssd_selin
  1244. 2cc0: ux_manager_t to manage also dir class..Resolves: rhbz#1380687.-
  1245. 2d00: Add interface seutil_manage_default_contexts_dirs().Resolves: rh
  1246. 2d40: bz#1380687.- Add virt_sandbox_use_nfs -> virt_use_nfs boolean su
  1247. 2d80: bstitution..Resolves: rhbz#1355783.- Allow pcp_pmcd_t domain tra
  1248. 2dc0: nsition to lvm_t Add capability kill and sys_ptrace to pcp_pmlog
  1249. 2e00: ger_t.Resolves: rhbz#1309883.- Allow ftp daemon to manage apache
  1250. 2e40: _user_content.Resolves: rhbz#1097775.- Label /etc/sysconfig/orac
  1251. 2e80: leasm as oracleasm_conf_t.Resolves: rhbz#1331383.- Allow oraclea
  1252. 2ec0: sm to rw inherited fixed disk device.Resolves: rhbz#1331383.- Al
  1253. 2f00: low collectd to connect on unix_stream_socket.Resolves: rhbz#137
  1254. 2f40: 7259.- Allow iscsid create netlink iscsid sockets..Resolves: rhb
  1255. 2f80: z#1358266.- Improve regexp for power_unit_file_t files. To catch
  1256. 2fc0: just systemd power unit files..Resolves: rhbz#1375462.- Update
  1257. 3000: oracleasm SELinux module that can manage oracleasmfs_t blk files
  1258. 3040: . Add dac_override cap to oracleasm_t domain..Resolves: rhbz#133
  1259. 3080: 1383.- Add few rules to pcp SELinux module to make ti able to st
  1260. 30c0: art pcp_pmlogger service.Resolves: rhbz#1206525.- Add oracleasm_
  1261. 3100: conf_t type and allow oracleasm_t to create /dev/oracleasm.Resol
  1262. 3140: ves: rhbz#1331383.- Label /usr/share/pcp/lib/pmie as pmie_exec_t
  1263. 3180: and /usr/share/pcp/lib/pmlogger as pmlogger_exec_t.Resolves: rh
  1264. 31c0: bz#1206525.- Allow mdadm_t to getattr all device nodes.Resolves:
  1265. 3200: rhbz#1365171.- Add interface dbus_dontaudit_stream_connect_syst
  1266. 3240: em_dbusd().Resolves:rhbz#1052880.- Add virt_stub_* interfaces fo
  1267. 3280: r docker policy which is no longer a part of our base policy..Re
  1268. 32c0: solves: rhbz#1372705.- Allow guest-set-user-passwd to set users
  1269. 3300: password..Resolves: rhbz#1369693.- Allow samdbox domains to use
  1270. 3340: msg class.Resolves: rhbz#1372677.- Allow domains using kerberos
  1271. 3380: to read also kerberos config dirs.Resolves: rhbz#1368492.- Allow
  1272. 33c0: svirt_sandbox_domains to r/w onload sockets.Resolves: rhbz#1342
  1273. 3400: 930.- Add interface fs_manage_oracleasm().Resolves: rhbz#1331383
  1274. 3440: .- Label /dev/kfd as hsa_device_t.Resolves: rhbz#1373488.- Updat
  1275. 3480: e seutil_manage_file_contexts() interface that caller domain can
  1276. 34c0: also manage file_context_t dirs.Resolves: rhbz#1368097.- Add in
  1277. 3500: terface to write to nsfs inodes.Resolves: rhbz#1372705.- Allow s
  1278. 3540: ystemd services to use PrivateNetwork feature.Resolves: rhbz#137
  1279. 3580: 2705.- Add a type and genfscon for nsfs..Resolves: rhbz#1372705.
  1280. 35c0: - Allow run sulogin_t in range mls_systemlow-mls_systemhigh..Res
  1281. 3600: olves: rhbz#1290400.- Allow arpwatch to create netlink netfilter
  1282. 3640: sockets. Resolves: rhbz#1358261.- Fix file context for /etc/pki
  1283. 3680: /pki-tomcat/ca/.- new interface oddjob_mkhomedir_entrypoint().-
  1284. 36c0: Move label for /var/lib/docker/vfs/ to proper SELinux module.- A
  1285. 3700: llow mdadm to get attributes from all devices..- Label /etc/pupp
  1286. 3740: etlabs as puppet_etc_t..- Allow systemd-machined to communicate
  1287. 3780: to lxc container using dbus.- Allow systemd_resolved to send dbu
  1288. 37c0: s msgs to userdomains Resolves: rhbz#1236579.- Allow systemd-res
  1289. 3800: olved to read network sysctls Resolves: rhbz#1236579.- Allow sys
  1290. 3840: temd_resolved to connect on system bus. Resolves: rhbz#1236579.-
  1291. 3880: Make entrypoint oddjob_mkhomedir_exec_t for unconfined_t.- Labe
  1292. 38c0: l all files in /dev/oracleasmfs/ as oracleasmfs_t Resolves: rhbz
  1293. 3900: #1331383.- Label /etc/pki/pki-tomcat/ca/ as pki_tomcat_cert_t.Re
  1294. 3940: solves:rhbz#1366915.- Allow certmonger to manage all systemd uni
  1295. 3980: t files.Resolves:rhbz#1366915.- Grant certmonger "chown" capabil
  1296. 39c0: ity.Resolves:rhbz#1366915.- Allow ipa_helper_t stream connect to
  1297. 3a00: dirsrv_t domain.Resolves: rhbz#1368418.- Update oracleasm SELin
  1298. 3a40: ux module.Resolves: rhbz#1331383.- label /var/lib/kubelet as svi
  1299. 3a80: rt_sandbox_file_t.Resolves: rhbz#1369159.- Add few interfaces to
  1300. 3ac0: cloudform.if file.Resolves: rhbz#1367834.- Label /var/run/coros
  1301. 3b00: ync-qnetd and /var/run/corosync-qdevice as cluster_var_run_t. No
  1302. 3b40: te: corosync policy is now par of rhcs module.Resolves: rhbz#134
  1303. 3b80: 7514.- Allow krb5kdc_t to read krb4kdc_conf_t dirs..Resolves: rh
  1304. 3bc0: bz#1368492.- Update networkmanager_filetrans_named_content() int
  1305. 3c00: erface to allow source domain to create also temad dir in /var/r
  1306. 3c40: un..Resolves: rhbz#1365653.- Allow teamd running as NetworkManag
  1307. 3c80: er_t to access netlink_generic_socket to allow multiple network
  1308. 3cc0: interfaces to be teamed together..Resolves: rhbz#1365653.- Label
  1309. 3d00: /dev/oracleasmfs as oracleasmfs_t. Add few interfaces related t
  1310. 3d40: o oracleasmfs_t type.Resolves: rhbz#1331383.- A new version of c
  1311. 3d80: loud-init that supports the effort to provision RHEL Atomic on M
  1312. 3dc0: icrosoft Azure requires some a new rules that allows dhclient/dh
  1313. 3e00: client hooks to call cloud-init..Resolves: rhbz#1367834.- Allow
  1314. 3e40: iptables to creating netlink generic sockets..Resolves: rhbz#136
  1315. 3e80: 4359.- Allow ipmievd domain to create lock files in /var/lock/su
  1316. 3ec0: bsys/.Resolves:rhbz#1349058.- Update policy for ipmievd daemon..
  1317. 3f00: Resolves:rhbz#1349058.- Dontaudit hyperkvp to getattr on non sec
  1318. 3f40: urity files..Resolves: rhbz#1349356.- Label /run/corosync-qdevic
  1319. 3f80: e and /run/corosync-qnetd as corosync_var_run_t.Resolves: rhbz#1
  1320. 3fc0: 347514.- Fixed lsm SELinux module.- Add sys_admin capability to
  1321. 13:00:16.811351 <= Recv data, 16384 bytes (0x4000)
  1322. 0000: sbd domain.Resolves: rhbz#1322725.- Allow vdagent to comunnicate
  1323. 0040: with systemd-logind via dbus.Resolves: rhbz#1366731.- Allow lsm
  1324. 0080: d_plugin_t domain to create fixed_disk device..Resolves: rhbz#12
  1325. 00c0: 38066.- Allow opendnssec domain to create and manage own tmp dir
  1326. 0100: s/files.Resolves: rhbz#1366649.- Allow opendnssec domain to read
  1327. 0140: system state.Resolves: rhbz#1366649.- Update opendnssec_manage_
  1328. 0180: config() interface to allow caller domain also manage opendnssec
  1329. 01c0: _conf_t dirs.Resolves: rhbz#1366649.- Allow rasdaemon to mount/u
  1330. 0200: nmount tracefs filesystem..Resolves: rhbz#1364380.- Label /usr/l
  1331. 0240: ibexec/iptables/iptables.init as iptables_exec_t Allow iptables
  1332. 0280: creating lock file in /var/lock/subsys/.Resolves: rhbz#1367520.-
  1333. 02c0: Modify interface den_read_nvme() to allow also read nvme_device
  1334. 0300: _t block files..Resolves: rhbz#1362564.- Label /var/run/storaged
  1335. 0340: as lvm_var_run_t..Resolves: rhbz#1264390.- Allow unconfineduser
  1336. 0380: to run ipa_helper_t..Resolves: rhbz#1361636.- Dontaudit mock to
  1337. 03c0: write to generic certs..Resolves: rhbz#1271209.- Add labeling f
  1338. 0400: or corosync-qdevice and corosync-qnetd daemons, to run as cluste
  1339. 0440: r_t.Resolves: rhbz#1347514.- Revert "Label corosync-qnetd and co
  1340. 0480: rosync-qdevice as corosync_t domain".- Allow modemmanager to wri
  1341. 04c0: te to systemd inhibit pipes.Resolves: rhbz#1365214.- Label coros
  1342. 0500: ync-qnetd and corosync-qdevice as corosync_t domain.Resolves: rh
  1343. 0540: bz#1347514.- Allow ipa_helper to read network state.Resolves: rh
  1344. 0580: bz#1361636.- Label oddjob_reqiest as oddjob_exec_t.Resolves: rhb
  1345. 05c0: z#1361636.- Add interface oddjob_run().Resolves: rhbz#1361636.-
  1346. 0600: Allow modemmanager chat with systemd_logind via dbus.Resolves: r
  1347. 0640: hbz#1362273.- Allow NetworkManager chat with puppetagent via dbu
  1348. 0680: s.Resolves: rhbz#1363989.- Allow NetworkManager chat with kdumpc
  1349. 06c0: tl via dbus.Resolves: rhbz#1363977.- Allow sbd send msgs to sysl
  1350. 0700: og Allow sbd create dgram sockets. Allow sbd to communicate with
  1351. 0740: kernel via dgram socket Allow sbd r/w kernel sysctls..Resolves:
  1352. 0780: rhbz#1322725.- Allow ipmievd_t domain to re-create ipmi devices
  1353. 07c0: Label /usr/libexec/openipmi-helper as ipmievd_exec_t.Resolves:
  1354. 0800: rhbz#1349058.- Allow rasdaemon to use tracefs filesystem..Resolv
  1355. 0840: es: rhbz#1364380.- Fix typo bug in dirsrv policy.- Some logrotat
  1356. 0880: e scripts run su and then su runs unix_chkpwd. Allow logrotate_t
  1357. 08c0: domain to check passwd..Resolves: rhbz#1283134.- Add ipc_lock c
  1358. 0900: apability to sssd domain. Allow sssd connect to http_cache_t.Res
  1359. 0940: olves: rhbz#1362688.- Allow dirsrv to read dirsrv_share_t conten
  1360. 0980: t.Resolves: rhbz#1363662.- Allow virtlogd_t to append svirt_imag
  1361. 09c0: e_t files..Resolves: rhbz#1358140.- Allow hypervkvp domain to re
  1362. 0a00: ad hugetlbfs dir/files..Resolves: rhbz#1349356.- Allow mdadm dae
  1363. 0a40: mon to read nvme_device_t blk files.Resolves: rhbz#1362564.- All
  1364. 0a80: ow selinuxusers and unconfineduser to run oddjob_request.Resolve
  1365. 0ac0: s: rhbz#1361636.- Allow sshd server to acces to Crypto Express 4
  1366. 0b00: (CEX4) devices..Resolves: rhbz#1362539.- Fix labeling issue in
  1367. 0b40: init.fc file. Path /usr/lib/systemd/fedora-* changed to /usr/lib
  1368. 0b80: /systemd/rhel-*..Resolves: rhbz#1363769.- Fix typo in device int
  1369. 0bc0: erfaces.Resolves: rhbz#1349058.- Add interfaces for managing ipm
  1370. 0c00: i devices.Resolves: rhbz#1349058.- Add interfaces to allow mount
  1371. 0c40: ing/umounting tracefs filesystem.Resolves: rhbz#1364380.- Add in
  1372. 0c80: terfaces to allow rw tracefs filesystem.Resolves: rhbz#1364380.-
  1373. 0cc0: Add interface dev_read_nvme() to allow reading Non-Volatile Mem
  1374. 0d00: ory Host Controller devices..Resolves: rhbz#1362564.- Label /sys
  1375. 0d40: /kernel/debug/tracing filesystem.Resolves: rhbz#1364380.- Allow
  1376. 0d80: sshd setcap capability. This is needed due to latest changes in
  1377. 0dc0: sshd.Resolves: rhbz#1357857.- Dontaudit mock_build_t can list al
  1378. 0e00: l ptys..Resolves: rhbz#1271209.- Allow ftpd_t to mamange userhom
  1379. 0e40: e data without any boolean..Resolves: rhbz#1097775.- Add logrota
  1380. 0e80: te permissions for creating netlink selinux sockets..Resolves: r
  1381. 0ec0: hbz#1283134.- Allow lsmd_plugin_t to exec ldconfig..Resolves: rh
  1382. 0f00: bz#1238066.- Allow vnstatd domain to read /sys/class/net/ files.
  1383. 0f40: Resolves: rhbz#1358243.- Remove duplicate allow rules in spamass
  1384. 0f80: assin SELinux module.Resolves:rhbz#1358175.- Allow spamc_t and s
  1385. 0fc0: pamd_t domains create .spamassassin file in user homedirs.Resolv
  1386. 1000: es:rhbz#1358175.- Allow sshd setcap capability. This is needed d
  1387. 1040: ue to latest changes in sshd.Resolves: rhbz#1357857.- Add new ML
  1388. 1080: S attribute to allow relabeling objects higher than system low.
  1389. 10c0: This exception is needed for package managers when processing se
  1390. 1100: nsitive data..Resolves: rhbz#1330464.- Allow gnome-keyring also
  1391. 1140: manage user_tmp_t sockets..Resolves: rhbz#1257057.- corecmd: Rem
  1392. 1180: ove fcontext for /etc/sysconfig/libvirtd.Resolves:rhbz#1351382.-
  1393. 11c0: Allow ipa_dnskey domain to search cache dirs.Resolves: rhbz#135
  1394. 1200: 0957.- Allow ipa-dnskey read system state..Reasolves: rhbz#13509
  1395. 1240: 57.- Allow dogtag-ipa-ca-renew-agent-submit labeled as certmonge
  1396. 1280: r_t to create /var/log/ipa/renew.log file.Resolves: rhbz#1350957
  1397. 12c0: .- Allow firewalld to manage net_conf_t files..Resolves:rhbz#130
  1398. 1300: 4723.- Allow logrotate read logs inside containers..Resolves: rh
  1399. 1340: bz#1303514.- Allow sssd to getattr on fs_t.Resolves: rhbz#135608
  1400. 1380: 2.- Allow opendnssec domain to manage bind chace files.Resolves:
  1401. 13c0: rhbz#1350957.- Fix typo in rhsmcertd policy module.Resolves: r
  1402. 1400: hbz#1329475.- Allow systemd to get status of systemd-logind daem
  1403. 1440: on.Resolves: rhbz#1356141.- Label more ndctl devices not just nd
  1404. 1480: ctl0.Resolves: rhbz#1355809.- Allow rhsmcertd to copy certs into
  1405. 14c0: /etc/docker/cert.d.- Add interface docker_rw_config().Resolves:
  1406. 1500: rhbz#1344500.- Fix logrotate fc file to label also /var/lib/log
  1407. 1540: rotate/ dir as logrotate_var_lib_t.Resolves: rhbz#1355632.- Allo
  1408. 1580: w rhsmcertd to read network sysctls.Resolves: rhbz#1329475.- Lab
  1409. 15c0: el /var/log/graphite-web dir as httpd_log_t.Resolves: rhbz#13108
  1410. 1600: 98.- Allow mock to use generic ptys.Resolves: rhbz#1271209.- All
  1411. 1640: ow adcli running as sssd_t to write krb5.keytab file..Resolves:
  1412. 1680: rhbz#1356082.- Allow openvswitch connect to openvswitch_port_t t
  1413. 16c0: ype..Resolves: rhbz#1335024.- Add SELinux policy for opendnssec
  1414. 1700: service..Resolves: rhbz#1350957.- Create new SELinux type for /u
  1415. 1740: sr/libexec/ipa/ipa-dnskeysyncd.Resolves: rhbz#1350957.- label /d
  1416. 1780: ev/ndctl0 device as nvram_device_t.Resolves: rhbz#1355809.- Allo
  1417. 17c0: w lttng tools to block suspending.Resolves: rhbz#1256374.- Allow
  1418. 1800: creation of vpnaas in openstack.Resolves: rhbz#1352710.- virt:
  1419. 1840: add strict policy for virtlogd daemon.Resolves:rhbz#1311606.- Up
  1420. 1880: date makefile to support snapperd_contexts file.Resolves: rhbz#1
  1421. 18c0: 352681.- Allow udev to manage systemd-hwdb files.- Add interface
  1422. 1900: systemd_hwdb_manage_config().Resolves: rhbz#1350756.- Fix paths
  1423. 1940: to infiniband devices. This allows use more then two infiniband
  1424. 1980: interfaces..Resolves: rhbz#1210263.- Allow virtual machines to
  1425. 19c0: rw infiniband devices..Resolves: rhbz#1210263.- Allow opensm dae
  1426. 1a00: mon to rw infiniband_mgmt_device_t.Resolves: rhbz#1210263.- Allo
  1427. 1a40: w systemd_hwdb_t to relabel /etc/udev/hwdb.bin file..Resolves: r
  1428. 1a80: hbz#1350756.- Make label for new infiniband_mgmt deivices.Resolv
  1429. 1ac0: es: rhbz#1210263.- Fix typo in brltty SELinux module.- Add new S
  1430. 1b00: ELinux module sbd.Resolves: rhbz#1322725.- Allow pcp dmcache met
  1431. 1b40: rics collection.Resolves: rhbz#1309883.- Allow pkcs_slotd_t to c
  1432. 1b80: reate dir in /var/lock Add label pkcs_slotd_log_t.Resolves: rhbz
  1433. 1bc0: #1350782.- Allow openvpn to create sock files labeled as openvpn
  1434. 1c00: _var_run_t.Resolves: rhbz#1328246.- Allow hypervkvp daemon to ge
  1435. 1c40: tattr on all filesystem types..Resolves: rhbz#1349356.- Allow f
  1436. 1c80: irewalld to create net_conf_t files.Resolves: rhbz#1304723.- All
  1437. 1cc0: ow mock to use lvm.Resolves: rhbz#1271209.- Allow keepalived to
  1438. 1d00: create netlink generic sockets..Resolves: rhbz#1349809.- Allow m
  1439. 1d40: irromanager creating log files in /tmp.Resolves:rhbz#1328818.- R
  1440. 1d80: ename few modules to make it consistent with source files.Resolv
  1441. 1dc0: es: rhbz#1351445.- Allow vmtools_t to transition to rpm_script d
  1442. 1e00: omain.Resolves: rhbz#1342119.- Allow nsd daemon to manage nsd_co
  1443. 1e40: nf_t dirs and files.Resolves: rhbz#1349791.- Allow cluster to cr
  1444. 1e80: eate dirs in /var/run labeled as cluster_var_run_t.Resolves: rhb
  1445. 1ec0: z#1346900.- Allow sssd read also sssd_conf_t dirs.Resolves: rhbz
  1446. 1f00: #1350535.- Dontaudit su_role_template interface to getattr /proc
  1447. 1f40: /kcore Dontaudit su_role_template interface to getattr /dev/init
  1448. 1f80: ctl.Resolves: rhbz#1086240.- Add interface lvm_getattr_exec_file
  1449. 1fc0: s().Resolves: rhbz#1271209.- Fix typo Compliling vs. Compiling.R
  1450. 2000: esolves: rhbz#1351445.- Allow krb5kdc_t to communicate with sssd
  1451. 2040: .Resolves: rhbz#1319933.- Allow prosody to bind on prosody ports
  1452. 2080: .Resolves: rhbz#1304664.- Add dac_override caps for fail2ban-cli
  1453. 20c0: ent.Resolves: rhbz#1316678.- dontaudit read access for svirt_t o
  1454. 2100: n the file /var/db/nscd/group.Resolves: rhbz#1301637.- Allow ine
  1455. 2140: td child process to communicate via dbus with systemd-logind.Res
  1456. 2180: olves: rhbz#1333726.- Add label for brltty log file.Resolves: rh
  1457. 21c0: bz#1328818.- Allow dspam to read the passwd file.Resolves: rhbz#
  1458. 2200: 1286020.- Allow snort_t to communicate with sssd.Resolves: rhbz#
  1459. 2240: 1284908.- svirt_sandbox_domains need to be able to execmod for b
  1460. 2280: adly built libraries..Resolves: rhbz#1206339.- Add policy for lt
  1461. 22c0: tng-tools package..Resolves: rhbz#1256374.- Make mirrormanager a
  1462. 2300: s application domain..Resolves: rhbz#1328234.- Add support for t
  1463. 2340: he default lttng-sessiond port - tcp/5345. This port is used by
  1464. 2380: LTTng 2.x central tracing registry session daemon..- Add prosod
  1465. 23c0: y ports.Resolves: rhbz#1304664.- Allow sssd read also sssd_conf_
  1466. 2400: t dirs.Resolves: rhbz#1350535.- Label /var/lib/softhsm as named_
  1467. 2440: cache_t. Allow named_t to manage named_cache_t dirs..Resolves:rh
  1468. 2480: bz#1331315.- Label named-pkcs11 binary as named_exec_t..Resolves
  1469. 24c0: : rhbz#1331315.- Allow glusterd daemon to get systemd status.Res
  1470. 2500: olves: rhbz#1321785.- Allow logrotate dbus-chat with system_logi
  1471. 2540: nd daemon.Resolves: rhbz#1283134.- Allow pcp_pmlogger to read ke
  1472. 2580: rnel network state Allow pcp_pmcd to read cron pid files.Resolve
  1473. 25c0: s: rhbz#1336211.- Add interface cron_read_pid_files().Resolves:
  1474. 2600: rhbz#1336211.- Allow pcp_pmlogger to create unix dgram sockets.R
  1475. 2640: esolves: rhbz#1336211.- Add hwloc-dump-hwdata SELinux policy.Res
  1476. 2680: olves: rhbz#1344054.- Remove non-existing jabberd_spool_t() inte
  1477. 26c0: rface and add new jabbertd_var_spool_t..Resolves: rhbz#1121171.-
  1478. 2700: Remove non-existing interface salk_resetd_systemctl() and repla
  1479. 2740: ce it with sanlock_systemctl_sanlk_resetd().Resolves: rhbz#12597
  1480. 2780: 64.- Create label for openhpid log files. .esolves: rhbz#1259764
  1481. 27c0: .- Label /var/lib/ganglia as httpd_var_lib_t.Resolves: rhbz#1260
  1482. 2800: 536.- Allow firewalld_t to create entries in net_conf_t dirs..Re
  1483. 2840: solves: rhbz#1304723.- Allow journalctl to read syslogd_var_run_
  1484. 2880: t files. This allows to staff_t and sysadm_t to read journals.Re
  1485. 28c0: solves: rhbz#1288255.- Include patch from distgit repo: policy-R
  1486. 2900: HEL-7.1-flask.patch..Resolves: rhbz#1329560.- Update refpolicy t
  1487. 2940: o handle hwloc.Resolves: rhbz#1344054.- Label /etc/dhcp/scripts
  1488. 2980: dir as bin_t.- Allow sysadm_role to run journalctl_t domain. Thi
  1489. 29c0: s allows sysadm user to read journals..Resolves: rhbz#1288255.-
  1490. 2a00: Allow firewalld_t to create entries in net_conf_t dirs..Resolves
  1491. 2a40: : rhbz#1304723.- Allow journalctl to read syslogd_var_run_t file
  1492. 2a80: s. This allows to staff_t and sysadm_t to read journals.Resolves
  1493. 2ac0: : rhbz#1288255.- Allow mongod log to syslog..Resolves: rhbz#1306
  1494. 2b00: 995.- Allow rhsmcertd connect to port tcp 9090.Resolves: rhbz#13
  1495. 2b40: 37319.- Label for /bin/mail(x) was removed but /usr/bin/mail(x)
  1496. 2b80: not. This path is also needed to remove. .Resolves: rhbz#1262483
  1497. 2bc0: .Resolves: rhbz#1277506.- Label /usr/libexec/mimedefang-wrapper
  1498. 2c00: as spamd_exec_t..Resolves: rhbz#1301516.- Add new boolean spamd_
  1499. 2c40: update_can_network..Resolves: rhbz#1305469.- Allow rhsmcertd con
  1500. 2c80: nect to tcp netport_port_t.Resolves: rhbz#1329475.- Fix SELinux
  1501. 2cc0: context for /usr/share/mirrormanager/server/mirrormanager to Lab
  1502. 2d00: el all binaries under dir as mirrormanager_exec_t..Resolves: rhb
  1503. 2d40: z#1328234.- Allow prosody to bind to fac_restore tcp port..Resol
  1504. 2d80: ves: rhbz#1321787.- Allow ninfod to read raw packets.Resolves: r
  1505. 2dc0: hbz#1317964.- Allow pegasus get attributes from qemu binary file
  1506. 2e00: s..Resolves: rhbz#1260835.- Allow pegasus get attributes from qe
  1507. 2e40: mu binary files..Resolves: rhbz#1271159.- Allow tuned to use pol
  1508. 2e80: icykit. This change is required by cockpit..Resolves: rhbz#13464
  1509. 2ec0: 64.- Allow conman_t to read dir with conman_unconfined_script_t
  1510. 2f00: binary files..Resolves: rhbz#1297323.- Allow pegasus to read /pr
  1511. 2f40: oc/sysinfo..Resolves: rhbz#1265883.- Allow sysadm_role to run jo
  1512. 2f80: urnalctl_t domain. This allows sysadm user to read journals..Res
  1513. 2fc0: olves: rhbz#1288255.- Label tcp ports:16379, 26379 as redis_port
  1514. 3000: _t.Resolves: rhbz#1348471.- Allow systemd to relabel /var and /v
  1515. 3040: ar/lib directories during boot..- Add files_relabel_var_dirs() a
  1516. 3080: nd files_relabel_var_dirs() interfaces..- Add files_relabelto_va
  1517. 30c0: r_lib_dirs() interface..- Label tcp port 2004 as mailbox_port_t.
  1518. 3100: .Resolves: rhbz#1332843.- Label tcp and udp port 5582 as fac_res
  1519. 3140: tore_port_t.Resolves: rhbz#1321787.- Allow sysadm_t user to run
  1520. 3180: postgresql-setup..Resolves: rhbz#1282543.- Allow sysadm_t user t
  1521. 31c0: o dbus chat with oddjob_t. This allows confined admin run oddjob
  1522. 3200: mkhomedirfor script..Resolves: rhbz#1297480.- Update netlink so
  1523. 3240: cket classes..- Allow conman to kill conman_unconfined_script..R
  1524. 3280: esolves: rhbz#1297323.- Make conman_unconfined_script_t as init_
  1525. 32c0: system_domain..Resolves:rhbz#1297323.- Allow init dbus chat with
  1526. 3300: apmd..Resolves:rhbz#995898.- Patch /var/lib/rpm is symlink to /
  1527. 3340: usr/share/rpm on Atomic, due to this change we need to label als
  1528. 3380: o /usr/share/rpm as rpm_var_lib_t..Resolves: rhbz#1233252.- Dont
  1529. 33c0: audit xguest_gkeyringd_t stream connect to system_dbusd_t.Resolv
  1530. 3400: es: rhbz#1052880.- Add mediawiki rules to proper scope.Resolves:
  1531. 3440: rhbz#1301186.- Dontaudit xguest_gkeyringd_t stream connect to s
  1532. 3480: ystem_dbusd_t.Resolves: rhbz#1052880.- Allow mysqld_safe to inhe
  1533. 34c0: rit rlimit information from mysqld.Resolves: rhbz#1323673.- Allo
  1534. 3500: w collectd_t to stream connect to postgresql..Resolves: rhbz#134
  1535. 3540: 4056.- Allow mediawiki-script to read /etc/passwd file..Resolves
  1536. 3580: : rhbz#1301186.- Add filetrans rule that NetworkManager_t can cr
  1537. 35c0: eate net_conf_t files in /etc..Resolves: rhbz#1344505.- Add labe
  1538. 3600: ls for mediawiki123.Resolves: rhbz#1293872.- Fix label for all f
  1539. 3640: ence_scsi_check scripts.- Allow ip netns to mounton root fs and
  1540. 3680: unmount proc_t fs..Resolves: rhbz#1343776.Resolves: rhbz#1286851
  1541. 36c0: .- Allow sysadm_t to run newaliases command..Resolves: rhbz#1344
  1542. 3700: 828.- Add interface sysnet_filetrans_named_net_conf().Resolves:
  1543. 3740: rhbz#1344505.- Fix several issues related to the SELinux Userspa
  1544. 3780: ce changes.- Allow glusterd domain read krb5_keytab_t files..Res
  1545. 37c0: olves: rhbz#1343929.- Fix typo in files_setattr_non_security_dir
  1546. 3800: s..Resolves: rhbz#1115987.- Allow tmpreaper_t to read/setattr al
  1547. 3840: l non_security_file_type dirs.Resolves: rhbz#1115987.- Allow fir
  1548. 3880: ewalld to create firewalld_var_run_t directory..Resolves: rhbz#1
  1549. 38c0: 304723.- Add interface firewalld_read_pid_files().Resolves: rhbz
  1550. 3900: #1304723.- Label /usr/libexec/rpm-ostreed as rpm_exec_t..Resolve
  1551. 3940: s: rhbz#1340542.- Allow sanlock service to read/write cephfs_t f
  1552. 3980: iles..Resolves: rhbz#1315332.- Fixed to make SELinux work with d
  1553. 39c0: ocker and prctl(NO_NEW_PRIVS).- Added missing docker interfaces:
  1554. 3a00: - docker_typebounds - docker_entrypoint.Resolves: rhbz#123658
  1555. 3a40: 0.- Add interface files_setattr_non_security_dirs().Resolves: rh
  1556. 3a80: bz#1115987.- Add support for onloadfs.- Allow iptables to read f
  1557. 3ac0: irewalld pid files..Resolves: rhbz#1304723.- Add SELinux support
  1558. 3b00: for ceph filesystem..Resolves: rhbz#1315332.- Fixed to make SEL
  1559. 3b40: inux work with docker and prctl(NO_NEW_PRIVS).Resolves: rhbz#123
  1560. 3b80: 6580.- Fixed to make SELinux work with docker and prctl(NO_NEW_P
  1561. 3bc0: RIVS).- Added missing docker interfaces: - docker_typebounds -
  1562. 3c00: docker_entrypoint.Resolves: rhbz#1236580.- New interfaces neede
  1563. 3c40: d for systemd-machinectl.Resolves: rhbz#1236580.- New interfaces
  1564. 3c80: needed by systemd-machine.Resolves: rhbz#1236580.- Add interfac
  1565. 3cc0: e allowing sending and receiving messages from virt over dbus..R
  1566. 3d00: esolves: rhbz#1236580.- Backport docker policy from Fedora..Rela
  1567. 3d40: ted: #1303123.Resolves: #1341257.- Allow NetworkManager_t and po
  1568. 3d80: licykit_t read access to systemd-machined pid files..Resolves: r
  1569. 3dc0: hbz#1236580.- Fixed to make SELinux work with docker and prctl(N
  1570. 3e00: O_NEW_PRIVS).- Added interfaces needed by new docker policy..Rel
  1571. 3e40: ated: rhbz#1303123.- Add support for systemd-machined daemon.Res
  1572. 3e80: olves: rhbz#1236580.- Allow rpm-ostree domain transition to inst
  1573. 3ec0: all_t domain from init_t..Resolves: rhbz#1340542.- dnsmasq: allo
  1574. 3f00: w NetworkManager to control dnsmasq via D-Bus.Resolves: rhbz#133
  1575. 3f40: 6722.- Directory Server (389-ds-base) has been updated to use sy
  1576. 3f80: stemd-ask-password. In order to function correctly we need the f
  1577. 3fc0: ollowing added to dirsrv.te.Resolves: rhbz#1333198.- sftpd_* boo
  1578. 13:00:16.817996 <= Recv data, 16384 bytes (0x4000)
  1579. 0000: leans are functionless these days..Resolves: rhbz#1335656.- Labe
  1580. 0040: l /var/log/ganesha.log as gluster_log_t Allow glusterd_t domain
  1581. 0080: to create glusterd_log_t files. Label /var/run/ganesha.pid as gl
  1582. 00c0: uster_var_run_t..Resolves: rhbz#1335828.- Allow ganesha-ha.sh sc
  1583. 0100: ript running under unconfined_t domain communicate with glusterd
  1584. 0140: _t domains via dbus..Resolves: rhbz#1336760.- Allow ganesha daem
  1585. 0180: on labeled as glusterd_t create /var/lib/nfs/ganesha dir labeled
  1586. 01c0: as var_lib_nfs_t..Resolves: rhbz#1336737.- Label /usr/libexec/s
  1587. 0200: toraged/storaged as lvm_exec_t to run storaged daemon in lvm_t S
  1588. 0240: ELinux domain..Resolves: rhbz#1264390.- Allow systemd_hostanmed_
  1589. 0280: t to read /proc/sysinfo labeled as sysctl_t..Resolves: rhbz#1337
  1590. 02c0: 061.- Revert "Allow all domains some process flags.".Resolves: r
  1591. 0300: hbz#1303644.- Revert "Remove setrlimit to all domains.".Resolves
  1592. 0340: : rhbz#1303644.- Label /usr/sbin/xrdp* files as bin_t.Resolves:
  1593. 0380: rhbz#1276777.- Add mls support for some db classes.Resolves: rhb
  1594. 03c0: z#1303651.- Allow systemd_resolved_t to check if ipv6 is disable
  1595. 0400: d..Resolves: rhbz#1236579.- Allow systemd_resolved to read syste
  1596. 0440: md_networkd run files..Resolves: rhbz#1236579.- Allow ganesha-ha
  1597. 0480: .sh script running under unconfined_t domain communicate with gl
  1598. 04c0: usterd_t domains via dbus..Resolves: rhbz#1336760.- Allow ganesh
  1599. 0500: a daemon labeled as glusterd_t create /var/lib/nfs/ganesha dir l
  1600. 0540: abeled as var_lib_nfs_t..Resolves: rhbz#1336737.- Allow logwatch
  1601. 0580: to domtrans to postqueue.Resolves: rhbz#1331542.- Label /var/lo
  1602. 05c0: g/ganesha.log as gluster_log_t.- Allow glusterd_t domain to crea
  1603. 0600: te glusterd_log_t files..- Label /var/run/ganesha.pid as gluster
  1604. 0640: _var_run_t..Resolves: rhbz#1335828.- Allow zabbix to connect to
  1605. 0680: postgresql port.Resolves: rhbz#1330479.- Add userdom_destroy_unp
  1606. 06c0: riv_user_shared_mem() interface..Related: rhbz#1306403.- systemd
  1607. 0700: -logind remove all IPC objects owned by a user on a logout. This
  1608. 0740: covers also SysV memory. This change allows to destroy unprivil
  1609. 0780: edged user SysV shared memory segments..Resolves: rhbz#1306403.-
  1610. 07c0: We need to restore contexts on /etc/passwd*,/etc/group*,/etc/*s
  1611. 0800: hadow* during install phase to get proper labeling for these fil
  1612. 0840: es until selinux-policy pkgs are installed..Resolves: rhbz#13339
  1613. 0880: 52.- Add interface glusterd_dontaudit_read_lib_dirs().Resolves:
  1614. 08c0: rhbz#1295680.- Dontaudit Occasionally observing AVC's while runn
  1615. 0900: ing geo-rep automation.Resolves: rhbz#1295680.- Allow glusterd t
  1616. 0940: o manage socket files labeled as glusterd_brick_t..Resolves: rhb
  1617. 0980: z#1331561.- Create new apache content template for files stored
  1618. 09c0: in user homedir. This change is needed to make working booleans:
  1619. 0a00: - httpd_enable_homedirs - httpd_read_user_content .Resolves: rh
  1620. 0a40: bz#1246522.- Allow stunnel create log files. .Resolves: rhbz#129
  1621. 0a80: 6851.- Label tcp port 8181 as intermapper_port_t..Resolves: rhbz
  1622. 0ac0: #1334783.- Label tcp/udp port 2024 as xinuexpansion4_port_t.Reso
  1623. 0b00: lves: rhbz#1334783.- Label tcp port 7002 as afs_pt_port_t Label
  1624. 0b40: tcp/udp port 2023 as xinuexpansion3_port_t.Resolves: rhbz#133478
  1625. 0b80: 3.- Dontaudit ldconfig read gluster lib files..Resolves: rhbz#12
  1626. 0bc0: 95680.- Add interface auth_use_nsswitch() to systemd_domain_temp
  1627. 0c00: late..Resolves: rhbz#1236579.- Label /usr/bin/ganesha.nfsd as gl
  1628. 0c40: usterd_exec_t to run ganesha as glusterd_t. Allow glusterd_t str
  1629. 0c80: eam connect to rpbind_t. Allow cluster_t to create symlink /var/
  1630. 0cc0: lib/nfs labeled as var_lib_nfs_t. Add interface rpc_filetrans_va
  1631. 0d00: r_lib_nfs_content() Add new boolean: rpcd_use_fusefs to allow rp
  1632. 0d40: cd daemon use fusefs.. Resolves: rhbz#1312809. Resolves: rhbz#13
  1633. 0d80: 23947.- Allow dbus chat between httpd_t and oddjob_t. Resolves:
  1634. 0dc0: rhbz#1324144.- Label /usr/libexec/ipa/oddjob/org.freeipa.server.
  1635. 0e00: conncheck as ipa_helper_exec_t..Resolves: rhbz#1324144.- Label /
  1636. 0e40: var/log/ipareplica-conncheck.log file as ipa_log_t Allow ipa_hel
  1637. 0e80: per_t domain to manage logs labeledas ipa_log_t Allow ipa_helper
  1638. 0ec0: _t to connect on http and kerberos_passwd ports..Resolves: rhbz#
  1639. 0f00: 1324144.- Allow prosody to listen on port 5000 for mod_proxy65..
  1640. 0f40: Resolves: rhbz#1316918.- Allow pcp_pmcd_t domain to manage docke
  1641. 0f80: r lib files. This rule is needed to allow pcp to collect contain
  1642. 0fc0: er information when SELinux is enabled..Resolves: rhbz#1309454.-
  1643. 1000: Allow runnig php7 in fpm mode. From selinux-policy side, we nee
  1644. 1040: d to allow httpd to read/write hugetlbfs..Resolves: rhbz#1319442
  1645. 1080: .- Allow openvswitch daemons to run under openvswitch Linux user
  1646. 10c0: instead of root. This change needs allow set capabilities: chwo
  1647. 1100: n, setgid, setuid, setpcap..Resolves: rhbz#1296640.- Remove ftpd
  1648. 1140: _home_dir() boolean from distro policy. Reason is that we cannot
  1649. 1180: make this working due to m4 macro language limits..Resolves: rh
  1650. 11c0: bz#1097775.- /bin/mailx is labeled sendmail_exec_t, and enters t
  1651. 1200: he sendmail_t domain on execution. If /usr/sbin/sendmail does n
  1652. 1240: ot have its own domain to transition to, and is not one of sever
  1653. 1280: al products whose behavior is allowed by the sendmail_t policy,
  1654. 12c0: execution will fail. In this case we need to label /bin/mailx as
  1655. 1300: bin_t..Resolves: rhbz#1262483.- Allow nsd daemon to create log
  1656. 1340: file in /var/log as nsd_log_t.Resolves: rhbz#1293140.- Sanlock p
  1657. 1380: olicy update. - New sub-domain for sanlk-reset daemon.Resolves
  1658. 13c0: : rhbz#1212324.- Label all run tgtd files, not just socket files
  1659. 1400: .Resolves: rhbz#1280280.- Label all run tgtd files, not just soc
  1660. 1440: ket files..Resolves: rhbz#1280280.- Allow prosody to stream conn
  1661. 1480: ect to sasl. This will allow using cyrus authentication in proso
  1662. 14c0: dy..Resolves: rhbz#1321049.- unbound wants to use ephemeral port
  1663. 1500: s as a default configuration. Allow to use also udp sockets..Res
  1664. 1540: olves: rhbz#1318224.- Allow prosody to listen on port 5000 for m
  1665. 1580: od_proxy65..Resolves: rhbz#1316918.- Allow targetd to read/write
  1666. 15c0: to /dev/mapper/control device..Resolves: rhbz#1063714.- Allow K
  1667. 1600: DM to get status about power services. This change allow kdm to
  1668. 1640: be able do shutdown..Resolves: rhbz#1316724.- Allow systemd-reso
  1669. 1680: lved daemon creating netlink_route sockets..Resolves:rhbz#123657
  1670. 16c0: 9.- Allow systemd_resolved_t to read /etc/passwd file. Allow sys
  1671. 1700: temd_resolved_t to write to kmsg_device_t when 'systemd.log_targ
  1672. 1740: et=kmsg' option is used.Resolves: rhbz#1065362.- Label /etc/seli
  1673. 1780: nux/(minimum|mls|targeted)/active/ as semanage_store_t.Resolves:
  1674. 17c0: rhbz#1321943.- Label all nvidia binaries as xserver_exec_t.Reso
  1675. 1800: lves: rhbz#1322283.- Create new permissivedomains CIL module and
  1676. 1840: make it active..Resolves: rhbz#1320451.- Add support for new mo
  1677. 1880: ck location - /usr/libexec/mock/mock..Resolves: rhbz#1271209.- A
  1678. 18c0: llow bitlee to create bitlee_var_t dirs..Resolves: rhbz#1268651.
  1679. 1900: - Allow CIM provider to read sssd public files..Resolves: rhbz#1
  1680. 1940: 263339.- Fix some broken interfaces in distro policy..Resolves:
  1681. 1980: rhbz#1121171.- Allow power button to shutdown the laptop..Resolv
  1682. 19c0: es: rhbz#995898.- Allow lsm plugins to create named fixed disks.
  1683. 1a00: .Resolves: rhbz#1238066.- Add default labeling for /etc/Pegasus/
  1684. 1a40: cimserver_current.conf. It is a correct patch instead of the cur
  1685. 1a80: rent /etc/Pegasus/pegasus_current.confResolves: rhbz#1278777.- A
  1686. 1ac0: llow hyperv domains to rw hyperv devices..Resolves: rhbz#1309361
  1687. 1b00: .- Label /var/www/html(/.*)?/wp_backups(/.*)? as httpd_sys_rw_co
  1688. 1b40: ntent_t.Resolves: rhbz#1246780.- Create conman_unconfined_script
  1689. 1b80: _t type for conman script stored in /use/share/conman/exec/.Reso
  1690. 1bc0: lves: rhbz#1297323.- Fix rule definitions for httpd_can_sendmail
  1691. 1c00: boolean. We need to distinguish between base and contrib..- Add
  1692. 1c40: support for /dev/mptctl device used to check RAID status.. Reso
  1693. 1c80: lves: rhbz#1258029.- Create hyperv* devices and create rw interf
  1694. 1cc0: aces for this devices..Resolves: rhbz#1309361.- Add fixes for se
  1695. 1d00: linux userspace moving the policy store to /var/lib/selinux..- R
  1696. 1d40: emove optional else block for dhcp ping.- Allow rsync_export_all
  1697. 1d80: _ro boolean to read also non_auth_dirs/files/symlinks..Resolves:
  1698. 1dc0: rhbz#1263770.- Fix context of "/usr/share/nginx/html"..Resolves
  1699. 1e00: : rhbz#1261857.- Allow pmdaapache labeled as pcp_pmcd_t access t
  1700. 1e40: o port 80 for apache diagnostics.Resolves: rhbz#1270344.- Allow
  1701. 1e80: pmlogger to create pmlogger.primary.socket link file.. Resolves:
  1702. 1ec0: rhbz#1270344.- Label nagios scripts as httpd_sys_script_exec_t.
  1703. 1f00: .Resolves: rhbz#1260306.- Add dontaudit interface for kdumpctl_t
  1704. 1f40: mp_t.Resolves: rhbz#1156442.- Allow mdadm read files in EFI part
  1705. 1f80: ition..Resolves: rhbz#1291801.- Allow nsd_t to bind on nsf_contr
  1706. 1fc0: ol tcp port. Allow nsd_crond_t to read nsd pid..Resolves: rhbz#1
  1707. 2000: 293140.- Label some new nsd binaries as nsd_exec_t Allow nsd dom
  1708. 2040: ain net_admin cap. Create label nsd_tmp_t for nsd tmp files/dirs
  1709. 2080: .Resolves: rhbz#1293140.- Add filename transition that /etc/prin
  1710. 20c0: cap will be created with cupsd_rw_etc_t label in cups_filetrans_
  1711. 2100: named_content() interface..Resolves: rhbz#1265102.- Add missing
  1712. 2140: labeling for /usr/libexec/abrt-hook-ccpp..Resolves: rhbz#1213409
  1713. 2180: .- Allow pcp_pmie and pcp_pmlogger to read all domains state..Re
  1714. 21c0: solves: rhbz#1206525.- Label /etc/redis-sentinel.conf as redis_c
  1715. 2200: onf_t. Allow redis_t write to redis_conf_t. Allow redis_t to con
  1716. 2240: nect on redis tcp port..Resolves: rhbz#1275246.- cockpit has gro
  1717. 2280: wn content in /var/run directory.Resolves: rhbz#1279429.- Allow
  1718. 22c0: collectd setgid capability.Resolves:#1310898.- Remove declaratio
  1719. 2300: n of empty booleans in virt policy..Resolves: rhbz#1103153.- Fix
  1720. 2340: typo in drbd policy.- Add new drbd file type: drbd_var_run_t. A
  1721. 2380: llow drbd_t to manage drbd_var_run_t files/dirs. Allow drbd_t cr
  1722. 23c0: eate drbd_tmp_t files in /tmp..Resolves: rhbz#1134883.- Label /e
  1723. 2400: tc/ctdb/events.d/* as ctdb_exec_t. Allow ctdbd_t to setattr on c
  1724. 2440: tdbd_exec_t files..Resolves: rhbz#1293788.- Allow abrt-hook-ccpp
  1725. 2480: to get attributes of all processes because of core_pattern..Res
  1726. 24c0: olves: rhbz#1254188.- Allow abrt_t to read sysctl_net_t files..R
  1727. 2500: esolves: rhbz#1254188.- The ABRT coredump handler has code to em
  1728. 2540: ulate default core file creation The handler runs in a separate
  1729. 2580: process with abrt_dump_oops_t SELinux process type. abrt-hook-cc
  1730. 25c0: pp also saves the core dump file in the very same way as kernel
  1731. 2600: does and a user can specify CWD location for a coredump. abrt-ho
  1732. 2640: ok-ccpp has been made as a SELinux aware apps to create this cor
  1733. 2680: edumps with correct labeling and with this commit the policy rul
  1734. 26c0: es have been updated to allow access all non security files on a
  1735. 2700: system..- Allow abrt-hook-ccpp to getattr on all executables..-
  1736. 2740: Allow setuid/setgid capabilities for abrt-hook-ccpp.. Resolves:
  1737. 2780: rhbz#1254188.- abrt-hook-ccpp needs to have setfscreate access
  1738. 27c0: because it is SELinux aware and compute a target labeling.. Reso
  1739. 2800: lves: rhbz#1254188.- Allow abrt-hook-ccpp to change SELinux user
  1740. 2840: identity for created objects.. Resolves: rhbz#1254188.- Dontaud
  1741. 2880: it write access to inherited kdumpctl tmp files.. Resolves: rbhz
  1742. 28c0: #1156442.- Add interface to allow reading files in efivarfs - co
  1743. 2900: ntains Linux Kernel configuration options for UEFI systems (UEFI
  1744. 2940: Runtime Variables). Resolves: rhbz#1291801.- Label 8952 tcp por
  1745. 2980: t as nsd_control.. Resolves: rhbz#1293140.- Allow ipsec to use p
  1746. 29c0: am.. Resolves: rhbz#1315700.- Allow to log out to gdm after scre
  1747. 2a00: en was resized in session via vdagent..Resolves: rhbz#1249020.-
  1748. 2a40: Allow setrans daemon to read /proc/meminfo.. Resolves: rhbz#1316
  1749. 2a80: 804.- Allow systemd_networkd_t to write kmsg, when kernel was st
  1750. 2ac0: arted with following params: systemd.debug systemd.log_level=deb
  1751. 2b00: ug systemd.log_target=kmsg.Resolves: rhbz#1298151.- Label tcp po
  1752. 2b40: rt 5355 as llmnr-> Link-Local Multicast Name Resolution.Resolves
  1753. 2b80: : rhbz#1236579.- Add new selinux policy for systemd-resolved daw
  1754. 2bc0: mon..Resolves: rhbz#1236579.- Add interface ssh_getattr_server_k
  1755. 2c00: eys() interface..Resolves: rhbz#1306197.- Allow run sshd-keygen
  1756. 2c40: on second boot if first boot fails after some reason and content
  1757. 2c80: is not syncedon the disk. These changes are reflecting this com
  1758. 2cc0: mit in sshd. http://pkgs.fedoraproject.org/cgit/rpms/openssh.git
  1759. 2d00: /commit/?id=af94f46861844cbd6ba4162115039bebcc8f78ba rhbz#129910
  1760. 2d40: 6.Resolves: rhbz#1306197.- Allow systemd_notify_t to write to km
  1761. 2d80: sg_device_t when 'systemd.log_target=kmsg' option is used..Resol
  1762. 2dc0: ves: rhbz#1309417.- Remove bin_t label for /etc/ctdb/events.d/.
  1763. 2e00: We need to label this scripts as ctdb_exec_t..Resolves: rhbz#129
  1764. 2e40: 3788.- Prepare selinux-policy package for userspace release 2016
  1765. 2e80: -02-23. Resolves: rhbz#1305982.- Allow sending dbus msgs between
  1766. 2ec0: firewalld and system_cronjob domains. Resolves: rhbz#1284902.-
  1767. 2f00: Allow zabbix-agentd to connect to following tcp sockets. One of
  1768. 2f40: zabbix-agentd functions is get service status of ftp,http,innd,p
  1769. 2f80: op,smtp protocols..Resolves: rhbz#1242506.- Add new boolean tmp
  1770. 2fc0: reaper_use_cifs() to allow tmpreaper to run on local directories
  1771. 3000: being shared with Samba..Resolves: rhbz#1284972.- Add support f
  1772. 3040: or systemd-hwdb daemon.. Resolves: rhbz#1257940.- Add interface
  1773. 3080: fs_setattr_cifs_dirs().. Resolves: rhbz#1284972.- Add new SELinu
  1774. 30c0: x policy fo targetd daemon..Resolves: rhbz#1063714.- Add new SEL
  1775. 3100: inux policy fo ipmievd daemon..Resolves: rhbz#1083031.- Add new
  1776. 3140: SELinux policy fo hsqldb daemon..Resolves: rhbz#1083171.- Add ne
  1777. 3180: w SELinux policy for blkmapd daemon..Resolves: rhbz#1072997.- Al
  1778. 31c0: low p11-child to connect to apache ports..- Label /usr/sbin/lvml
  1779. 3200: ockd binary file as lvm_exec_t..Resolves: rhbz#1278028.- Add int
  1780. 3240: erface "lvm_manage_lock" to lvm policy..Resolves: rhbz#1063714.-
  1781. 3280: Allow openvswitch domain capability sys_rawio..Resolves: rhbz#1
  1782. 32c0: 278495.- Allow openvswitch to manage hugetlfs files and dirs..Re
  1783. 3300: solves: rhbz#1278495.- Add fs_manage_hugetlbfs_files() interface
  1784. 3340: ..Resolves: rhbz#1278495.- Allow smbcontrol domain to send sigch
  1785. 3380: ld to ctdbd domain..Resolves: #1293784.- Allow openvswitch read/
  1786. 33c0: write hugetlb filesystem..Resolves: #1278495.Allow hypervvssd to
  1787. 3400: list all mountpoints to have VSS live backup working correctly.
  1788. 3440: .Resolves:#1247880.- Revert Add missing labeling for /usr/libexe
  1789. 3480: c/abrt-hook-ccpp patch.Resolves: #1254188.- Allow search dirs in
  1790. 34c0: sysfs types in kernel_read_security_state..Resolves: #1254188.-
  1791. 3500: Fix kernel_read_security_state interface that source domain of
  1792. 3540: this interface can search sysctl_fs_t dirs..Resolves: #1254188.-
  1793. 3580: Add missing labeling for /usr/libexec/abrt-hook-ccpp as a part
  1794. 35c0: of #1245477 and #1242467 bugs.Resolves: #1254188.- We need allow
  1795. 3600: connect to xserver for all sandbox_x domain because we have one
  1796. 3640: type for all sandbox processes..Resolves:#1261938.- Remove labe
  1797. 3680: ling for modules_dep_t file contexts to have labeled them as mod
  1798. 36c0: ules_object_t..- Update files_read_kernel_modules() to contain m
  1799. 3700: odutils_read_module_deps_files() calling because module deps lab
  1800. 3740: eling could remain and it allows to avoid regressions..Resolves:
  1801. 3780: #1266928.- We need to require sandbox_web_type attribute in sand
  1802. 37c0: box_x_domain_template(). .Resolves: #1261938.- ipsec: The NM hel
  1803. 3800: per needs to read the SAs.Resolves: #1259786.- ipsec: Allow ipse
  1804. 3840: c management to create ptys.Resolves: #1259786.- Add temporary f
  1805. 3880: ixes for sandbox related to #1103622. It allows to run everythin
  1806. 38c0: g under one sandbox type..Resolves:#1261938.- Allow abrt_t domai
  1807. 3900: n to write to kernel msg device..Resolves: #1257828.- Allow rpcb
  1808. 3940: ind_t domain to change file owner and group.Resolves: #1265266.-
  1809. 3980: Allow smbcontrol to create a socket in /var/samba which uses fo
  1810. 39c0: r a communication with smbd, nmbd and winbind. .Resolves: #12564
  1811. 3a00: 59.- Allow dirsrv-admin script to read passwd file. Allow dirsrv
  1812. 3a40: -admin script to read httpd pid files. Label dirsrv-admin unit f
  1813. 3a80: ile and allow dirsrv-admin domains to use it..Resolves: #1230300
  1814. 3ac0: .- Allow qpid daemon to connect on amqp tcp port..Resolves: #126
  1815. 3b00: 1805.- Label /etc/ipa/nssdb dir as cert_t.Resolves:#1262718.- Do
  1816. 3b40: not provide docker policy files which is shipped by docker-seli
  1817. 3b80: nux.rpm.Resolves:#1262812.- Add labels for afs binaries: dafiles
  1818. 3bc0: erver, davolserver, salvageserver, dasalvager .Resolves: #119233
  1819. 3c00: 8.- Add lsmd_plugin_t sys_admin capability, Allow lsmd_plugin_t
  1820. 3c40: getattr from sysfs filesystem.. Resolves: #1238079.- Allow rhsmc
  1821. 3c80: ertd_t send signull to unconfined_service_t domains. .Resolves:
  1822. 3cc0: #1176078.- Remove file transition from snmp_manage_var_lib_dirs(
  1823. 3d00: ) interface which created snmp_var_lib_t dirs in var_lib_t..- Al
  1824. 3d40: low openhpid_t daemon to manage snmp files and dirs. .Resolves:
  1825. 3d80: #1243902.- Allow mdadm_t domain read/write to general ptys and u
  1826. 3dc0: nallocated ttys. .Resolves: #1073314.- Add interface unconfined_
  1827. 3e00: server_signull() to allow domains send signull to unconfined_ser
  1828. 3e40: vice_t. Resolves: #1176078.- Allow systemd-udevd to access netli
  1829. 3e80: nk_route_socket to change names for network interfaces without u
  1830. 3ec0: nconfined.pp module. It affects also MLS. .Resolves:#1250456.- F
  1831. 3f00: ix labeling for fence_scsi_check script.Resolves: #1255020.- All
  1832. 3f40: ow openhpid to read system state Allow openhpid to connect to tc
  1833. 3f80: p http port.. Resolves: #1244248.- Allow openhpid to read snmp v
  1834. 3fc0: ar lib files.. Resolves: #1243902.- Allow openvswitch_t domains
  1835. 13:00:16.825259 <= Recv data, 16384 bytes (0x4000)
  1836. 0000: read kernel dependencies due to openvswitch run modprobe.- Allow
  1837. 0040: unconfined_t domains to create /var/run/xtables.lock with iptab
  1838. 0080: les_var_run_t.Resolves: #1243403.- Remove bin_t label for /usr/s
  1839. 00c0: hare/cluster/fence_scsi_check\.pl .Resolves: #1255020.- Fix rege
  1840. 0100: xp in chronyd.fc file.Resolves: #1243764.- Allow passenger to ge
  1841. 0140: tattr filesystem xattr.Resolves: #1196555.- Label mdadm.conf.ana
  1842. 0180: ckbak as mdadm_conf_t file..Resolves: #1088904.- Revert "Allow p
  1843. 01c0: egasus_openlmi_storage_t create mdadm.conf.anacbak file in /etc.
  1844. 0200: ".- Allow watchdog execute fenced python script..Resolves: #1255
  1845. 0240: 020.- Added inferface watchdog_unconfined_exec_read_lnk_files().
  1846. 0280: - Remove labeling for /var/db/.*\.db as etc_t to label db files
  1847. 02c0: as system_db_t..Resolves: #1230877.- Allow watchdog execute fenc
  1848. 0300: ed python script. Resolves: #1255020.- Added inferface watchdog_
  1849. 0340: unconfined_exec_read_lnk_files().- Label /var/run/chrony-helper
  1850. 0380: dir as chronyd_var_run_t. Resolves: #1243764.- Allow dhcpc_t dom
  1851. 03c0: ain transition to chronyd_t Resolves: #1243764.- Fix postfix_spo
  1852. 0400: ol_maildrop_t,postfix_spool_flush_t contexts in postfix.fc file.
  1853. 0440: .Resolves: #1252442.- Allow exec pidof under hypervkvp domain..R
  1854. 0480: esolves: #1254870.- Allow hypervkvp daemon create connection to
  1855. 04c0: the system DBUS.Resolves: #1254870.- Allow openhpid_t to read sy
  1856. 0500: stem state..Resolves: #1244248.- Added labels for files provided
  1857. 0540: by rh-nginx18 collection.Resolves: #1249945.- Dontaudit block_s
  1858. 0580: uspend capability for ipa_helper_t, this is kernel bug. Allow ip
  1859. 05c0: a_helper_t capability net_admin. Allow ipa_helper_t to list /tmp
  1860. 0600: . Allow ipa_helper_t to read rpm db..Resolves: #1252968.- Allow
  1861. 0640: rhsmcertd exec rhsmcertd_var_run_t files and rhsmcerd_tmp_t file
  1862. 0680: s. This rules are in hide_broken_sympthons until we find better
  1863. 06c0: solution..Resolves: #1243431.- Allow abrt_dump_oops_t to read pr
  1864. 0700: oc_security_t files..- Allow abrt_dump_oops to signull all domai
  1865. 0740: ns Allow abrt_dump_oops to read all domains state Allow abrt_dum
  1866. 0780: p_oops to ptrace all domains.- Add interface abrt_dump_oops_domt
  1867. 07c0: rans().- Add mountpoint dontaudit access check in rhsmcertd poli
  1868. 0800: cy..Resolves: #1243431.- Allow samba_net_t to manage samba_var_t
  1869. 0840: sock files..Resolves: #1252937.- Allow chrome setcap to itself.
  1870. 0880: .Resolves: #1251996.- Allow httpd daemon to manage httpd_var_lib
  1871. 08c0: _t lnk_files..Resolves: #1253706.- Allow chronyd exec systemctl.
  1872. 0900: Resolves: #1243764.- Add inteface chronyd_signal Allow timemaste
  1873. 0940: r_t send generic signals to chronyd_t..Resolves: #1243764.- Adde
  1874. 0980: d interface fs_dontaudit_write_configfs_dirs.- Add label for ker
  1875. 09c0: nel module dep files in /usr/lib/modules.Resolves:#916635.- Allo
  1876. 0a00: w kernel_t domtrans to abrt_dump_oops_t.- Added to files_dontaud
  1877. 0a40: it_write_all_mountpoints intefface new dontaudit rule, that doma
  1878. 0a80: in included this interface dontaudit capability dac_override..-
  1879. 0ac0: Allow systemd-networkd to send logs to systemd-journald..Resolve
  1880. 0b00: s: #1236616.- Fix label on /var/tmp/kiprop_0.Resolves:#1220763.-
  1881. 0b40: Allow lldpad_t to getattr tmpfs_t..Resolves: #1246220.- Label /
  1882. 0b80: dev/shm/lldpad.* as lldapd_tmpfs_t.Resolves: #1246220.- Allow au
  1883. 0bc0: disp client to read system state..- Allow pcp_domain to manage p
  1884. 0c00: cp_var_lib_t lnk_files..Resolves: #1252341.- Label /var/run/xtab
  1885. 0c40: les.* as iptables_var_run_t.Resolves: #1243403.- Add interface t
  1886. 0c80: o read/write watchdog device.- Add labels for /dev/memory_bandwi
  1887. 0cc0: th and /dev/vhci. Thanks ssekidde.Resolves:#1210237.- Allow apcu
  1888. 0d00: psd_t to read /sys/devices .Resolves:#1189185.- Allow logrotate
  1889. 0d40: to reload services..Resolves: #1242453.- Allow openhpid use libw
  1890. 0d80: atchdog plugin. (Allow openhpid_t rw watchdog device).Resolves:
  1891. 0dc0: #1244260.- Allow openhpid liboa_soap plugin to read generic cert
  1892. 0e00: s..Resolves: #1244248.- Allow openhpid liboa_soap plugin to read
  1893. 0e40: resolv.conf file..Resolves: #1244248.- Label /usr/libexec/chron
  1894. 0e80: y-helper as chronyd_exec_t.- Allow chronyd_t to read dhcpc state
  1895. 0ec0: ..- Allow chronyd to execute mkdir command..- Allow mdadm to acc
  1896. 0f00: ess /dev/random and add support to create own files/dirs as mdad
  1897. 0f40: m_tmpfs_t..Resolves:#1073314.- Allow udev, lvm and fsadm to acce
  1898. 0f80: ss systemd-cat in /var/tmp/dracut if 'dracut -fv' is executed in
  1899. 0fc0: MLS..- Allow admin SELinu users to communicate with kernel_t. I
  1900. 1000: t is needed to access /run/systemd/journal/stdout if 'dracut -vf
  1901. 1040: ' is executed. We allow it for other SELinux users..- Allow sysa
  1902. 1080: dm to execute systemd-sysctl in the sysadm_t domain. It is neede
  1903. 10c0: d for ifup command in MLS mode..- Add fstools_filetrans_named_co
  1904. 1100: ntent_fsadm() and call it for named_filetrans_domain domains. We
  1905. 1140: need to be sure that /run/blkid is created with correct labelin
  1906. 1180: g..Resolves:#1183503.- Add support for /etc/sanlock which is wri
  1907. 11c0: table by sanlock daemon..Resolves:#1231377.- Allow useradd add h
  1908. 1200: omedir located in /var/lib/kdcproxy in ipa-server RPM scriplet..
  1909. 1240: Resolves:#1243775 .- Allow snapperd to pass data (one way only)
  1910. 1280: via pipe negotiated over dbus.Resolves:#1250550.- Allow lsmd als
  1911. 12c0: o setuid capability. Some commands need to executed under root p
  1912. 1300: rivs. Other commands are executed under unprivileged user..- All
  1913. 1340: ow openhpid to use libsnmp_bc plugin (allow read snmp lib files)
  1914. 1380: .. Resolves: #1243902.- Allow lsm_plugin_t to read sysfs, read
  1915. 13c0: hwdata, rw to scsi_generic_device. Resolves: #1238079.- Allow l
  1916. 1400: sm_plugin_t to rw raw_fixed_disk.. Resolves:#1238079.- Allow rh
  1917. 1440: smcertd to send signull to unconfined_service..- Allow httpd_sue
  1918. 1480: xec_t to read and write Apache stream sockets .Resolves: #124356
  1919. 14c0: 9.- Allow qpid to create lnk_files in qpid_var_lib_t.Resolves: #
  1920. 1500: 1247279.- Allow drbd to get attributes from filesystems..- Allow
  1921. 1540: redis to read kernel parameters..Resolves: #1209518.- Allow vir
  1922. 1580: t_qemu_ga_t domtrans to passwd_t.- Allow audisp_remote_t to star
  1923. 15c0: t power unit files domain to allow halt system..Resolves: #11867
  1924. 1600: 80.- Allow audisp_remote_t to read/write user domain pty..Resolv
  1925. 1640: es: #1186780.- Label /usr/sbin/chpasswd as passwd_exec_t..- Allo
  1926. 1680: w sysadm to administrate ldap environment and allow to bind ldap
  1927. 16c0: port to allow to setup an LDAP server (389ds)..Resolves:#122112
  1928. 1700: 1.- gnome_dontaudit_search_config() needs to be a part of optina
  1929. 1740: l_policy in pegasus.te.- Allow pcp_pmcd daemon to read postfix c
  1930. 1780: onfig files..- Allow pcp_pmcd daemon to search postfix spool dir
  1931. 17c0: s..Resolves: #1213740.- Added Booleans: pcp_read_generic_logs..R
  1932. 1800: esolves: #1213740.- Allow drbd to read configuration options use
  1933. 1840: d when loading modules..Resolves: #1134883.- Allow glusterd to m
  1934. 1880: anage nfsd and rpcd services..- Allow glusterd to communicate wi
  1935. 18c0: th cluster domains over stream socket..- glusterd call pcs utili
  1936. 1900: ty which calls find for cib.* files and runs pstree under gluste
  1937. 1940: rd. Dontaudit access to security files and update gluster boolea
  1938. 1980: n to reflect these changes..- Allow glusterd to manage nfsd and
  1939. 19c0: rpcd services..- Allow networkmanager to communicate via dbus w
  1940. 1a00: ith systemd_hostanmed. .Resolves: #1234954.- Allow stream connec
  1941. 1a40: t logrotate to prosody..- Add prosody_stream_connect() interface
  1942. 1a80: ..- httpd should be able to send signal/signull to httpd_suexec
  1943. 1ac0: _t, instead of httpd_suexec_exec_t..- Allow prosody to create ow
  1944. 1b00: n tmp files/dirs..Resolves:#1212498.- Allow networkmanager read
  1945. 1b40: rfcomm port..Resolves:#1212498.- Remove non exists label..- Fix
  1946. 1b80: *_admin intefaces where body is not consistent with header..- La
  1947. 1bc0: bel /usr/afs/ as afs_files_t, Allow afs_bosserver_t create afs_c
  1948. 1c00: onfig_t and afs_dbdir_t dirs under afs_files_t, Allow afs_bosser
  1949. 1c40: ver_t read kerberos config.- Remove non exits nfsd_ro_t label..-
  1950. 1c80: Make all interfaces related to openshift_cache_t as deprecated.
  1951. 1cc0: .- Add rpm_var_run_t label to rpm_admin header.- Add jabberd_loc
  1952. 1d00: k_t label to jabberd_admin header..- Add samba_unconfined_script
  1953. 1d40: _exec_t to samba_admin header..- inn daemon should create innd_l
  1954. 1d80: og_t objects in var_log_t instead of innd_var_run_t.- Fix ctdb p
  1955. 1dc0: olicy.- Add samba_signull_winbind().- Add samba_signull_unconfin
  1956. 1e00: ed_net().- Allow ctdbd_t send signull to samba_unconfined_net_t.
  1957. 1e40: .- Allow openshift_initrc_t to communicate with firewalld over d
  1958. 1e80: bus .Resolves:#1221326.- Allow gluster to connect to all ports.
  1959. 1ec0: It is required by random services executed by gluster..- Add int
  1960. 1f00: erfaces winbind_signull(), samba_unconfined_net_signull()..- Don
  1961. 1f40: taudit smbd_t block_suspend capability. This is kernel bug..- Al
  1962. 1f80: low ctdbd sending signull to process winbind, samba_unconfined_n
  1963. 1fc0: et, to. checking if processes exists..- Add tmpreaper boolean
  1964. 2000: s to use nfs_t and samba_share_t..- Fix path from /usr/sbin/redi
  1965. 2040: s-server to /usr/bin/redis-server.- Allow connect ypserv to port
  1966. 2080: map_port_t.- Fix paths in inn policy, Allow innd read innd_log_t
  1967. 20c0: dirs, Allow innd execute innd_etc_t files.- Add support for ope
  1968. 2100: nstack-nova-* packages.- Allow NetworkManager_t send signull to
  1969. 2140: dnssec_trigger_t..- Allow glusterd to execute showmount in the s
  1970. 2180: howmount domain..- Label swift-container-reconciler binary as sw
  1971. 21c0: ift_t..- Allow dnssec_trigger_t relabelfrom dnssec_trigger_var_r
  1972. 2200: un_t files..- Add cobbler_var_lib_t to "/var/lib/tftpboot/boot(/
  1973. 2240: .*)?".Resolves:#1213540.- Merge all nova_* labels under one nova
  1974. 2280: _t..- Add logging_syslogd_run_nagios_plugins boolean for rsyslog
  1975. 22c0: to allow transition to nagios unconfined plugins.Resolves:#1233
  1976. 2300: 550.- Allow dnssec_trigger_t create dnssec_trigger_tmp_t files i
  1977. 2340: n /var/tmp/.- Add support for oddjob based helper in FreeIPA..-
  1978. 2380: Add new boolean - httpd_run_ipa to allow httpd process to run IP
  1979. 23c0: A helper and dbus chat with oddjob..- Add nagios_domtrans_unconf
  1980. 2400: ined_plugins() interface..- Update mta_filetrans_named_content()
  1981. 2440: interface to cover more db files. .Resolves:#1167468.- Add back
  1982. 2480: ftpd_use_passive_mode boolean with fixed description..- Allow p
  1983. 24c0: mcd daemon stream connect to mysqld..- Allow pcp domains to conn
  1984. 2500: ect to own process using unix_stream_socket. .Resolves:#1213709.
  1985. 2540: - Allow abrt-upload-watch service to dbus chat with ABRT daemon
  1986. 2580: and fsetid capability to allow run reporter-upload correctly..-
  1987. 25c0: Add new boolean - httpd_run_ipa to allow httpd process to run I
  1988. 2600: PA helper and dbus chat with oddjob..- Add support for oddjob ba
  1989. 2640: sed helper in FreeIPA..- Allow dnssec_trigger_t create dnssec_tr
  1990. 2680: igger_tmp_t files in /var/tmp/.- Allow iptables to read ctdbd li
  1991. 26c0: b files..Resolves:#1224879.- Add systemd_networkd_t to nsswitch
  1992. 2700: domains..- Allow drbd_t write to fixed_disk_device. Reason: drbd
  1993. 2740: meta needs write to fixed_disk_device during initialization. .Re
  1994. 2780: solves:#1130675.- Allow NetworkManager write to sysfs. .- Fix cr
  1995. 27c0: on_system_cronjob_use_shares boolean to call fs interfaces which
  1996. 2800: contain only entrypoint permission..- Add cron_system_cronjob_u
  1997. 2840: se_shares boolean to allow system cronjob to be executed from sh
  1998. 2880: ares - NFS, CIFS, FUSE. It requires "entrypoint" permissios on n
  1999. 28c0: fs_t, cifs_t and fusefs_t SELinux types..- Allow NetworkManager
  2000. 2900: write to sysfs. .- Allow ctdb_t sending signull to smbd_t, for c
  2001. 2940: hecking if smbd process exists. .- Dontaudit apache to manage sn
  2002. 2980: mpd_var_lib_t files/dirs. .- Add interface snmp_dontaudit_manage
  2003. 29c0: _snmp_var_lib_files()..- Dontaudit mozilla_plugin_t cap. sys_ptr
  2004. 2a00: ace. .- Rename xodbc-connect port to xodbc_connect.- Allow ovsdb
  2005. 2a40: -server to connect on xodbc-connect and ovsdb tcp ports. .- Allo
  2006. 2a80: w iscsid write to fifo file kdumpctl_tmp_t. Appears when kdump g
  2007. 2ac0: enerates the initramfs during the kernel boot. .- Dontaudit chro
  2008. 2b00: me to read passwd file. .- nrpe needs kill capability to make gl
  2009. 2b40: uster moniterd nodes working. .Resolves:#1235587.- We allow can_
  2010. 2b80: exec() on ssh_keygen on gluster. But there is a transition defin
  2011. 2bc0: ed by init_initrc_domain() because we need to allow execute unco
  2012. 2c00: nfined services by glusterd. So ssh-keygen ends up with ssh_keyg
  2013. 2c40: en_t and we need to allow to manage /var/lib/glusterd/geo-replic
  2014. 2c80: ation/secret.pem..- Allow sshd to execute gnome-keyring if there
  2015. 2cc0: is configured pam_gnome_keyring.so..- Allow gnome-keyring execu
  2016. 2d00: ted by passwd to access /run/user/UID/keyring to change a passwo
  2017. 2d40: rd. .- Label gluster python hooks also as bin_t..- Allow gluster
  2018. 2d80: d to interact with gluster tools running in a user domain.- Add
  2019. 2dc0: glusterd_manage_lib_files() interface..- ntop reads /var/lib/nto
  2020. 2e00: p/macPrefix.db and it needs dac_override. It has setuid/setgid.
  2021. 2e40: .- Allow samba_t net_admin capability to make CIFS mount working
  2022. 2e80: ..- S30samba-start gluster hooks wants to search audit logs. Don
  2023. 2ec0: taudit it..Resolves:#1224879.- Allow glusterd to send generic si
  2024. 2f00: gnals to systemd_passwd_agent processes..- Allow glusterd to acc
  2025. 2f40: ess init scripts/units without defined policy.- Allow glusterd t
  2026. 2f80: o run init scripts..- Allow glusterd to execute /usr/sbin/xfs_db
  2027. 2fc0: in glusterd_t domain..Resolves:#1224879.- Calling cron_system_en
  2028. 3000: try() in pcp_domain_template needs to be a part of optional_poli
  2029. 3040: cy block..- Allow samba-net to access /var/lib/ctdbd dirs/files.
  2030. 3080: .- Allow glusterd to send a signal to smbd..- Make ctdbd as home
  2031. 30c0: manager to access also FUSE..- Allow glusterd to use geo-replic
  2032. 3100: ation gluster tool..- Allow glusterd to execute ssh-keygen..- Al
  2033. 3140: low glusterd to interact with cluster services..- Allow glusterd
  2034. 3180: to connect to the system DBUS for service (acquire_svc)..- Labe
  2035. 31c0: l /dev/log correctly..Resolves:#1230932.- Back port the latest F
  2036. 3200: 22 changes to RHEL7. It should fix most of RHEL7.2 bugs.- Add cg
  2037. 3240: dcbxd policy .Resolves:#1072493.- Fix ftp_homedir boolean.Resolv
  2038. 3280: e:#1097775.- Dontaudit ifconfig writing inhertited /var/log/plut
  2039. 32c0: o.log..- Allow cluster domain to dbus chat with systemd-logind..
  2040. 3300: Resolves:#1145215.- Dontaudit write access to inherited kdumpctl
  2041. 3340: tmp files.Resolves:#1156442.- Allow isnsd_t to communicate with
  2042. 3380: sssd.Resolves:#1167702.- Allow rwho_t to communicate with sssd.
  2043. 33c0: Resolves:#1167718.- Allow sblim_gatherd_t to communicate with ss
  2044. 3400: sd.Resolves:#1167732.- Allow pkcs_slotd_t to communicate with ss
  2045. 3440: sd.Resolves:#1167737.- Allow openvswitch_t to communicate with s
  2046. 3480: ssd.Resolves:#1167816.- Allow mysqld_safe_t to communicate with
  2047. 34c0: sssd.Resolves:#1167832.- Allow sshd_keygen_t to communicate with
  2048. 3500: sssd.Resolves:#1167840.- Add support for iprdbg logging files i
  2049. 3540: n /var/log..Resolves:#1174363.- Allow tmpreaper_t to manage ntp
  2050. 3580: log content.Resolves:#1176965.- Allow gssd_t to manage ssh keyri
  2051. 35c0: ng.Resolves:#1184791.- Allow httpd_sys_script_t to send system l
  2052. 3600: og messages.Resolves:#1185231.- Allow apcupsd_t to read /sys/dev
  2053. 3640: ices.Resolves:#1189185.- Allow dovecot_t sys_resource capability
  2054. 3680: .Resolves:#1191143.- Add support for mongod/mongos systemd unit
  2055. 36c0: files..Resolves:#1197038.- Add bacula fixes.- Added label mysqld
  2056. 3700: _etc_t for /etc/my.cnf.d/ dir..Resolves:#1203991.- Label /usr/li
  2057. 3740: bexec/postgresql-ctl as postgresql_exec_t. .- Add more restricti
  2058. 3780: on on entrypoint for unconfined domains..- Only allow semanage_t
  2059. 37c0: to be able to setenforce 0, no all domains that use selinux_sem
  2060. 3800: anage interface.- Allow all domains to read /dev/urandom. It is
  2061. 3840: needed by all apps/services linked to libgcrypt. There is no har
  2062. 3880: m to allow it by default..- Update policy/mls for sockets relate
  2063. 38c0: d to access perm. Rules were contradictory..- Add nagios_run_pnp
  2064. 3900: 4nagios and nagios_run_sudo booleans to allow r.un sudo from NRP
  2065. 3940: E utils scripts and allow run nagios in conjunction w.ith PNP4Na
  2066. 3980: gios..Resolves:#1201054.- Don't use deprecated userdom_manage_tm
  2067. 39c0: pfs_role() interface calliing and use userdom_manage_tmp_role()
  2068. 3a00: instead..- Update virt_read_pid_files() interface to allow read
  2069. 3a40: also symlinks with virt_var_run_t type.- Label /var/lib/tftpboot
  2070. 3a80: /aarch64(/.*)? and /var/lib/tftpboot/images2(/.*)?.- Add support
  2071. 3ac0: for iprdbg logging files in /var/log..- Add fixes to rhsmcertd_
  2072. 3b00: t.- Allow puppetagent_t to transfer firewalld messages over dbus
  2073. 3b40: .- Add support for /usr/libexec/mongodb-scl-helper RHSCL helper
  2074. 3b80: script..- Added label mysqld_etc_t for /etc/my.cnf.d/ dir..- Add
  2075. 3bc0: support for mongod/mongos systemd unit files..- cloudinit and r
  2076. 3c00: hsmcertd need to communicate with dbus.- Allow dovecot_t sys_res
  2077. 3c40: ource capability.- ALlow mongod execmem by default..- Update pol
  2078. 3c80: icy/mls for sockets. Rules were contradictory..Resolves:#1207133
  2079. 3cc0: .- Allow a user to login with different security level via ssh..
  2080. 3d00: - Update seutil_manage_config() interface..Resolves:#1185962.- A
  2081. 3d40: llow pki-tomcat relabel pki_tomcat_etc_rw_t..- Turn on docker_tr
  2082. 3d80: ansition_unconfined by default.- Allow virtd to list all mountpo
  2083. 3dc0: ints..Resolves:#1180713.- pkcsslotd_lock_t should be an alias fo
  2084. 3e00: r pkcs_slotd_lock_t..- Allow fowner capability for sssd because
  2085. 3e40: of selinux_child handling..- ALlow bind to read/write inherited
  2086. 3e80: ipsec pipes.- Allow hypervkvp to read /dev/urandom and read add
  2087. 3ec0: ition states/config files..- Allow gluster rpm scripletto create
  2088. 3f00: glusterd socket with correct labeling. This is a workaround unt
  2089. 3f40: il we get fix in glusterd..- Add glusterd_filetrans_named_pid()
  2090. 3f80: interface.- Allow radiusd to connect to radsec ports..- Allow se
  2091. 3fc0: tuid/setgid for selinux_child.- Allow lsmd plugin to connect to
  2092. 13:00:16.832536 <= Recv data, 16384 bytes (0x4000)
  2093. 0000: tcp/5988 by default..- Allow lsmd plugin to connect to tcp/5989
  2094. 0040: by default..- Update ipsec_manage_pid() interface..Resolves:#118
  2095. 0080: 4978.- Update ipsec_manage_pid() interface..Resolves:#1184978.-
  2096. 00c0: Allow ntlm_auth running in winbind_helper_t to access /dev/urand
  2097. 0100: om..- Add auditing support for ipsec..Resolves:#1182524.- Label
  2098. 0140: /ostree/deploy/rhel-atomic-host/deploy directory as system_conf_
  2099. 0180: t.- Allow netutils chown capability to make tcpdump working with
  2100. 01c0: -w.- Allow ipsec to execute _updown.netkey script to run unboun
  2101. 0200: d-control..- Allow neutron to read rpm DB..- Add additional fixe
  2102. 0240: s for hyperkvp. * creates new ifcfg-{name} file. * Runs hv_set_i
  2103. 0280: fconfig.sh, which does the following. * Copies ifcfg-{name} to /
  2104. 02c0: etc/sysconfig/network-scripts.- Allow svirt to read symbolic lin
  2105. 0300: ks in /sys/fs/cgroups labeled as tmpfs_t.- Add labeling for pace
  2106. 0340: maker.log..- Allow radius to connect/bind radsec ports..- Allow
  2107. 0380: pm-suspend running as virt_qemu_ga to read /var/log/pm-suspend.l
  2108. 03c0: og.- Allow virt_qemu_ga to dbus chat with rpm..- Update virt_re
  2109. 0400: ad_content() interface to allow read also char devices..- Allow
  2110. 0440: glance-registry to connect to keystone port..Resolves:#1181818.-
  2111. 0480: Allow sssd to send dbus all user domains..Resolves:#1172291.- A
  2112. 04c0: llow lsm plugin to read certificates..- Fix labeling for keyston
  2113. 0500: e CGI scripts..- Make snapperd back as unconfined domain..- Fix
  2114. 0540: bugs in interfaces discovered by sepolicy..- Allow slapd to read
  2115. 0580: /usr/share/cracklib/pw_dict.hwm..- Allow lsm plugins to connect
  2116. 05c0: to tcp/18700 by default..- Allow brltty mknod capability to all
  2117. 0600: ow create /var/run/brltty/vcsa..- Fix pcp_domain_template() inte
  2118. 0640: rface..- Fix conman.te..- Allow mon_fsstatd to read /proc/sys/fs
  2119. 0680: /binfmt_misc.- Allow glance-scrubber to connect tcp/9191..- Add
  2120. 06c0: missing setuid capability for sblim-sfcbd..- Allow pegasus ioctl
  2121. 0700: () on providers..- Add conman_can_network..- Allow chronyd to re
  2122. 0740: ad chrony conf files located in /run/timemaster/..- Allow radius
  2123. 0780: to bind on tcp/1813 port..- dontaudit block suspend access for
  2124. 07c0: openvpn_t .- Allow conman to create files/dirs in /tmp..- Update
  2125. 0800: xserver_rw_xdm_keys() interface to have 'setattr'..Resolves:#11
  2126. 0840: 72291 .- Allow sulogin to read /dev/urandom and /dev/random..- U
  2127. 0880: pdate radius port definition to have also tcp/18121.- Label pran
  2128. 08c0: dom as random_device_t..- Allow charon to manage files in /etc/s
  2129. 0900: trongimcv labeled as ipsec_conf_t..- Allow virt_qemu_ga_t to exe
  2130. 0940: cute kmod..- Add missing files_dontaudit_list_security_dirs() fo
  2131. 0980: r smbd_t in samba_export_all_ro boolean..- Add additionnal MLS a
  2132. 09c0: ttribute for oddjob_mkhomedir to create homedirs..Resolves:#1113
  2133. 0a00: 725.- Enable OpenStack cinder policy.- Add support for /usr/shar
  2134. 0a40: e/vdsm/daemonAdapter.- Add support for /var/run/gluster.- Remove
  2135. 0a80: old pkcsslotd.pp from minimum package.- Allow rlogind to use al
  2136. 0ac0: so rlogin ports..- Add support for /usr/libexec/ntpdate-wrapper.
  2137. 0b00: Label it as ntpdate_exec_t..- Allow bacula to connect also to p
  2138. 0b40: ostgresql..- Label /usr/libexec/tomcat/server as tomcat_exec_t.-
  2139. 0b80: Add support for /usr/sbin/ctdbd_wrapper.- Add support for /usr/
  2140. 0bc0: libexec/ppc64-diag/rtas_errd.- Allow rpm_script_roles to access
  2141. 0c00: system_mail_t.- Allow brltty to create /var/run/brltty.- Allow l
  2142. 0c40: smd plugin to access netlink_route_socket.- Allow smbcontrol to
  2143. 0c80: read passwd.- Add support for /usr/libexec/sssd/selinux_child an
  2144. 0cc0: d create sssd_selinux_manager_t domain for it.Resolves:#1140106.
  2145. 0d00: - Allow osad to execute rhn_check.- Allow load_policy to rw inhe
  2146. 0d40: rited sssd pipes because of selinux_child.- Allow admin SELinux
  2147. 0d80: users mounting / as private within a new mount namespace as root
  2148. 0dc0: in MLS.- Add additional fixes for su_restricted_domain_template
  2149. 0e00: to make moving to sysadm_r and trying to su working correctly.-
  2150. 0e40: Add additional booleans substitions.- Add seutil_dontaudit_acce
  2151. 0e80: ss_check_semanage_module_store() interface.Resolves:#1140106.- U
  2152. 0ec0: pdate to have all _systemctl() interface also init_reload_servic
  2153. 0f00: es()..- Dontaudit access check on SELinux module store for sssd.
  2154. 0f40: .- Add labeling for /sbin/iw..- Allow named_filetrans_domain to
  2155. 0f80: create ibus directory with correct labeling..- Allow radius to b
  2156. 0fc0: ind tcp/1812 radius port..- Dontaudit list user_tmp files for sy
  2157. 1000: stem_mail_t..- Label virt-who as virtd_exec_t..- Allow rhsmcertd
  2158. 1040: to send a null signal to virt-who running as virtd_t..- Add mis
  2159. 1080: sing alias for _content_rw_t..Resolves:#1089177.- Allow spamd to
  2160. 10c0: access razor-agent.log..- Add fixes for sfcb from libvirt-cim T
  2161. 1100: estOnly bug..- Allow NetworkManager stream connect on openvpn..-
  2162. 1140: Make /usr/bin/vncserver running as unconfined_service_t..- gett
  2163. 1180: y_t should be ranged in MLS. Then also local_login_t runs as ran
  2164. 11c0: ged domain..- Label /etc/docker/certs.d as cert_t..- Label /etc/
  2165. 1200: strongimcv as ipsec_conf_file_t..- Add support for /usr/bin/star
  2166. 1240: t-puppet-ca helper script.Resolves:#1160727.- Allow rpm scripts
  2167. 1280: to enable/disable transient systemd units..Resolves:#1154613 .-
  2168. 12c0: Make kpropdas nsswitch domain.Resolves:#1153561.- Make all glanc
  2169. 1300: e domain as nsswitch domains.Resolves:#1113281.- Allow selinux_c
  2170. 1340: hild running as sssd access check on /etc/selinux/targeted/modul
  2171. 1380: es/active.- Allow access checks on setfiles/load_policy/semanage
  2172. 13c0: _lock for selinux_child running as sssd_t.Resolves:#1140106.- Do
  2173. 1400: ntaudit access check on setfiles/load_policy for sssd_t..Resolve
  2174. 1440: s:#1140106.- Add kdump_rw_inherited_kdumpctl_tmp_pipes().Resolve
  2175. 1480: s:#1156442.- Make linuxptp services as unconfined..- Added new p
  2176. 14c0: olicy linuxptp..Resolves:#1149693.- Label keystone cgi files as
  2177. 1500: keystone_cgi_script_exec_t..Resolves:#1138424.- Make tuned as un
  2178. 1540: confined domain.- Allow guest to connect to libvirt using unix_s
  2179. 1580: tream_socket..- Allow all bus client domains to dbus chat with u
  2180. 15c0: nconfined_service_t..- Allow inetd service without own policy to
  2181. 1600: run in inetd_child_t which is unconfined domain..- Make opensm
  2182. 1640: as nsswitch domain to make it working with sssd..- Allow brctl t
  2183. 1680: o read meminfo..- Allow winbind-helper to execute ntlm_auth in t
  2184. 16c0: he caller domain..Resolves:#1160339.- Make plymouthd as nsswitch
  2185. 1700: domain to make it working with sssd..Resolves:#1160196.- Make d
  2186. 1740: rbd as nsswitch domain to make it working with sssd..- Make conm
  2187. 1780: an as nsswitch domain to make ipmitool.exp runing as conman_t wo
  2188. 17c0: rking..- Add support for /var/lib/sntp directory..- Add fixes to
  2189. 1800: allow docker to create more content in tmpfs ,and donaudit read
  2190. 1840: ing /proc.- Allow winbind to read usermodehelper.- Allow telepat
  2191. 1880: hy domains to execute shells and bin_t.- Allow gpgdomains to cre
  2192. 18c0: ate netlink_kobject_uevent_sockets.- Allow mongodb to bind to th
  2193. 1900: e mongo port and mongos to run as mongod_t.- Allow abrt to read
  2194. 1940: software raid state..- Allow nslcd to execute netstat..- Allow d
  2195. 1980: ovecot to create user's home directory when they log into IMAP..
  2196. 19c0: - Allow login domains to create kernel keyring with different le
  2197. 1a00: vel..- Allow modemmanger to connectto itself.Resolves:#1120152 .
  2198. 1a40: - Allow pki_tomcat to create link files in /var/lib/pki-ca..Reso
  2199. 1a80: lves:#1121744 .- varnishd needs to have fsetid capability.Resolv
  2200. 1ac0: es:#1125165.- Allow snapperd to dbus chat with system cron jobs.
  2201. 1b00: .Resolves:#1152447.- Allow dovecot to create user's home directo
  2202. 1b40: ry when they log into IMAP .Resolves:#1152773 .- Add labeling
  2203. 1b80: for /usr/sbin/haproxy-systemd-wrapper wrapper to make haproxy ru
  2204. 1bc0: nning haproxy_t..- ALlow listen and accept on tcp socket for ini
  2205. 1c00: t_t in MLS. Previously it was for xinetd_t. .- Allow nslcd to ex
  2206. 1c40: ecute netstat..- Add suppor for keepalived unconfined scripts an
  2207. 1c80: d allow keepalived to read all domain state and kill capability.
  2208. 1cc0: .- Allow nslcd to read /dev/urandom..- Add back kill permisiion
  2209. 1d00: for system class.Resolves:#1150011.- Add back kill permisiion fo
  2210. 1d40: r service class.Resolves:#1150011.- Make rhsmcertd_t also as dbu
  2211. 1d80: s domain..- Allow named to create DNS_25 with correct labeling..
  2212. 1dc0: - Add cloudform_dontaudit_write_cloud_log().- Call auth_use_nssw
  2213. 1e00: itch to apache to read/write cloud-init keys..- Allow cloud-init
  2214. 1e40: to dbus chat with certmonger..- Fix path to mon_statd_initrc_t
  2215. 1e80: script..- Allow all RHCS services to read system state..- Allow
  2216. 1ec0: dnssec_trigger_t to execute unbound-control in own domain..- ker
  2217. 1f00: nel_read_system_state needs to be called with type. Moved it to
  2218. 1f40: antivirus.if..- Added policy for mon_statd and mon_procd service
  2219. 1f80: s. BZ (1077821).- Allow opensm_t to read/write /dev/infiniband/u
  2220. 1fc0: mad1..- Allow mongodb to manage own log files..- Allow neutron c
  2221. 2000: onnections to system dbus..- Add support for /var/lib/swiftdirec
  2222. 2040: tory..- Allow nova-scheduler to read certs..- Allow openvpn to a
  2223. 2080: ccess /sys/fs/cgroup dir..- Allow openvpn to execute systemd-pa
  2224. 20c0: sswd-agent in systemd_passwd_agent_t to make openvpn working wi
  2225. 2100: th systemd..- Fix samba_export_all_ro/samba_export_all_rw boolea
  2226. 2140: ns to dontaudit search/read security files..- Add auth_use_nsswi
  2227. 2180: tch for portreserve to make it working with sssd..- automount po
  2228. 21c0: licy is non-base module so it needs to be called in optional blo
  2229. 2200: ck..- ALlow sensord to getattr on sysfs..- Label /usr/share/coro
  2230. 2240: sync/corosync as cluster_exec_t..- Allow lmsd_plugin to read pas
  2231. 2280: swd file. BZ(1093733).- Allow read antivirus domain all kernel s
  2232. 22c0: ysctls..- Allow mandb to getattr on file systems.- Allow nova-co
  2233. 2300: nsole to connect to mem_cache port..- Make sosreport as unconfin
  2234. 2340: ed domain..- Allow mondogdb to 'accept' accesses on the tcp_soc
  2235. 2380: ket port..- ALlow sanlock to send a signal to virtd_t..- Build a
  2236. 23c0: lso MLS policy.Resolves:#1138424.- Add back kill permisiion for
  2237. 2400: system class.- Allow iptables read fail2ban logs..- Fix radius l
  2238. 2440: abeled ports.- Add userdom_manage_user_tmpfs_files interface.- A
  2239. 2480: llow libreswan to connect to VPN via NM-libreswan..- Label 4101
  2240. 24c0: tcp port as brlp port.- fix dev_getattr_generic_usb_dev interfac
  2241. 2500: e.- Allow all domains to read fonts.- Make sure /run/systemd/gen
  2242. 2540: erator and system is labeled correctly on creation..- Dontaudit
  2243. 2580: aicuu to search home config dir. .- Make keystone_cgi_script_t d
  2244. 25c0: omain. .Resolves:#1138424.- Fix bug in drbd policy, .- Added sup
  2245. 2600: port for cpuplug. .- ALlow sanlock_t to read sysfs_t..- Added se
  2246. 2640: ndmail_domtrans_unconfined interface.- Fix broken interfaces.- r
  2247. 2680: adiusd wants to write own log files..- Label /usr/libexec/rhsmd
  2248. 26c0: as rhsmcertd_exec_t.- Allow rhsmcertd send signull to setroubles
  2249. 2700: hoot. .- Allow rhsmcertd manage rpm db. .- Added policy for blrt
  2250. 2740: ty. .- Fix keepalived policy.- Allow rhev-agentd dbus chat with
  2251. 2780: systemd-logind..- Allow keepalived manage snmp var lib sock file
  2252. 27c0: s..- Add support for /var/lib/graphite-web.- Allow NetworkManage
  2253. 2800: r to create Bluetooth SDP sockets.- It's going to do the the dis
  2254. 2840: covery for DUN service for modems with Bluez 5..- Allow swift to
  2255. 2880: connect to all ephemeral ports by default..- Allow sssd to read
  2256. 28c0: selinux config to add SELinux user mapping..- Allow lsmd to sea
  2257. 2900: rch own plguins..- Allow abrt to read /dev/memto generate an uni
  2258. 2940: que machine_id and uses sosuploader's algorithm based off dmide
  2259. 2980: code[1] fields..- ALlow zebra for user/group look-ups..- Allow n
  2260. 29c0: ova domains to getattr on all filesystems..- Allow collectd sys_
  2261. 2a00: ptrace and dac_override caps because of reading of /proc/%i/io f
  2262. 2a40: or several processes..- Allow pppd to connect to /run/sstpc/sstp
  2263. 2a80: c-nm-sstp-service-28025 over unix stream socket..- Allow rhnsd_t
  2264. 2ac0: to manage also rhnsd config symlinks..- ALlow user mail domains
  2265. 2b00: to create dead.letter..- Allow rabbitmq_t read rabbitmq_var_lib
  2266. 2b40: _t lnk files. .- Allow pki-tomcat to change SELinux object ident
  2267. 2b80: ity..- Allow radious to connect to apache ports to do OCSP check
  2268. 2bc0: .- Allow git cgi scripts to create content in /tmp.- Allow cockp
  2269. 2c00: it-session to do GSSAPI logins..- Allow sensord read in /proc .-
  2270. 2c40: Additional access required by usbmuxd.- Allow locate to look at
  2271. 2c80: files/directories without labels, and chr_file and blk_file on
  2272. 2cc0: non dev file systems.- Label /usr/lib/erlang/erts.*/bin files as
  2273. 2d00: bin_t.- Add files_dontaudit_access_check_home_dir() inteface..-
  2274. 2d40: Allow udev_t mounton udev_var_run_t dirs #(1128618).- Add syste
  2275. 2d80: md_networkd_var_run_t labeling for /var/run/systemd/netif and al
  2276. 2dc0: low systemd-networkd to manage it..- Add init_dontaudit_read_sta
  2277. 2e00: te() interface..- Add label for ~/.local/share/fonts.- Allow unc
  2278. 2e40: onfined_r to access unconfined_service_t..- Allow init to read a
  2279. 2e80: ll config files.- Add new interface to allow creation of file wi
  2280. 2ec0: th lib_t type.- Assign rabbitmq port..- Allow unconfined_service
  2281. 2f00: _t to dbus chat with all dbus domains.- Add new interfaces to ac
  2282. 2f40: cess users keys..- Allow domains to are allowed to mounton proc
  2283. 2f80: to mount on files as well as dirs.- Fix labeling for HOME_DIR/tm
  2284. 2fc0: p and HOME_DIR/.tmp directories..- Add a port definition for she
  2285. 3000: llinaboxd.- Label ~/tmp and ~/.tmp directories in user tmp dirs
  2286. 3040: as user_tmp_t.- Allow userdomains to stream connect to pcscd for
  2287. 3080: smart cards.- Allow programs to use pam to search through user_
  2288. 30c0: tmp_t dires (/tmp/.X11-unix).- Update to rawhide-contrib changes
  2289. 3100: .Resolves:#1123844.- Rebase to 3.13.1 which we have in Fedora21.
  2290. 3140: Resolves:#1128284.- Back port fixes from Fedora. Mainly OpenStac
  2291. 3180: k and Docker fixes.- Add policy-rhel-7.1-{base,contrib} patches.
  2292. 31c0: - Add support for us_cli ports.- Fix labeling for /var/run/user/
  2293. 3200: <UID>/gvfs.- add support for tcp/9697.- Additional rules require
  2294. 3240: d by openstack, needs backport to F20 and RHEL7.- Additional ac
  2295. 3280: cess required by docker.- ALlow motion to use tcp/8082 port.- Al
  2296. 32c0: low init_t to setattr/relabelfrom dhcp state files.- Dontaudit a
  2297. 3300: ntivirus domains read access on all security files by default.-
  2298. 3340: Add missing alias for old amavis_etc_t type.- Allow block_suspen
  2299. 3380: d cap for haproxy.- Additional fixes for instack overcloud.- Al
  2300. 33c0: low OpenStack to read mysqld_db links and connect to MySQL.- Rem
  2301. 3400: ove dup filename rules in gnome.te.- Allow sys_chroot cap for ht
  2302. 3440: tpd_t and setattr on httpd_log_t.- Allow iscsid to handle own un
  2303. 3480: it files.- Add iscsi_systemctl().- Allow mongod to create also s
  2304. 34c0: ock_files in /run with correct labeling.- Allow httpd to send si
  2305. 3500: gnull to apache script domains and don't audit leaks.- Allow rab
  2306. 3540: bitmq_beam to connect to httpd port.- Allow aiccu stream connect
  2307. 3580: to pcscd.- Allow dmesg to read hwdata and memory dev.- Allow al
  2308. 35c0: l freeipmi domains to read/write ipmi devices.- Allow sblim_sfcb
  2309. 3600: d to use also pegasus-https port.- Allow rabbitmq_epmd to manage
  2310. 3640: rabbit_var_log_t files.- Allow chronyd to read /sys/class/hwmon
  2311. 3680: /hwmon1/device/temp2_input.- Allow docker to status any unit fil
  2312. 36c0: e and allow it to start generic unit files.- Change hsperfdata_r
  2313. 3700: oot to have as user_tmp_t.Resolves:#1076523.- Fix Multiple same
  2314. 3740: specifications for /var/named/chroot/dev/zero.- Add labels for /
  2315. 3780: var/named/chroot_sdb/dev devices.- Add support for strongimcv.-
  2316. 37c0: Use kerberos_keytab_domains in auth_use_nsswitch.- Update auth_u
  2317. 3800: se_nsswitch to make all these types as kerberos_keytab_domain to
  2318. 3840: .- Allow net_raw cap for neutron_t and send sigkill to dnsmasq.-
  2319. 3880: Fix ntp_filetrans_named_content for sntp-kod file.- Add httpd_d
  2320. 38c0: bus_sssd boolean.- Dontaudit exec insmod in boinc policy.- Renam
  2321. 3900: e kerberos_keytab_domain to kerberos_keytab_domains.- Add kerber
  2322. 3940: os_keytab_domain().- Fix kerberos_keytab_template().- Make all d
  2323. 3980: omains which use kerberos as kerberos_keytab_domain.Resolves:#10
  2324. 39c0: 83670.- Allow kill capability to winbind_t.- varnishd wants chow
  2325. 3a00: n capability.- update ntp_filetrans_named_content() interface.-
  2326. 3a40: Add additional fixes for neutron_t. #1083335.- Dontaudit getattr
  2327. 3a80: on proc_kcore_t.- Allow pki_tomcat_t to read ipa lib files.- Al
  2328. 3ac0: low named_filetrans_domain to create /var/cache/ibus with correc
  2329. 3b00: t labelign.- Allow init_t run /sbin/augenrules.- Add dev_unmount
  2330. 3b40: _sysfs_fs and sysnet_manage_ifconfig_run interfaces.- Allow unpr
  2331. 3b80: iv SELinux user to use sandbox.- Add default label for /tmp/hspe
  2332. 3bc0: rfdata_root.- Add file subs also for /var/home.- Allow xauth_t t
  2333. 3c00: o read user_home_dir_t lnk_file.- Add labeling for lightdm-data.
  2334. 3c40: - Allow certmonger to manage ipa lib files.- Add support for /va
  2335. 3c80: r/lib/ipa.- Allow pegasus to getattr virt_content.- Added some n
  2336. 3cc0: ew rules to pcp policy.- Allow chrome_sandbox to execute config_
  2337. 3d00: home_t.- Add support for ABRT FAF.- Allow kdm to send signull to
  2338. 3d40: remote_login_t process.- Add gear policy.- Turn on gear_port_t.
  2339. 3d80: - Allow cgit to read gitosis lib files by default.- Allow vdagen
  2340. 3dc0: t to read xdm state.- Allow NM and fcoeadm to talk together over
  2341. 3e00: unix_dgram_socket.- Back port fixes for pegasus_openlmi_admin_t
  2342. 3e40: from rawhide.Resolves:#1080973.- Add labels for ostree.- Add SE
  2343. 3e80: Linux awareness for NM.- Label /usr/sbin/pwhistory_helper as upd
  2344. 3ec0: pwd_exec_t.- add gnome_append_home_config().- Allow thumb to app
  2345. 3f00: end GNOME config home files.- Allow rasdaemon to rw /dev/cpu//ms
  2346. 3f40: r.- fix /var/log/pki file spec.- make bacula_t as auth_nsswitch
  2347. 3f80: domain.- Identify pki_tomcat_cert_t as a cert_type.- Define spee
  2348. 3fc0: ch-dispater_exec_t as an application executable.- Add a new file
  2349. 13:00:16.839477 <= Recv data, 16384 bytes (0x4000)
  2350. 0000: context for /var/named/chroot/run directory.- update storage_fi
  2351. 0040: letrans_all_named_dev for sg* devices.- Allow auditctl_t to get
  2352. 0080: attr on all removeable devices.- Allow nsswitch_domains to strea
  2353. 00c0: m connect to nmbd.- Allow unprivusers to connect to memcached.-
  2354. 0100: label /var/lib/dirsrv/scripts-INSTANCE as bin_t.- Allow also unp
  2355. 0140: riv user to run vmtools.- Allow secadm to read /dev/urandom and
  2356. 0180: meminfo.Resolves:#1079250.- Add booleans to allow docker process
  2357. 01c0: es to use nfs and samba.- Add mdadm_tmpfs support.- Dontaudit ne
  2358. 0200: t_amdin for /usr/lib/jvm/java-1.7.0-openjdk-1.7.0.51-2.4.5.1.el7
  2359. 0240: .x86_64/jre-abrt/bin/java running as pki_tomcat_t.- Allow vmware
  2360. 0280: -user-sui to use user ttys.- Allow talk 2 users logged via conso
  2361. 02c0: le too.- Allow ftp services to manage xferlog_t.- Make all pcp d
  2362. 0300: omanis as unconfined for RHEL7.0 beucause of new policies.- allo
  2363. 0340: w anaconda to dbus chat with systemd-localed.- allow anaconda to
  2364. 0380: dbus chat with systemd-localed.- Add fixes for haproxy based on
  2365. 03c0: bperkins@redhat.com.- Allow cmirrord to make dmsetup working.-
  2366. 0400: Allow NM to execute arping.- Allow users to send messages throug
  2367. 0440: h talk.- Add userdom_tmp_role for secadm_t.- Add additional fixe
  2368. 0480: s for rtas_errd.- Fix transitions for tmp/tmpfs in rtas.te.- All
  2369. 04c0: ow rtas_errd to readl all sysctls.- Add support for /var/spool/r
  2370. 0500: hsm/debug.- Make virt_sandbox_use_audit as True by default.- All
  2371. 0540: ow svirt_sandbox_domains to ptrace themselves.- Allow docker con
  2372. 0580: tainers to manage /var/lib/docker content.- Allow docker to read
  2373. 05c0: tmpfs_t symlinks.- Allow sandbox svirt_lxc_net_t to talk to sys
  2374. 0600: log and to sssd over stream sockets.- Allow collectd to talk to
  2375. 0640: libvirt.- Allow chrome_sandbox to use leaked unix_stream_sockets
  2376. 0680: .- Dontaudit leaks of sockets into chrome_sandbox_t.- If you cre
  2377. 06c0: ate a cups directory in /var/cache then it should be labeled cup
  2378. 0700: s_rw_etc_t.- Run vmtools as unconfined domains.- Allow snort to
  2379. 0740: manage its log files.- Allow systemd_cronjob_t to be entered via
  2380. 0780: bin_t.- Allow procman to list doveconf_etc_t.- allow keyring da
  2381. 07c0: emon to create content in tmpfs directories.- Add proper labelli
  2382. 0800: ng for icedtea-web.- vpnc is creating content in networkmanager
  2383. 0840: var run directory.- Label sddm as xdm_exec_t to make KDE working
  2384. 0880: again.- Allow postgresql to read network state.- Allow java run
  2385. 08c0: ning as pki_tomcat to read network sysctls.- Fix cgroup.te to al
  2386. 0900: low cgred to read cgconfig_etc_t.- Allow beam.smp to use ephemer
  2387. 0940: al ports.- Allow winbind to use the nis to authenticate password
  2388. 0980: s.- Make rtas_errd_t as unconfined domain for F20.It needs addit
  2389. 09c0: ional fixes. It runs rpm at least..- Allow net_admin cap for fen
  2390. 0a00: ce_virtd running as fenced_t.- Make abrt-java-connector working
  2391. 0a40: .- Make cimtest script 03_defineVS.py of ComputerSystem group wo
  2392. 0a80: rking.- Fix git_system_enable_homedirs boolean.- Allow munin mai
  2393. 0ac0: l plugins to read network systcl.- Allow vmtools_helper_t to exe
  2394. 0b00: cute bin_t.- Add support for /usr/share/joomla.- /var/lib/contai
  2395. 0b40: ners should be labeled as openshift content for now.- Allow dock
  2396. 0b80: er domains to talk to the login programs, to allow a process to
  2397. 0bc0: login into the container.- Allow install_t do dbus chat with NM.
  2398. 0c00: - Fix interface names in anaconda.if.- Add install_t for anacond
  2399. 0c40: a. A new type is a part of anaconda policy.- sshd to read networ
  2400. 0c80: k sysctls.- Allow zabbix to send system log msgs.- Allow init_t
  2401. 0cc0: to stream connect to ipsec.Resolves:#1060775.- Add docker_connec
  2402. 0d00: t_any boolean.- Allow unpriv SELinux users to dbus chat with fir
  2403. 0d40: ewalld.- Add lvm_write_metadata().- Label /etc/yum.reposd dir as
  2404. 0d80: system_conf_t. Should be safe because system_conf_t is base_ro_
  2405. 0dc0: file_type.- Allow pegasus_openlmi_storage_t to write lvm metadat
  2406. 0e00: a.- Add hide_broken_symptoms for kdumpgui because of systemd bug
  2407. 0e40: .- Make kdumpgui_t as unconfined domain.Resolves:#1044299.- Allo
  2408. 0e80: w docker to connect to tcp/5000.- Allow numad to write scan_slee
  2409. 0ec0: p_millisecs.- Turn on entropyd_use_audio boolean by default.- Al
  2410. 0f00: low cgred to read /etc/cgconfig.conf because it contains templat
  2411. 0f40: es used together with rules from /etc/cgrules.conf..- Allow lscp
  2412. 0f80: u running as rhsmcertd_t to read /proc/sysinfo.- Fix label on ir
  2413. 0fc0: clogs in the homedir.- Allow kerberos_keytab_domain domains to m
  2414. 1000: anage keys until we get sssd fix.- Allow postgresql to use ldap.
  2415. 1040: - Add missing syslog-conn port.- Add support for /dev/vmcp and /
  2416. 1080: dev/sclp.Resolves:#1069310.- Modify xdm_write_home to allow crea
  2417. 10c0: te files/links in /root with xdm_home_.- Allow virt domains to r
  2418. 1100: ead network state.Resolves:#1072019.- Added pcp rules.- dontaudi
  2419. 1140: t openshift_cron_t searching random directories, should be back
  2420. 1180: ported to RHEL6.- clean up ctdb.te.- Allow ctdbd to connect own
  2421. 11c0: ports.- Fix samba_export_all_rw booleanto cover also non securit
  2422. 1200: y dirs.- Allow swift to exec rpm in swift_t and allow to create
  2423. 1240: tmp files/dirs.- Allow neutron to create /run/netns with correct
  2424. 1280: labeling.- Allow certmonger to list home dirs.- Change userdom_
  2425. 12c0: use_user_inherited_ttys to userdom_use_user_ttys for systemd-tty
  2426. 1300: -ask.- Add sysnet_filetrans_named_content_ifconfig() interface.-
  2427. 1340: Allow ctdbd to connect own ports.- Fix samba_export_all_rw bool
  2428. 1380: eanto cover also non security dirs.- Allow swift to exec rpm in
  2429. 13c0: swift_t and allow to create tmp files/dirs.- Allow neutron to cr
  2430. 1400: eate /run/netns with correct labeling.- Allow kerberos keytab do
  2431. 1440: mains to manage sssd/userdomain keys".- Allow to run ip cmd in n
  2432. 1480: eutron_t domain.- Allow block_suspend cap2 for systemd-logind an
  2433. 14c0: d rw dri device.- Add labeling for /usr/libexec/nm-libreswan-ser
  2434. 1500: vice.- Allow locallogin to rw xdm key to make Virtual Terminal l
  2435. 1540: ogin providing smartcard pin working.- Add xserver_rw_xdm_keys()
  2436. 1580: .- Allow rpm_script_t to dbus chat also with systemd-located.- F
  2437. 15c0: ix ipa_stream_connect_otpd().- update lpd_manage_spool() interfa
  2438. 1600: ce.- Allow krb5kdc to stream connect to ipa-otpd.- Add ipa_strea
  2439. 1640: m_connect_otpd() interface.- Allow vpnc to unlink NM pids.- Add
  2440. 1680: networkmanager_delete_pid_files().- Allow munin plugins to acces
  2441. 16c0: s unconfined plugins.- update abrt_filetrans_named_content to co
  2442. 1700: ver /var/spool/debug.- Label /var/spool/debug as abrt_var_cache_
  2443. 1740: t.- Allow rhsmcertd to connect to squid port.- Make docker_trans
  2444. 1780: ition_unconfined as optional boolean.- Allow certmonger to list
  2445. 17c0: home dirs.- Make snapperd as unconfined domain and add additiona
  2446. 1800: l fixes for it.- Remove nsplugin.pp module on upgrade.- Add snap
  2447. 1840: perd_home_t for HOME_DIR/.snapshots directory.- Make sosreport a
  2448. 1880: s unconfined domain.- Allow sosreport to execute grub2-probe.- A
  2449. 18c0: llow NM to manage hostname config file.- Allow systemd_timedated
  2450. 1900: _t to dbus chat with rpm_script_t.- Allow lsmd plugins to connec
  2451. 1940: t to http/ssh/http_cache ports by default.- Add lsmd_plugin_conn
  2452. 1980: ect_any boolean.- Allow mozilla_plugin to attempt to set capabil
  2453. 19c0: ities.- Allow lsdm_plugins to use tcp_socket.- Dontaudit mozilla
  2454. 1a00: plugin from getattr on /proc or /sys.- Dontaudit use of the key
  2455. 1a40: ring by the services in a sandbox.- Dontaudit attempts to sys_pt
  2456. 1a80: race caused by running ps for mysqld_safe_t.- Allow rabbitmq_bea
  2457. 1ac0: m to connect to jabber_interserver_port.- Allow logwatch_mail_t
  2458. 1b00: to transition to qmail_inject and queueu.- Added new rules to pc
  2459. 1b40: p policy.- Allow vmtools_helper_t to change role to system_r.- A
  2460. 1b80: llow NM to dbus chat with vmtools.- Fix couchdb_manage_files() t
  2461. 1bc0: o allow manage couchdb conf files.- Add support for /var/run/red
  2462. 1c00: is.sock.- dontaudit gpg trying to use audit.- Allow consolekit t
  2463. 1c40: o create log directories and files.- Fix vmtools policy to allow
  2464. 1c80: user roles to access vmtools_helper_t.- Allow block_suspend cap
  2465. 1cc0: 2 for ipa-otpd.- Allow pkcsslotd to read users state.- Add ioctl
  2466. 1d00: to init_dontaudit_rw_stream_socket.- Add systemd_hostnamed_mana
  2467. 1d40: ge_config() interface.- Remove transition for temp dirs created
  2468. 1d80: by init_t.- gdm-simple-slave uses use setsockopt.- sddm-greater
  2469. 1dc0: is a xdm type program.- Add lvm_read_metadata().- Allow auditadm
  2470. 1e00: to search /var/log/audit dir.- Add lvm_read_metadata() interfac
  2471. 1e40: e.- Allow confined users to run vmtools helpers.- Fix userdom_co
  2472. 1e80: mmon_user_template().- Generic systemd unit scripts do write che
  2473. 1ec0: ck on /.- Allow init_t to create init_tmp_t in /tmp.This is for
  2474. 1f00: temporary content created by generic unit files.- Add additional
  2475. 1f40: fixes needed for init_t and setup script running in generic uni
  2476. 1f80: t files.- Allow general users to create packet_sockets.- added c
  2477. 1fc0: onnlcli port.- Add init_manage_transient_unit() interface.- Allo
  2478. 2000: w init_t (generic unit files) to manage rpc state date as we had
  2479. 2040: it for initrc_t.- Fix userdomain.te to require passwd class.- d
  2480. 2080: evicekit_power sends out a signal to all processes on the messag
  2481. 20c0: e bus when power is going down.- Dontaudit rendom domains listin
  2482. 2100: g /proc and hittping system_map_t.- Dontauit leaks of var_t into
  2483. 2140: ifconfig_t.- Allow domains that transition to ssh_t to manipula
  2484. 2180: te its keyring.- Define oracleasm_t as a device node.- Change to
  2485. 21c0: handle /root as a symbolic link for os-tree.- Allow sysadm_t to
  2486. 2200: create packet_socket, also move some rules to attributes.- Add
  2487. 2240: label for openvswitch port.- Remove general transition for files
  2488. 2280: /dirs created in /etc/mail which got etc_aliases_t label..- Allo
  2489. 22c0: w postfix_local to read .forward in pcp lib files.- Allow pegasu
  2490. 2300: s_openlmi_storage_t to read lvm metadata.- Add additional fixes
  2491. 2340: for pegasus_openlmi_storage_t.- Allow bumblebee to manage debugf
  2492. 2380: s.- Make bumblebee as unconfined domain.- Allow snmp to read etc
  2493. 23c0: _aliases_t.- Allow lscpu running in pegasus_openlmi_storage_t to
  2494. 2400: read /dev/mem.- Allow pegasus_openlmi_storage_t to read /proc/1
  2495. 2440: /environ.- Dontaudit read gconf files for cupsd_config_t.- make
  2496. 2480: vmtools as unconfined domain.- Add vmtools_helper_t for helper s
  2497. 24c0: cripts. Allow vmtools shutdonw a host and run ifconfig..- Allow
  2498. 2500: collectd_t to use a mysql database.- Allow ipa-otpd to perform D
  2499. 2540: NS name resolution.- Added new policy for keepalived.- Allow ope
  2500. 2580: nlmi-service provider to manage transitient units and allow stre
  2501. 25c0: am connect to sssd.- Add additional fixes new pscs-lite+polkit s
  2502. 2600: upport.- Add labeling for /run/krb5kdc.- Change w3c_validator_tm
  2503. 2640: p_t to httpd_w3c_validator_tmp_t in F20.- Allow pcscd to read us
  2504. 2680: ers proc info.- Dontaudit smbd_t sending out random signuls.- Ad
  2505. 26c0: d boolean to allow openshift domains to use nfs.- Allow w3c_vali
  2506. 2700: dator to create content in /tmp.- zabbix_agent uses nsswitch.- A
  2507. 2740: llow procmail and dovecot to work together to deliver mail.- All
  2508. 2780: ow spamd to execute files in homedir if boolean turned on.- Allo
  2509. 27c0: w openvswitch to listen on port 6634.- Add net_admin capability
  2510. 2800: in collectd policy.- Fixed snapperd policy.- Fixed bugsfor pcp p
  2511. 2840: olicy.- Allow dbus_system_domains to be started by init.- Fixed
  2512. 2880: some interfaces.- Add kerberos_keytab_domain attribute.- Fix sna
  2513. 28c0: pperd_conf_t def.- Addopt corenet rules for unbound-anchor to rp
  2514. 2900: m_script_t.- Allow runuser to send send audit messages..- Allow
  2515. 2940: postfix-local to search .forward in munin lib dirs.- Allow udisk
  2516. 2980: s to connect to D-Bus.- Allow spamd to connect to spamd port.- F
  2517. 29c0: ix syntax error in snapper.te.- Dontaudit osad to search gconf h
  2518. 2a00: ome files.- Allow rhsmcertd to manage /etc/sysconf/rhn director.
  2519. 2a40: - Fix pcp labeling to accept /usr/bin for all daemon binaries.-
  2520. 2a80: Fix mcelog_read_log() interface.- Allow iscsid to manage iscsi l
  2521. 2ac0: ib files.- Allow snapper domtrans to lvm_t. Add support for /etc
  2522. 2b00: /snapper and allow snapperd to manage it..- Make tuned_t as unco
  2523. 2b40: nfined domain for RHEL7.0.- Allow ABRT to read puppet certs.- Ad
  2524. 2b80: d sys_time capability for virt-ga.- Allow gemu-ga to domtrans to
  2525. 2bc0: hwclock_t.- Allow additional access for virt_qemu_ga_t processe
  2526. 2c00: s to read system clock and send audit messages.- Fix some AVCs i
  2527. 2c40: n pcp policy.- Add to bacula capability setgid and setuid and al
  2528. 2c80: low to bind to bacula ports.- Changed label from rhnsd_rw_conf_t
  2529. 2cc0: to rhnsd_conf_t.- Add access rhnsd and osad to /etc/sysconfig/r
  2530. 2d00: hn.- drbdadm executes drbdmeta.- Fixes needed for docker.- Allow
  2531. 2d40: epmd to manage /var/log/rabbitmq/startup_err file.- Allow beam.
  2532. 2d80: smp connect to amqp port.- Modify xdm_write_home to allow create
  2533. 2dc0: also links as xdm_home_t if the boolean is on true.- Allow init
  2534. 2e00: _t to manage pluto.ctl because of init_t instead of initrc_t.- A
  2535. 2e40: llow systemd_tmpfiles_t to manage all non security files on the
  2536. 2e80: system.- Added labels for bacula ports.- Fix label on /dev/vfio/
  2537. 2ec0: vfio.- Add kernel_mounton_messages() interface.- init wants to m
  2538. 2f00: anage lock files for iscsi.- Added osad policy.- Allow postfix t
  2539. 2f40: o deliver to procmail.- Allow bumblebee to seng kill signal to x
  2540. 2f80: server.- Allow vmtools to execute /usr/bin/lsb_release.- Allow d
  2541. 2fc0: ocker to write system net ctrls.- Add support for rhnsd unit fil
  2542. 3000: e.- Add dbus_chat_session_bus() interface.- Add dbus_stream_conn
  2543. 3040: ect_session_bus() interface.- Fix pcp.te.- Fix logrotate_use_nfs
  2544. 3080: boolean.- Add lot of pcp fixes found in RHEL7.- fix labeling fo
  2545. 30c0: r pmie for pcp pkg.- Change thumb_t to be allowed to chat/connec
  2546. 3100: t with session bus type.- Allow call renice in mlocate.- Add log
  2547. 3140: rotate_use_nfs boolean.- Allow setroubleshootd to read rpc sysct
  2548. 3180: l.- Turn on bacula, rhnsd policy.- Add support for rhnsd unit fi
  2549. 31c0: le.- Add dbus_chat_session_bus() interface.- Add dbus_stream_con
  2550. 3200: nect_session_bus() interface.- Fix logrotate_use_nfs boolean.- A
  2551. 3240: dd lot of pcp fixes found in RHEL7.- fix labeling for pmie for p
  2552. 3280: cp pkg.- Change thumb_t to be allowed to chat/connect with sessi
  2553. 32c0: on bus type.- Allow call renice in mlocate.- Add logrotate_use_n
  2554. 3300: fs boolean.- Allow setroubleshootd to read rpc sysctl.- Fixes fo
  2555. 3340: r *_admin interfaces.- Add pegasus_openlmi_storage_var_run_t typ
  2556. 3380: e def.- Add support for /var/run/openlmi-storage.- Allow tuned t
  2557. 33c0: o create syslog.conf with correct labeling.- Add httpd_dontaudit
  2558. 3400: _search_dirs boolean.- Add support for winbind.service.- ALlow a
  2559. 3440: lso fail2ban-client to read apache logs.- Allow vmtools to getat
  2560. 3480: tr on all fs.- Add support for dey_sapi port.- Add logging_filet
  2561. 34c0: rans_named_conf().- Allow passwd_t to use ipc_lock, so that it c
  2562. 3500: an change the password in gnome-keyring.- Update snapper policy.
  2563. 3540: - Allow domains to append rkhunter lib files.- Allow snapperd to
  2564. 3580: getattr on all fs.- Allow xdm to create /var/gdm with correct l
  2565. 35c0: abeling.- Add label for snapper.log.- Allow fail2ban-client to r
  2566. 3600: ead apache log files.- Allow thumb_t to execute dbus-daemon in t
  2567. 3640: humb_t.- Allow gdm to create /var/gdm with correct labeling.- Al
  2568. 3680: low domains to append rkhunterl lib files. #1057982.- Allow syst
  2569. 36c0: emd_tmpfiles_t net_admin to communicate with journald.- Add inte
  2570. 3700: rface to getattr on an isid_type for any type of file.- Update l
  2571. 3740: ibs_filetrans_named_content() to have support for /usr/lib/debug
  2572. 3780: directory.- Allow initrc_t domtrans to authconfig if unconfined
  2573. 37c0: is enabled.- Allow docker and mount on devpts chr_file.- Allow
  2574. 3800: docker to transition to unconfined_t if boolean set.- init calli
  2575. 3840: ng needs to be optional in domain.te.- Allow uncofined domain ty
  2576. 3880: pes to handle transient unit files.- Fix labeling for vfio devic
  2577. 38c0: es.- Allow net_admin capability and send system log msgs.- Allow
  2578. 3900: lldpad send dgram to NM.- Add networkmanager_dgram_send().- rkh
  2579. 3940: unter_var_lib_t is correct type.- Back port pcp policy from rawh
  2580. 3980: ide.- Allow openlmi-storage to read removable devices.- Allow sy
  2581. 39c0: stem cron jobs to manage rkhunter lib files.- Add rkhunter_manag
  2582. 3a00: e_lib_files().- Fix ftpd_use_fusefs boolean to allow manage also
  2583. 3a40: symlinks.- Allow smbcontrob block_suspend cap2.- Allow slpd to
  2584. 3a80: read network and system state info.- Allow NM domtrans to iscsid
  2585. 3ac0: _t if iscsiadm is executed.- Allow slapd to send a signal itself
  2586. 3b00: .- Allow sslget running as pki_ra_t to contact port 8443, the se
  2587. 3b40: cure port of the CA..- Fix plymouthd_create_log() interface.- Ad
  2588. 3b80: d rkhunter policy with files type definition for /var/lib/rkhunt
  2589. 3bc0: er until it is fixed in rkhunter package.- Add mozilla_plugin_ex
  2590. 3c00: ec_t for /usr/lib/firefox/plugin-container.- Allow postfix and c
  2591. 3c40: yrus-imapd to work out of box.- Allow fcoemon to talk with unpri
  2592. 3c80: v user domain using unix_stream_socket.- Dontaudit domains that
  2593. 3cc0: are calling into journald to net_admin.- Add rules to allow vmto
  2594. 3d00: ols to do what it does.- snapperd is D-Bus service.- Allow OpenL
  2595. 3d40: MI PowerManagement to call 'systemctl --force reboot'.- Add hapr
  2596. 3d80: oxy_connect_any boolean.- Allow haproxy also to use http cache p
  2597. 3dc0: ort by default.Resolves:#1058248.- Allow apache to write to the
  2598. 3e00: owncloud data directory in /var/www/html....- Allow consolekit t
  2599. 3e40: o create log dir.- Add support for icinga CGI scripts.- Add supp
  2600. 3e80: ort for icinga.- Allow kdumpctl_t to create kdump lock file.Reso
  2601. 3ec0: lves:#1055634.- Allow kdump to create lnk lock file.- Allow nscd
  2602. 3f00: _t block_suspen capability.- Allow unconfined domain types to ma
  2603. 3f40: nage own transient unit file.- Allow systemd domains to handle t
  2604. 3f80: ransient init unit files.- Add interfaces to handle transient.-
  2605. 3fc0: Add cron unconfined role support for uncofined SELinux user.- Ca
  2606. 13:00:16.845992 <= Recv data, 16384 bytes (0x4000)
  2607. 0000: ll corenet_udp_bind_all_ports() in milter.te.- Allow fence_virtd
  2608. 0040: to connect to zented port.- Fix header for mirrormanager_admin(
  2609. 0080: ).- Allow dkim-milter to bind udp ports.- Allow milter domains t
  2610. 00c0: o send signull itself.- Allow block_suspend for yum running as m
  2611. 0100: ock_t.- Allow beam.smp to manage couchdb files.- Add couchdb_man
  2612. 0140: age_files().- Add labeling for /var/log/php_errors.log.- Allow b
  2613. 0180: umblebee to stream connect to xserver.- Allow bumblebee to send
  2614. 01c0: a signal to xserver.- gnome-thumbnail to stream connect to bumbl
  2615. 0200: ebee.- Allow xkbcomp running as bumblebee_t to execute bin_t.-
  2616. 0240: Allow logrotate to read squid.conf.- Additional rules to get doc
  2617. 0280: ker and lxc to play well with SELinux.- Allow bumbleed to connec
  2618. 02c0: t to xserver port.- Allow pegasus_openlmi_storage_t to read hwda
  2619. 0300: ta.- Allow init_t to work on transitient and snapshot unit files
  2620. 0340: .- Add logging_manage_syslog_config().- Update sysnet_dns_name_r
  2621. 0380: esolve() to allow connect to dnssec por.- Allow pegasus_openlmi_
  2622. 03c0: storage_t to read hwdata.Resolves:#1031721.- Fix rhcs_rw_cluster
  2623. 0400: _tmpfs().- Allow fenced_t to bind on zented udp port.- Added pol
  2624. 0440: icy for vmtools.- Fix mirrormanager_read_lib_files().- Allow mir
  2625. 0480: romanager scripts running as httpd_t to manage mirrormanager pid
  2626. 04c0: files.- Allow ctdb to create sock files in /var/run/ctdb.- Add
  2627. 0500: sblim_filetrans_named_content() interface.- Allow rpm scritplets
  2628. 0540: to create /run/gather with correct labeling.- Allow gnome keyri
  2629. 0580: ng domains to create gnome config dirs.- Dontaudit read/write to
  2630. 05c0: init stream socket for lsmd_plugin_t.- Allow automount to read
  2631. 0600: nfs link files.- Allow lsm plugins to read/write lsmd stream soc
  2632. 0640: ket.- Allow certmonger to connect ldap port to make IPA CA certi
  2633. 0680: ficate renewal working..- Add also labeling for /var/run/ctdb.-
  2634. 06c0: Add missing labeling for /var/lib/ctdb.- ALlow tuned to manage s
  2635. 0700: yslog.conf. Should be fixed in tuned. #1030446.- Dontaudit hyper
  2636. 0740: vkvp to search homedirs.- Dontaudit hypervkvp to search admin ho
  2637. 0780: medirs.- Allow hypervkvp to execute bin_t and ifconfig in the ca
  2638. 07c0: ller domain.- Dontaudit xguest_t to read ABRT conf files.- Add a
  2639. 0800: brt_dontaudit_read_config().- Allow namespace-init to getattr on
  2640. 0840: fs.- Add thumb_role() also for xguest.- Add filename transition
  2641. 0880: s to create .spamassassin with correct labeling.- Allow apache d
  2642. 08c0: omain to read mirrormanager pid files.- Allow domains to read/wr
  2643. 0900: ite shm and sem owned by mozilla_plugin_t.- Allow alsactl to sen
  2644. 0940: d a generic signal to kernel_t.- Add back rpm_run() for unconfin
  2645. 0980: ed user.- Add missing files_create_var_lib_dirs().- Fix typo in
  2646. 09c0: ipsec.te.- Allow passwd to create directory in /var/lib.- Add fi
  2647. 0a00: lename trans also for event21.- Allow iptables command to read /
  2648. 0a40: dev/rand.- Add sigkill capabilityfor ipsec_t.- Add filename tran
  2649. 0a80: sitions for bcache devices.- Add additional rules to create /var
  2650. 0ac0: /log/cron by syslogd_t with correct labeling.- Add give everyone
  2651. 0b00: full access to all key rings.- Add default lvm_var_run_t label
  2652. 0b40: for /var/run/multipathd.- Fix log labeling to have correct defau
  2653. 0b80: lt label for them after logrotate.- Labeled ~/.nv/GLCache as bei
  2654. 0bc0: ng gstreamer output.- Allow nagios_system_plugin to read mrtg li
  2655. 0c00: b files.- Add mrtg_read_lib_files().- Call rhcs_rw_cluster_tmpfs
  2656. 0c40: for dlm_controld.- Make authconfing as named_filetrans domain.-
  2657. 0c80: Allow virsh to connect to user process using stream socket.- Al
  2658. 0cc0: low rtas_errd to read rand/urand devices and add chown capabilit
  2659. 0d00: y.- Fix labeling from /var/run/net-snmpd to correct /var/run/net
  2660. 0d40: -snmp.Resolves:#1051497.- Add also chown cap for abrt_upload_wat
  2661. 0d80: ch_t. It already has dac_override.- Allow sosreport to manage rh
  2662. 0dc0: smcertd pid files.- Add rhsmcertd_manage_pid_files().- Allow als
  2663. 0e00: o setgid cap for rpc.gssd.- Dontaudit access check for abrt on c
  2664. 0e40: ert_t.- Allow pegasus_openlmi_system providers to dbus chat with
  2665. 0e80: systemd-logind.- Fix semanage import handling in spec file.- Ad
  2666. 0ec0: d default lvm_var_run_t label for /var/run/multipathd.Resolves:#
  2667. 0f00: 1051430.- Fix log labeling to have correct default label for the
  2668. 0f40: m after logrotate.- Add files_write_root_dirs.- Add new openflow
  2669. 0f80: port label for 6653/tcp and 6633/tcp.- Add xserver_manage_xkb_l
  2670. 0fc0: ibs().- Label tcp/8891 as milter por.- Allow gnome_manage_generi
  2671. 1000: c_cache_files also create cache_home_t files.- Fix aide.log labe
  2672. 1040: ling.- Fix log labeling to have correct default label for them a
  2673. 1080: fter logrotate.- Allow mysqld-safe write access on /root to make
  2674. 10c0: mysqld working.- Allow sosreport domtrans to prelikn.- Allow Op
  2675. 1100: envSwitch to connec to openflow ports.- Allow NM send dgram to l
  2676. 1140: ldpad.- Allow hyperv domains to execute shell.- Allow lsmd plugi
  2677. 1180: ns stream connect to lsmd/init.- Allow sblim domains to create /
  2678. 11c0: run/gather with correct labeling.- Allow httpd to read ldap cert
  2679. 1200: s.- Allow cupsd to send dbus msgs to process with different MLS
  2680. 1240: level.- Allow bumblebee to stream connect to apmd.- Allow bumble
  2681. 1280: bee to run xkbcomp.- Additional allow rules to get libvirt-lxc c
  2682. 12c0: ontainers working with docker.- Additional allow rules to get li
  2683. 1300: bvirt-lxc containers working with docker.- Allow docker to getat
  2684. 1340: tr on itself.- Additional rules needed for sandbox apps.- Allow
  2685. 1380: mozilla_plugin to set attributes on usb device if use_spice bool
  2686. 13c0: ean enabled.- httpd should be able to send signal/signull to htt
  2687. 1400: pd_suexec_t.- Add more fixes for neturon. Domtrans to dnsmasq, i
  2688. 1440: ptables. Make neutron as filenamtrans domain..- Add neutron fixe
  2689. 1480: s.- Allow sshd to write to all process levels in order to change
  2690. 14c0: passwd when running at a level.- Allow updpwd_t to downgrade /e
  2691. 1500: tc/passwd file to s0, if it is not running with this range.- All
  2692. 1540: ow apcuspd_t to status and start the power unit file.- Allow ude
  2693. 1580: v to manage kdump unit file.- Added new interface modutils_donta
  2694. 15c0: udit_exec_insmod.- Allow cobbler to search dhcp_etc_t directory.
  2695. 1600: - systemd_systemctl needs sys_admin capability.- Allow sytemd_tm
  2696. 1640: pfiles_t to delete all directories.- passwd to create gnome-keyr
  2697. 1680: ing passwd socket.- Add missing zabbix_var_lib_t type.- Fix file
  2698. 16c0: name trans for zabbixsrv in zabbix.te.- Allow fprintd_t to send
  2699. 1700: syslog messages.- Add zabbix_var_lib_t for /var/lib/zabbixsrv,
  2700. 1740: also allow zabix to connect to smtp port.- Allow mozilla plugin
  2701. 1780: to chat with policykit, needed for spice.- Allow gssprozy to cha
  2702. 17c0: nge user and gid, as well as read user keyrings.- Label upgrades
  2703. 1800: directory under /var/www as httpd_sys_rw_content_t, add other f
  2704. 1840: iletrans rules to label content correctly.- Allow polipo to conn
  2705. 1880: ect to http_cache_ports.- Allow cron jobs to manage apache var l
  2706. 18c0: ib content.- Allow yppassword to manage the passwd_file_t.- Allo
  2707. 1900: w showall_t to send itself signals.- Allow cobbler to restart dh
  2708. 1940: cpc, dnsmasq and bind services.- Allow certmonger to manage home
  2709. 1980: cert files.- Add userdom filename trans for user mail domains.-
  2710. 19c0: Allow apcuspd_t to status and start the power unit file.- Allow
  2711. 1a00: cgroupdrulesengd to create content in cgoups directories.- Allo
  2712. 1a40: w smbd_t to signull cluster.- Allow gluster daemon to create fif
  2713. 1a80: o files in glusterd_brick_t and sock_file in glusterd_var_lib_t.
  2714. 1ac0: - Add label for /var/spool/cron.aquota.user.- Allow sandbox_x do
  2715. 1b00: mains to use work with the mozilla plugin semaphore.- Added new
  2716. 1b40: policy for speech-dispatcher.- Added dontaudit rule for insmod_e
  2717. 1b80: xec_t in rasdaemon policy.- Updated rasdaemon policy.- Allow sy
  2718. 1bc0: stem_mail_t to transition to postfix_postdrop_t.- Clean up mirro
  2719. 1c00: rmanager policy.- Allow virt_domains to read cert files, needs b
  2720. 1c40: ackport to RHEL7.- Allow sssd to read systemd_login_var_run_t.-
  2721. 1c80: Allow irc_t to execute shell and bin-t files:.- Add new access f
  2722. 1cc0: or mythtv.- Allow rsync_t to manage all non auth files.- allow m
  2723. 1d00: odemmanger to read /dev/urand.- Allow sandbox apps to attempt to
  2724. 1d40: set and get capabilties.- Add labeling for /var/lib/servicelog/
  2725. 1d80: servicelog.db-journal.- Add support for freeipmi port.- Add sysa
  2726. 1dc0: dm_u_default_contexts.- Make new type to texlive files in homedi
  2727. 1e00: r.- Allow subscription-manager running as sosreport_t to manage
  2728. 1e40: rhsmcertd.- Additional fixes for docker.te.- Remove ability to d
  2729. 1e80: o mount/sys_admin by default in virt_sandbox domains.- New rules
  2730. 1ec0: required to run docker images within libivrt.- Add label for ~/
  2731. 1f00: .cvsignore.- Change mirrormanager to be run by cron.- Add mirror
  2732. 1f40: manager policy.- Fixed bumblebee_admin() and mip6d_admin().- Add
  2733. 1f80: log support for sensord.- Fix typo in docker.te.- Allow amanda
  2734. 1fc0: to do backups over UDP.- Allow bumblebee to read /etc/group and
  2735. 2000: clean up bumblebee.te.- type transitions with a filename not all
  2736. 2040: owed inside conditionals.- Don't allow virt-sandbox tools to use
  2737. 2080: netlink out of the box, needs back port to RHEL7.- Make new typ
  2738. 20c0: e to texlive files in homedir.- Allow freeipmi_ipmidetectd_t to
  2739. 2100: use freeipmi port.- Update freeipmi_domain_template().- Allow jo
  2740. 2140: urnalctl running as ABRT to read /run/log/journal.- Allow NM to
  2741. 2180: read dispatcher.d directory.- Update freeipmi policy.- Type tran
  2742. 21c0: sitions with a filename not allowed inside conditionals.- Allow
  2743. 2200: tor to bind to hplip port.- Make new type to texlive files in ho
  2744. 2240: medir.- Allow zabbix_agent to transition to dmidecode.- Add rule
  2745. 2280: s for docker.- Allow sosreport to send signull to unconfined_t.-
  2746. 22c0: Add virt_noatsecure and virt_rlimitinh interfaces.- Fix labelin
  2747. 2300: g in thumb.fc to add support for /usr/lib64/tumbler-1/tumblerddd
  2748. 2340: support for freeipmi port.- Add sysadm_u_default_contexts.- Add
  2749. 2380: logging_read_syslog_pid().- Fix userdom_manage_home_texlive() i
  2750. 23c0: nterface.- Make new type to texlive files in homedir.- Add filen
  2751. 2400: ame transitions for /run and /lock links.- Allow virtd to inheri
  2752. 2440: t rlimit information.Resolves:#975358.- Change labeling for /usr
  2753. 2480: /libexec/nm-dispatcher.action to NetworkManager_exec_t.Resolves:
  2754. 24c0: #1039879.- Add labeling for /usr/lib/systemd/system/mariadb.serv
  2755. 2500: ice.- Allow hyperv_domain to read sysfs.- Fix ldap_read_certs()
  2756. 2540: interface to allow acess also link files.- Add support for /usr/
  2757. 2580: libexec/pegasus/cmpiLMI_Journald-cimprovagt.- Allow tuned to run
  2758. 25c0: modprobe.- Allow portreserve to search /var/lib/sss dir.- Add S
  2759. 2600: ELinux support for the teamd package contains team network devic
  2760. 2640: e control daemon..- Dontaudit access check on /proc for bumblebe
  2761. 2680: e.- Bumblebee wants to load nvidia modules.- Fix rpm_named_filet
  2762. 26c0: rans_log_files and wine.te.- Add conman policy for rawhide.- DRM
  2763. 2700: master and input event devices are used by the TakeDevice API.
  2764. 2740: - Clean up bumblebee policy.- Update pegasus_openlmi_storage_t p
  2765. 2780: olicy.- Add freeipmi_stream_connect() interface.- Allow logwatch
  2766. 27c0: read madm.conf to support RAID setup.- Add raid_read_conf_files
  2767. 2800: () interface.- Allow up2date running as rpm_t create up2date log
  2768. 2840: file with rpm_log_t labeling.- add rpm_named_filetrans_log_file
  2769. 2880: s() interface.- Allow dkim-milter to create files/dirs in /tmp.-
  2770. 28c0: update freeipmi policy.- Add policy for freeipmi services.- Add
  2771. 2900: ed rdisc_admin and rdisc_systemctl interfaces.- opensm policy cl
  2772. 2940: ean up.- openwsman policy clean up.- ninfod policy clean up.- Ad
  2773. 2980: ded new policy for ninfod.- Added new policy for openwsman.- Add
  2774. 29c0: ed rdisc_admin and rdisc_systemctl interfaces.- Fix kernel_donta
  2775. 2a00: udit_access_check_proc().- Add support for /dev/uhid.- Allow sul
  2776. 2a40: ogin to get the attributes of initctl and sys_admin cap.- Add ke
  2777. 2a80: rnel_dontaudit_access_check_proc().- Fix dev_rw_ipmi_dev().- Fix
  2778. 2ac0: new interface in devices.if.- DRM master and input event device
  2779. 2b00: s are used by the TakeDevice API.- add dev_rw_inherited_dri() a
  2780. 2b40: nd dev_rw_inherited_input_dev().- Added support for default conm
  2781. 2b80: an port.- Add interfaces for ipmi devices.- Allow sosreport to s
  2782. 2bc0: end a signal to ABRT.- Add proper aliases for pegasus_openlmi_se
  2783. 2c00: rvice_exec_t and pegasus_openlmi_service_t.- Label /usr/sbin/htc
  2784. 2c40: acheclean as httpd_exec_t.Resolves:#1037529.- Added support for
  2785. 2c80: rdisc unit file.- Add antivirus_db_t labeling for /var/lib/clama
  2786. 2cc0: v-unofficial-sigs.- Allow runuser running as logrotate connectio
  2787. 2d00: ns to system DBUS.- Label bcache devices as fixed_disk_device_t.
  2788. 2d40: - Allow systemctl running in ipsec_mgmt_t to access /usr/lib/sys
  2789. 2d80: temd/system/ipsec.service.- Label /usr/lib/systemd/system/ipsec.
  2790. 2dc0: service as ipsec_mgmt_unit_file_t.- Add back setpgid/setsched fo
  2791. 2e00: r sosreport_t.- Added fix for clout_init to transition to rpm_sc
  2792. 2e40: ript_t (dwalsh@redhat.com).- Dontaudit openshift domains trying
  2793. 2e80: to use rawip_sockets, this is caused by a bad check in the kerne
  2794. 2ec0: l..- Allow git_system_t to read git_user_content if the git_syst
  2795. 2f00: em_enable_homedirs boolean is turned on.- Add lsmd_plugin_t for
  2796. 2f40: lsm plugins.- Allow dovecot-deliver to search mountpoints.- Add
  2797. 2f80: labeling for /etc/mdadm.conf.- Allow opelmi admin providers to d
  2798. 2fc0: bus chat with init_t.- Allow sblim domain to read /dev/urandom a
  2799. 3000: nd /dev/random.- Allow apmd to request the kernel load modules.-
  2800. 3040: Add glusterd_brick_t type.- label mate-keyring-daemon with gkey
  2801. 3080: ringd_exec_t.- Add plymouthd_create_log().- Dontaudit leaks from
  2802. 30c0: openshift domains into mail domains, needs back port to RHEL6.-
  2803. 3100: Allow sssd to request the kernel loads modules.- Allow gpg_agen
  2804. 3140: t to use ssh-add.- Allow gpg_agent to use ssh-add.- Dontaudit ac
  2805. 3180: cess check on /root for myslqd_safe_t.- Allow ctdb to getattr on
  2806. 31c0: al filesystems.- Allow abrt to stream connect to syslog.- Allow
  2807. 3200: dnsmasq to list dnsmasq.d directory.- Watchdog opens the raw so
  2808. 3240: cket.- Allow watchdog to read network state info.- Dontaudit acc
  2809. 3280: ess check on lvm lock dir.- Allow sosreport to send signull to s
  2810. 32c0: etroubleshootd.- Add setroubleshoot_signull() interface.- Fix ld
  2811. 3300: ap_read_certs() interface.- Allow sosreport all signal perms.- A
  2812. 3340: llow sosreport to run systemctl.- Allow sosreport to dbus chat w
  2813. 3380: ith rpm.- Add glusterd_brick_t files type.- Allow zabbix_agentd
  2814. 33c0: to read all domain state.- Clean up rtas.if.- Allow smoltclient
  2815. 3400: to execute ldconfig.- Allow sosreport to request the kernel to l
  2816. 3440: oad a module.- Fix userdom_confined_admin_template().- Add back
  2817. 3480: exec_content boolean for secadm, logadm, auditadm.- Fix files_fi
  2818. 34c0: letrans_system_db_named_files() interface.- Allow sulogin to get
  2819. 3500: attr on /proc/kcore.- Add filename transition also for servicelo
  2820. 3540: g.db-journal.- Add files_dontaudit_access_check_root().- Add lvm
  2821. 3580: _dontaudit_access_check_lock() interface.- Allow watchdog to rea
  2822. 35c0: d /etc/passwd.- Allow browser plugins to connect to bumblebee.-
  2823. 3600: New policy for bumblebee and freqset.- Add new policy for mip6d
  2824. 3640: daemon.- Add new policy for opensm daemon.- Allow condor domains
  2825. 3680: to read/write condor_master udp_socket.- Allow openshift_cron_t
  2826. 36c0: to append to openshift log files, label /var/log/openshift.- Ad
  2827. 3700: d back file_pid_filetrans for /var/run/dlm_controld.- Allow smbd
  2828. 3740: _t to use inherited tmpfs content.- Allow mcelog to use the /dev
  2829. 3780: /cpu device.- sosreport runs rpcinfo.- sosreport runs subscripti
  2830. 37c0: on-manager.- Allow staff_t to run frequency command.- Allow syst
  2831. 3800: emd_tmpfiles to relabel log directories.- Allow staff_t to read
  2832. 3840: xserver_log file.- Label hsperfdata_root as tmp_t.- More sosrepo
  2833. 3880: rt fixes to make ABRT working.- Fix files_dontaudit_unmount_all_
  2834. 38c0: mountpoints().- Add support for 2608-2609 tcp/udp ports.- Should
  2835. 3900: allow domains to lock the terminal device.- More fixes for user
  2836. 3940: config files to make crond_t running in userdomain.- Add back d
  2837. 3980: isable/reload/enable permissions for system class.- Fix manage_s
  2838. 39c0: ervice_perms macro.- We need to require passwd rootok.- Fix zebr
  2839. 3a00: a.fc.- Fix dnsmasq_filetrans_named_content() interface.- Allow a
  2840. 3a40: ll sandbox domains create content in svirt_home_t.- Allow zebra
  2841. 3a80: domains also create zebra_tmp_t files in /tmp.- Add support for
  2842. 3ac0: new zebra services:isisd,babeld. Add systemd support for zebra s
  2843. 3b00: ervices..- Fix labeling on neutron and remove transition to icon
  2844. 3b40: fig_t.- abrt needs to read mcelog log file.- Fix labeling on dns
  2845. 3b80: masq content.- Fix labeling on /etc/dnsmasq.d.- Allow glusterd t
  2846. 3bc0: o relabel own lib files.- Allow sandbox domains to use pam_rooto
  2847. 3c00: k, and dontaudit attempts to unmount file systems, this is cause
  2848. 3c40: d by a bug in systemd.- Allow ipc_lock for abrt to run journalct
  2849. 3c80: l.- Fix config.tgz.- Fix passenger_stream_connect interface.- se
  2850. 3cc0: troubleshoot_fixit wants to read network state.- Allow procmail_
  2851. 3d00: t to connect to dovecot stream sockets.- Allow cimprovagt servic
  2852. 3d40: e providers to read network states.- Add labeling for /var/run/m
  2853. 3d80: ariadb.- pwauth uses lastlog() to update system's lastlog.- Allo
  2854. 3dc0: w account provider to read login records.- Add support for texli
  2855. 3e00: ve2013.- More fixes for user config files to make crond_t runnin
  2856. 3e40: g in userdomain.- Add back disable/reload/enable permissions for
  2857. 3e80: system class.- Fix manage_service_perms macro.- Allow passwd_t
  2858. 3ec0: to connect to gnome keyring to change password.- Update mls conf
  2859. 3f00: ig files to have cronjobs in the user domains.- Remove access ch
  2860. 3f40: ecks that systemd does not actually do.- Add support for yubikey
  2861. 3f80: in homedir.- Add support for upd/3052 port.- Allow apcupsd to u
  2862. 3fc0: se PowerChute Network Shutdown.- Allow lsmd to execute various l
  2863. 13:00:16.853457 <= Recv data, 16384 bytes (0x4000)
  2864. 0000: smplugins.- Add labeling also for /etc/watchdog\.d where are wat
  2865. 0040: chdog scripts located too.- Update gluster_export_all_rw boolean
  2866. 0080: to allow relabel all base file types.- Allow x86_energy_perf t
  2867. 00c0: ool to modify the MSR.- Fix /var/lib/dspam/data labeling.- Add f
  2868. 0100: iles_relabel_base_file_types() interface.- Allow netlabel-config
  2869. 0140: to read passwd.- update gluster_export_all_rw boolean to allow
  2870. 0180: relabel all base file types caused by lsetxattr().- Allow x86_en
  2871. 01c0: ergy_perf tool to modify the MSR.- Fix /var/lib/dspam/data labe
  2872. 0200: ling.- Allow pegasus to domtrans to mount_t.- Add labeling for u
  2873. 0240: nconfined scripts in /usr/libexec/watchdog/scripts.- Add support
  2874. 0280: for unconfined watchdog scripts.- Allow watchdog to manage own
  2875. 02c0: log files.- Add label only for redhat.repo instead of /etc/yum.r
  2876. 0300: epos.d. But probably we will need to switch for the directory..-
  2877. 0340: Label /etc/yum.repos.d as system_conf_t.- Use sysnet_filetrans_
  2878. 0380: named_content in udev.te instead of generic transition for net_c
  2879. 03c0: onf_t.- Allow dac_override for sysadm_screen_t.- Allow init_t to
  2880. 0400: read ipsec_conf_t as we had it for initrc_t. Needed by ipsec un
  2881. 0440: it file..- Allow netlabel-config to read meminfo.- Add interface
  2882. 0480: to allow docker to mounton file_t.- Add new interface to exec u
  2883. 04c0: nlabeled files.- Allow lvm to use docker semaphores.- Setup tran
  2884. 0500: sitons for .xsessions-errors.old.- Change labels of files in /va
  2885. 0540: r/lib/*/.ssh to transition properly.- Allow staff_t and user_t t
  2886. 0580: o look at logs using journalctl.- pluto wants to manage own log
  2887. 05c0: file.- Allow pluto running as ipsec_t to create pluto.log.- Fix
  2888. 0600: alias decl in corenetwork.te.in.- Add support for fuse.glusterfs
  2889. 0640: .- Allow dmidecode to read/write /run/lock/subsys/rhsmcertd.- Al
  2890. 0680: low rhsmcertd to manage redhat.repo which is now labeled as syst
  2891. 06c0: em.conf. Allow rhsmcertd to manage all log files..- Additional a
  2892. 0700: ccess for docker.- Added more rules to sblim policy.- Fix kdumpg
  2893. 0740: ui_run_bootloader boolean.- Allow dspam to connect to lmtp port.
  2894. 0780: - Included sfcbd service into sblim policy.- rhsmcertd wants to
  2895. 07c0: manaage /etc/pki/consumer dir.- Add kdumpgui_run_bootloader bool
  2896. 0800: ean.- Add support for /var/cache/watchdog.- Remove virt_domain a
  2897. 0840: ttribute for virt_qemu_ga_unconfined_t.- Fixes for handling libv
  2898. 0880: irt containes.- Dontaudit attempts by mysql_safe to write conten
  2899. 08c0: t into /.- Dontaudit attempts by system_mail to modify network c
  2900. 0900: onfig.- Allow dspam to bind to lmtp ports.- Add new policy to al
  2901. 0940: low staff_t and user_t to look at logs using journalctl.- Allow
  2902. 0980: apache cgi scripts to list sysfs.- Dontaudit attempts to write/d
  2903. 09c0: elete user_tmp_t files.- Allow all antivirus domains to manage a
  2904. 0a00: lso own log dirs.- Allow pegasus_openlmi_services_t to stream co
  2905. 0a40: nnect to sssd_t.- Add missing permission checks for nscd.- Fix a
  2906. 0a80: lias decl in corenetwork.te.in.- Add support for fuse.glusterfs.
  2907. 0ac0: - Add file transition rules for content created by f5link.- Rena
  2908. 0b00: me quantum_port information to neutron.- Allow all antivirus dom
  2909. 0b40: ains to manage also own log dirs.- Rename quantum_port informati
  2910. 0b80: on to neutron.- Allow pegasus_openlmi_services_t to stream conne
  2911. 0bc0: ct to sssd_t.- Allow sysadm_t to read login information.- Allow
  2912. 0c00: systemd_tmpfiles to setattr on var_log_t directories.- Udpdate M
  2913. 0c40: akefile to include systemd_contexts.- Add systemd_contexts.- Add
  2914. 0c80: fs_exec_hugetlbfs_files() interface.- Add daemons_enable_cluste
  2915. 0cc0: r_mode boolean.- Fix rsync_filetrans_named_content().- Add rhcs_
  2916. 0d00: read_cluster_pid_files() interface.- Update rhcs.if with additio
  2917. 0d40: nal interfaces from RHEL6.- Fix rhcs_domain_template() to not cr
  2918. 0d80: eate run dirs with cluster_var_run_t.- Allow glusterd_t to mount
  2919. 0dc0: on glusterd_tmp_t.- Allow glusterd to unmout al filesystems.- Al
  2920. 0e00: low xenstored to read virt config.- Add label for swift_server.l
  2921. 0e40: ock and make add filetrans_named_content to make sure content ge
  2922. 0e80: ts created with the correct label.- Allow mozilla_plugin_t to mm
  2923. 0ec0: ap hugepages as an executable.- Add back userdom_security_admin_
  2924. 0f00: template() interface and use it for sysadm_t if sysadm_secadm.pp
  2925. 0f40: .- Allow sshd_t to read openshift content, needs backport to RHE
  2926. 0f80: L6.5.- Label /usr/lib64/sasl2/libsasldb.so.3.0.0 as textrel_shli
  2927. 0fc0: b_t.- Make sur kdump lock is created with correct label if kdump
  2928. 1000: ctl is executed.- gnome interface calls should always be made wi
  2929. 1040: thin an optional_block.- Allow syslogd_t to connect to the syslo
  2930. 1080: g_tls port.- Add labeling for /var/run/charon.ctl socket.- Add k
  2931. 10c0: dump_filetrans_named_content().- Allo setpgid for fenced_t.- All
  2932. 1100: ow setpgid and r/w cluster tmpfs for fenced_t.- gnome calls shou
  2933. 1140: ld always be within optional blocks.- wicd.pid should be labeled
  2934. 1180: as networkmanager_var_run_t.- Allow sys_resource for lldpad.- A
  2935. 11c0: dd rtas policy.- Allow mailserver_domains to manage and transiti
  2936. 1200: on to mailman data.- Dontaudit attempts by mozilla plugin to rel
  2937. 1240: abel content, caused by using mv and cp commands.- Allow mailser
  2938. 1280: ver_domains to manage and transition to mailman data.- Allow svi
  2939. 12c0: rt_domains to read sysctl_net_t.- Allow thumb_t to use tmpfs inh
  2940. 1300: erited from the user.- Allow mozilla_plugin to bind to the vnc p
  2941. 1340: ort if running with spice.- Add new attribute to discover confin
  2942. 1380: ed_admins and assign confined admin to it.- Fix zabbix to handle
  2943. 13c0: attributes in interfaces.- Fix zabbix to read system states for
  2944. 1400: all zabbix domains.- Fix piranha_domain_template().- Allow ctdb
  2945. 1440: d to create udp_socket. Allow ndmbd to access ctdbd var files..-
  2946. 1480: Allow lldpad sys_rouserce cap due to #986870.- Allow dovecot-au
  2947. 14c0: th to read nologin.- Allow openlmi-networking to read /proc/net/
  2948. 1500: dev.- Allow smsd_t to execute scripts created on the fly labeled
  2949. 1540: as smsd_spool_t.- Add zabbix_domain attribute for zabbix domain
  2950. 1580: s to treat them together.- Add labels for zabbix-poxy-* (#101822
  2951. 15c0: 1).- Update openlmi-storage policy to reflect #1015067.- Back po
  2952. 1600: rt piranha tmpfs fixes from RHEL6.- Update httpd_can_sendmail bo
  2953. 1640: olean to allow read/write postfix spool maildrop.- Add postfix_r
  2954. 1680: w_spool_maildrop_files interface.- Call new userdom_admin_user_t
  2955. 16c0: emplat() also for sysadm_secadm.pp.- Fix typo in userdom_admin_u
  2956. 1700: ser_template().- Allow SELinux users to create coolkeypk11sE-Gat
  2957. 1740: e in /var/cache/coolkey.- Add new attribute to discover confined
  2958. 1780: _admins.- Fix labeling for /etc/strongswan/ipsec.d.- systemd_log
  2959. 17c0: ind seems to pass fd to anyone who dbus communicates with it.- D
  2960. 1800: ontaudit leaked write descriptor to dmesg.- Activate motion poli
  2961. 1840: cy.- Fix gnome_read_generic_data_home_files().- allow openshift_
  2962. 1880: cgroup_t to read/write inherited openshift file types.- Remove h
  2963. 18c0: ttpd_cobbler_content * from cobbler_admin interface.- Allow svir
  2964. 1900: t sandbox domains to setattr on chr_file and blk_file svirt_sand
  2965. 1940: box_file_t, so sshd will work within a container.- Allow httpd_t
  2966. 1980: to read also git sys content symlinks.- Allow init_t to read gn
  2967. 19c0: ome home data.- Dontaudit setroubleshoot_fixit_t execmem, since
  2968. 1a00: it does not seem to really need it..- Allow virsh to execute sys
  2969. 1a40: temctl.- Fix for nagios_services plugins.- add type defintion fo
  2970. 1a80: r ctdbd_var_t.- Add support for /var/ctdb. Allow ctdb block_susp
  2971. 1ac0: end and read /etc/passwd file.- Allow net_admin/netlink_socket a
  2972. 1b00: ll hyperv_domain domains.- Add labeling for zarafa-search.log an
  2973. 1b40: d zarafa-search.pid.- Fix hypervkvp.te.- Fix nscd_shm_use().- Ad
  2974. 1b80: d initial policy for /usr/sbin/hypervvssd in hypervkvp policy wh
  2975. 1bc0: ich should be renamed to hyperv. Also add hyperv_domain attribut
  2976. 1c00: e to treat these HyperV services..- Add hypervkvp_unit_file_t ty
  2977. 1c40: pe.- Fix logging policy.- Allow syslog to bind to tls ports.- Up
  2978. 1c80: date labeling for /dev/cdc-wdm.- Allow to su_domain to read init
  2979. 1cc0: states.- Allow init_t to read gnome home data.- Make sure if sy
  2980. 1d00: stemd_logind creates nologin file with the correct label.- Clean
  2981. 1d40: up ipsec.te.- Add auth_exec_chkpwd interface.- Fix port definit
  2982. 1d80: ion for ctdb ports.- Allow systemd domains to read /dev/urand.-
  2983. 1dc0: Dontaudit attempts for mozilla_plugin to append to /dev/random.-
  2984. 1e00: Add label for /var/run/charon.*.- Add labeling for /usr/lib/sys
  2985. 1e40: temd/system/lvm2.*dd policy for motion service.- Fix for nagios_
  2986. 1e80: services plugins.- Fix some bugs in zoneminder policy.- add type
  2987. 1ec0: defintion for ctdbd_var_t.- Add support for /var/ctdb. Allow ct
  2988. 1f00: db block_suspend and read /etc/passwd file.- Allow net_admin/net
  2989. 1f40: link_socket all hyperv_domain domains.- Add labeling for zarafa-
  2990. 1f80: search.log and zarafa-search.pid.- glusterd binds to random unre
  2991. 1fc0: served ports.- Additional allow rules found by testing glusterfs
  2992. 2000: .- apcupsd needs to send a message to all users on the system so
  2993. 2040: needs to look them up.- Fix the label on ~/.juniper_networks.-
  2994. 2080: Dontaudit attempts for mozilla_plugin to append to /dev/random.-
  2995. 20c0: Allow polipo_daemon to connect to flash ports.- Allow gssproxy_
  2996. 2100: t to create replay caches.- Fix nscd_shm_use().- Add initial pol
  2997. 2140: icy for /usr/sbin/hypervvssd in hypervkvp policy which should be
  2998. 2180: renamed to hyperv. Also add hyperv_domain attribute to treat th
  2999. 21c0: ese HyperV services..- Add hypervkvp_unit_file_t type.- init rel
  3000. 2200: oad from systemd_localed_t.- Allow domains that communicate wit
  3001. 2240: h systemd_logind_sessions to use systemd_logind_t fd.- Allow sys
  3002. 2280: temd_localed_t to ask systemd to reload the locale..- Add system
  3003. 22c0: d_runtime_unit_file_t type for unit files that systemd creates i
  3004. 2300: n memory.- Allow readahead to read /dev/urand.- Fix lots of avcs
  3005. 2340: about tuned.- Any file names xenstored in /var/log should be tr
  3006. 2380: eated as xenstored_var_log_t.- Allow tuned to inderact with huge
  3007. 23c0: pages.- Allow condor domains to list etc rw dirs.- Fix nscd_shm_
  3008. 2400: use().- Add initial policy for /usr/sbin/hypervvssd in hypervkvp
  3009. 2440: policy which should be renamed to hyperv. Also add hyperv_domai
  3010. 2480: n attribute to treat these HyperV services..- Add hypervkvp_unit
  3011. 24c0: _file_t type.- Add additional fixes forpegasus_openlmi_account_t
  3012. 2500: .- Allow mdadm to read /dev/urand.- Allow pegasus_openlmi_storag
  3013. 2540: e_t to create mdadm.conf and write it.- Add label/rules for /etc
  3014. 2580: /mdadm.conf.- Allow pegasus_openlmi_storage_t to transition to f
  3015. 25c0: sadm_t.- Fixes for interface definition problems.- Dontaudit dov
  3016. 2600: ecot-deliver to gettatr on all fs dirs.- Allow domains to search
  3017. 2640: data_home_t directories.- Allow cobblerd to connect to mysql.-
  3018. 2680: Allow mdadm to r/w kdump lock files.- Add support for kdump lock
  3019. 26c0: files.- Label zarafa-search as zarafa-indexer.- Openshift cgrou
  3020. 2700: p wants to read /etc/passwd.- Add new sandbox domains for kvm.-
  3021. 2740: Allow mpd to interact with pulseaudio if mpd_enable_homedirs is
  3022. 2780: turned on.- Fix labeling for /usr/lib/systemd/system/lvm2.*.- Ad
  3023. 27c0: d labeling for /usr/lib/systemd/system/lvm2.*.- Fix typos to get
  3024. 2800: a new build. We should not cover filename trans rules to preven
  3025. 2840: t duplicate rules.- Add sshd_keygen_t policy for sshd-keygen.- F
  3026. 2880: ix alsa_home_filetrans interface name and definition.- Allow cho
  3027. 28c0: wn for ssh_keygen_t.- Add fs_dontaudit_getattr_all_dirs().- Allo
  3028. 2900: w init_t to manage etc_aliases_t and read xserver_var_lib_t and
  3029. 2940: chrony keys.- Fix up patch to allow systemd to manage home conte
  3030. 2980: nt.- Allow domains to send/recv unlabeled traffic if unlabeledne
  3031. 29c0: t.pp is enabled.- Allow getty to exec hostname to get info.- Add
  3032. 2a00: systemd_home_t for ~/.local/share/systemd directory.- Fix lxc l
  3033. 2a40: abels in config.tgz.- Fix labeling for /usr/libexec/kde4/kcmdate
  3034. 2a80: timehelper.- Allow tuned to search all file system directories.-
  3035. 2ac0: Allow alsa_t to sys_nice, to get top performance for sound mana
  3036. 2b00: gement.- Add support for MySQL/PostgreSQL for amavis.- Allow ope
  3037. 2b40: nvpn_t to manage openvpn_var_log_t files..- Allow dirsrv_t to cr
  3038. 2b80: eate tmpfs_t directories.- Allow dirsrv to create dirs in /dev/s
  3039. 2bc0: hm with dirsrv_tmpfs label.- Dontaudit leaked unix_stream_socket
  3040. 2c00: s into gnome keyring.- Allow telepathy domains to inhibit pipes
  3041. 2c40: on telepathy domains.- Allow cloud-init to domtrans to rpm.- All
  3042. 2c80: ow abrt daemon to manage abrt-watch tmp files.- Allow abrt-uploa
  3043. 2cc0: d-watcher to search /var/spool directory.- Allow nsswitch domain
  3044. 2d00: s to manage own process key.- Fix labeling for mgetty.* logs.- A
  3045. 2d40: llow systemd to dbus chat with upower.- Allow ipsec to send sign
  3046. 2d80: ull to itself.- Allow setgid cap for ipsec_t.- Match upstream la
  3047. 2dc0: beling.- Do not build sanbox pkg on MLS.- wine_tmp is no longer
  3048. 2e00: needed.- Allow setroubleshoot to look at /proc.- Allow telepathy
  3049. 2e40: domains to dbus with systemd logind.- Fix handling of fifo file
  3050. 2e80: s of rpm.- Allow mozilla_plugin to transition to itself.- Allow
  3051. 2ec0: certwatch to write to cert_t directories.- New abrt application.
  3052. 2f00: - Allow NetworkManager to set the kernel scheduler.- Make wine_d
  3053. 2f40: omain shared by all wine domains.- Allow mdadm_t to read images
  3054. 2f80: labeled svirt_image_t.- Allow amanda to read /dev/urand.- ALlow
  3055. 2fc0: my_print_default to read /dev/urand.- Allow mdadm to write to kd
  3056. 3000: umpctl fifo files.- Allow nslcd to send signull to itself.- Allo
  3057. 3040: w yppasswd to read /dev/urandom.- Fix zarafa_setrlimit.- Add sup
  3058. 3080: port for /var/lib/php/wsdlcache.- Add zarafa_setrlimit boolean.-
  3059. 30c0: Allow fetchmail to send mails.- Add additional alias for user_t
  3060. 3100: mp_t because wine_tmp_t is no longer used.- More handling of the
  3061. 3140: r kernel keyring required by kerberos.- New privs needed for ini
  3062. 3180: t_t when running without transition to initrc_t over bin_t, and
  3063. 31c0: without unconfined domain installed.- Dontaudit attempts by sosr
  3064. 3200: eport to read shadow_t.- Allow browser sandbox plugins to connec
  3065. 3240: t to cups to print.- Add new label mpd_home_t.- Label /srv/www/l
  3066. 3280: ogs as httpd_log_t.- Add support for /var/lib/php/wsdlcache.- Ad
  3067. 32c0: d zarafa_setrlimit boolean.- Allow fetchmail to send mails.- Add
  3068. 3300: labels for apache logs under miq package.- Allow irc_t to use t
  3069. 3340: cp sockets.- fix labels in puppet.if.- Allow tcsd to read utmp f
  3070. 3380: ile.- Allow openshift_cron_t to run ssh-keygen in ssh_keygen_t t
  3071. 33c0: o access host keys.- Define svirt_socket_t as a domain_type.- Ta
  3072. 3400: ke away transition from init_t to initrc_t when executing bin_t,
  3073. 3440: allow init_t to run chk_passwd_t.- Fix label on pam_krb5 helper
  3074. 3480: apps.- Allow ldconfig to write to kdumpctl fifo files.- allow n
  3075. 34c0: eutron to connect to amqp ports.- Allow kdump_manage_crash to li
  3076. 3500: st the kdump_crash_t directory.- Allow glance-api to connect to
  3077. 3540: amqp port.- Allow virt_qemu_ga_t to read meminfo.- Add antivirus
  3078. 3580: _home_t type for antivirus date in HOMEDIRS.- Allow mpd setcap w
  3079. 35c0: hich is needed by pulseaudio.- Allow smbcontrol to create conten
  3080. 3600: t in /var/lib/samba.- Allow mozilla_exec_t to be used as a entry
  3081. 3640: point to mozilla_domtrans_spec.- Add additional labeling for qem
  3082. 3680: u-ga/fsfreeze-hook.d scripts.- amanda_exec_t needs to be executa
  3083. 36c0: ble file.- Allow block_suspend cap for samba-net.- Allow apps th
  3084. 3700: at read ipsec_mgmt_var_run_t to search ipsec_var_run_t.- Allow i
  3085. 3740: nit_t to run crash utility.- Treat usr_t just like bin_t for tra
  3086. 3780: nsitions and executions.- Add port definition of pka_ca to port
  3087. 37c0: 829 for openshift.- Allow selinux_store to use symlinks.- Allow
  3088. 3800: block_suspend cap for samba-net.- Allow t-mission-control to man
  3089. 3840: age gabble cache files.- Allow nslcd to read /sys/devices/system
  3090. 3880: /cpu.- Allow selinux_store to use symlinks.- Allow xdm_t to tran
  3091. 38c0: sition to itself.- Call neutron interfaces instead of quantum.-
  3092. 3900: Allow init to change targed role to make uncofined services (xrd
  3093. 3940: p which now has own systemd unit file) working. We want them to
  3094. 3980: have in unconfined_t.- Make sure directories in /run get created
  3095. 39c0: with the correct label.- Make sure /root/.pki gets created with
  3096. 3a00: the right label.- try to remove labeling for motion from zonemi
  3097. 3a40: nder_exec_t to bin_t.- Allow inetd_t to execute shell scripts.-
  3098. 3a80: Allow cloud-init to read all domainstate.- Fix to use quantum po
  3099. 3ac0: rt.- Add interface netowrkmanager_initrc_domtrans.- Fix boinc_ex
  3100. 3b00: ecmem.- Allow t-mission-control to read gabble cache home.- Add
  3101. 3b40: labeling for ~/.cache/telepathy/avatars/gabble.- Allow memcache
  3102. 3b80: to read sysfs data.- Cleanup antivirus policy and add additional
  3103. 3bc0: fixes.- Add boolean boinc_enable_execstack.- Add support for co
  3104. 3c00: uchdb in rabbitmq policy.- Add interface couchdb_search_pid_dirs
  3105. 3c40: .- Allow firewalld to read NM state.- Allow systemd running as g
  3106. 3c80: it_systemd to bind git port.- Fix mozilla_plugin_rw_tmpfs_files(
  3107. 3cc0: ).- Split out rlogin ports from inetd.- Treat files labeld as us
  3108. 3d00: r_t like bin_t when it comes to transitions.- Allow staff_t to r
  3109. 3d40: ead login config.- Allow ipsec_t to read .google authenticator d
  3110. 3d80: ata.- Allow systemd running as git_systemd to bind git port.- Fi
  3111. 3dc0: x mozilla_plugin_rw_tmpfs_files().- Call the correct interface -
  3112. 3e00: corenet_udp_bind_ktalkd_port().- Allow all domains that can rea
  3113. 3e40: d gnome_config to read kde config.- Allow sandbox domain to read
  3114. 3e80: /write mozilla_plugin_tmpfs_t so pulseaudio will work.- Allow md
  3115. 3ec0: adm to getattr any file system.- Allow a confined domain to exec
  3116. 3f00: utes mozilla_exec_t via dbus.- Allow cupsd_lpd_t to bind to the
  3117. 3f40: printer port.- Dontaudit attempts to bind to ports < 1024 when n
  3118. 3f80: is is turned on.- Allow apache domain to connect to gssproxy soc
  3119. 3fc0: ket.- Allow rlogind to bind to the rlogin_port.- Allow telnetd t
  3120. 13:00:16.861410 <= Recv data, 16384 bytes (0x4000)
  3121. 0000: o bind to the telnetd_port.- Allow ktalkd to bind to the ktalkd_
  3122. 0040: port.- Allow cvs to bind to the cvs_port.- Cleanup related to in
  3123. 0080: it_domain()+inetd_domain fixes.- Use just init_domain instead of
  3124. 00c0: init_daemon_domain in inetd_core_service_domain.- svirt domains
  3125. 0100: neeed to create kobject_uevint_sockets.- Lots of new access req
  3126. 0140: uired for sosreport.- Allow tgtd_t to connect to isns ports.- Al
  3127. 0180: low init_t to transition to all inetd domains:.- openct needs to
  3128. 01c0: be able to create netlink_object_uevent_sockets.- Dontaudit lea
  3129. 0200: ks into ldconfig_t.- Dontaudit su domains getattr on /dev device
  3130. 0240: s, move su domains to attribute based calls.- Move kernel_stream
  3131. 0280: _connect into all Xwindow using users.- Dontaudit inherited lock
  3132. 02c0: files in ifconfig o dhcpc_t.- Also sock_file trans rule is need
  3133. 0300: ed in lsm.- Fix labeling for fetchmail pid files/dirs.- Add addi
  3134. 0340: tional fixes for abrt-upload-watch.- Fix polipo.te.- Fix transit
  3135. 0380: ion rules in asterisk policy.- Add fowner capability to networkm
  3136. 03c0: anager policy.- Allow polipo to connect to tor ports.- Cleanup l
  3137. 0400: smd.if.- Cleanup openhpid policy.- Fix kdump_read_crash() interf
  3138. 0440: ace.- Make more domains as init domain.- Fix cupsd.te.- Fix requ
  3139. 0480: ires in rpm_rw_script_inherited_pipes.- Fix interfaces in lsm.if
  3140. 04c0: .- Allow munin service plugins to manage own tmpfs files/dirs.-
  3141. 0500: Allow virtd_t also relabel unix stream sockets for virt_image_ty
  3142. 0540: pe.- Make ktalk as init domain.- Fix to define ktalkd_unit_file_
  3143. 0580: t correctly.- Fix ktalk.fc.- Add systemd support for talk-server
  3144. 05c0: .- Allow glusterd to create sock_file in /run.- Allow xdm_t to d
  3145. 0600: elete gkeyringd_tmp_t files on logout.- Add fixes for hypervkvp
  3146. 0640: policy.- Add logwatch_can_sendmail boolean.- Allow mysqld_safe_t
  3147. 0680: to handle also symlinks in /var/log/mariadb.- Allow xdm_t to de
  3148. 06c0: lete gkeyringd_tmp_t files on logout.- Add selinux-policy-sandbo
  3149. 0700: x pkg.0 .- Allow rhsmcertd to read init state.- Allow fsetid for
  3150. 0740: pkcsslotd.- Fix labeling for /usr/lib/systemd/system/pkcsslotd.
  3151. 0780: service.- Allow fetchmail to create own pid with correct labelin
  3152. 07c0: g.- Fix rhcs_domain_template().- Allow roles which can run mock
  3153. 0800: to read mock lib files to view results.- Allow rpcbind to use ns
  3154. 0840: switch.- Fix lsm.if summary.- Fix collectd_t can read /etc/passw
  3155. 0880: d file.- Label systemd unit files under dracut correctly.- Add s
  3156. 08c0: upport for pam_mount to mount user's encrypted home When a user
  3157. 0900: logs in and logs out using ssh.- Add support for .Xauthority-n.-
  3158. 0940: Label umount.crypt as lvm_exec_t.- Allow syslogd to search psad
  3159. 0980: lib files.- Allow ssh_t to use /dev/ptmx.- Make sure /run/pluto
  3160. 09c0: dir is created with correct labeling.- Allow syslog to run shel
  3161. 0a00: l and bin_t commands.- Allow ip to relabel tun_sockets.- Allow m
  3162. 0a40: ount to create directories in files under /run.- Allow processes
  3163. 0a80: to use inherited fifo files.- Add policy for lsmd.- Add support
  3164. 0ac0: for /var/log/mariadb dir and allow mysqld_safe to list this dir
  3165. 0b00: ectory.- Update condor_master rules to allow read system state i
  3166. 0b40: nfo and allow logging.- Add labeling for /etc/condor and allow c
  3167. 0b80: ondor domain to write it (bug).- Allow condor domains to manage
  3168. 0bc0: own logs.- Allow glusterd to read domains state.- Fix initial hy
  3169. 0c00: pervkvp policy.- Add policy for hypervkvpd.- Fix redis.if summar
  3170. 0c40: y.- Allow boinc to connect to @/tmp/.X11-unix/X0.- Allow beam.s
  3171. 0c80: mp to connect to tcp/5984.- Allow named to manage own log files.
  3172. 0cc0: - Add label for /usr/libexec/dcc/start-dccifd and domtrans to d
  3173. 0d00: ccifd_t.- Add virt_transition_userdomain boolean decl.- Allow ht
  3174. 0d40: tpd_t to sendto unix_dgram sockets on its children.- Allow nova
  3175. 0d80: domains to execute ifconfig.- bluetooth wants to create fifo_fil
  3176. 0dc0: es in /tmp.- exim needs to be able to manage mailman data.- Allo
  3177. 0e00: w sysstat to getattr on all file systems.- Looks like bluetoothd
  3178. 0e40: has moved.- Allow collectd to send ping packets.- Allow svirt_l
  3179. 0e80: xc domains to getpgid.- Remove virt-sandbox-service labeling as
  3180. 0ec0: virsh_exec_t, since it no longer does virsh_t stuff.- Allow frpi
  3181. 0f00: ntd_t to read /dev/urandom.- Allow asterisk_t to create sock_fil
  3182. 0f40: e in /var/run.- Allow usbmuxd to use netlink_kobject.- sosreport
  3183. 0f80: needs to getattr on lots of devices, and needs access to netlin
  3184. 0fc0: k_kobject_uevent_socket.- More cleanup of svirt_lxc policy.- vir
  3185. 1000: td_lxc_t now talks to dbus.- Dontaudit leaked ptmx_t.- Allow pro
  3186. 1040: cesses to use inherited fifo files.- Allow openvpn_t to connect
  3187. 1080: to squid ports.- Allow prelink_cron_system_t to ask systemd to r
  3188. 10c0: eloaddd miscfiles_dontaudit_access_check_cert().- Allow ssh_t to
  3189. 1100: use /dev/ptmx.- Make sure /run/pluto dir is created with correc
  3190. 1140: t labeling.- Allow syslog to run shell and bin_t commands.- Allo
  3191. 1180: w ip to relabel tun_sockets.- Allow mount to create directories
  3192. 11c0: in files under /run.- Allow processes to use inherited fifo file
  3193. 1200: s.- Allow user roles to connect to the journal socket.- selinux_
  3194. 1240: set_enforce_mode needs to be used with type.- Add append to the
  3195. 1280: dontaudit for unix_stream_socket of xdm_t leak.- Allow xdm_t to
  3196. 12c0: create symlinks in log direcotries.- Allow login programs to rea
  3197. 1300: d afs config.- Label 10933 as a pop port, for dovecot.- New poli
  3198. 1340: cy to allow selinux_server.py to run as semanage_t as a dbus ser
  3199. 1380: vice.- Add fixes to make netlabelctl working on MLS.- AVCs requi
  3200. 13c0: red for running sepolicy gui as staff_t.- Dontaudit attempts to
  3201. 1400: read symlinks, sepolicy gui is likely to cause this type of AVC.
  3202. 1440: - New dbus server to be used with new gui.- After modifying some
  3203. 1480: files in /etc/mail, I saw this needed on the next boot.- Loadin
  3204. 14c0: g a vm from /usr/tmp with virt-manager.- Clean up oracleasm poli
  3205. 1500: cy for Fedora.- Add oracleasm policy written by rlopez@redhat.co
  3206. 1540: m.- Make postfix_postdrop_t as mta_agent to allow domtrans to sy
  3207. 1580: stem mail if it is executed by apache.- Add label for /var/crash
  3208. 15c0: .- Allow fenced to domtrans to sanclok_t.- Allow nagios to manag
  3209. 1600: e nagios spool files.- Make tfptd as home_manager.- Allow kdump
  3210. 1640: to read kcore on MLS system.- Allow mysqld-safe sys_nice/sys_res
  3211. 1680: ource caps.- Allow apache to search automount tmp dirs if http_u
  3212. 16c0: se_nfs is enabled.- Allow crond to transition to named_t, for us
  3213. 1700: e with unbound.- Allow crond to look at named_conf_t, for unboun
  3214. 1740: d.- Allow mozilla_plugin_t to transition its home content.- Allo
  3215. 1780: w dovecot_domain to read all system and network state.- Allow ht
  3216. 17c0: tpd_user_script_t to call getpw.- Allow semanage to read pid fil
  3217. 1800: es.- Dontaudit leaked file descriptors from user domain into thu
  3218. 1840: mb.- Make PAM authentication working if it is enabled in ejabber
  3219. 1880: d.- Add fixes for rabbit to fix ##992920,#992931.- Allow gluster
  3220. 18c0: d to mount filesystems.- Loading a vm from /usr/tmp with virt-ma
  3221. 1900: nager.- Trying to load a VM I got an AVC from devicekit_disk for
  3222. 1940: loopcontrol device.- Add fix for pand service.- shorewall touch
  3223. 1980: es own log.- Allow nrpe to list /var.- Mozilla_plugin_roles can
  3224. 19c0: not be passed into lpd_run_lpr.- Allow afs domains to read afs_c
  3225. 1a00: onfig files.- Allow login programs to read afs config.- Allow vi
  3226. 1a40: rt_domain to read virt_var_run_t symlinks.- Allow smokeping to s
  3227. 1a80: end its process signals.- Allow fetchmail to setuid.- Add kdump_
  3228. 1ac0: manage_crash() interface.- Allow abrt domain to write abrt.socke
  3229. 1b00: t.- Add more aliases in pegasus.te.- Add more fixes for *_admin
  3230. 1b40: interfaces.- Add interface fixes.- Allow nscd to stream connect
  3231. 1b80: to nmbd.- Allow gnupg apps to write to pcscd socket.- Add more f
  3232. 1bc0: ixes for openlmi provides. Fix naming and support for additional
  3233. 1c00: s.- Allow fetchmail to resolve host names.- Allow firewalld to i
  3234. 1c40: nteract also with lnk files labeled as firewalld_etc_rw_t.- Add
  3235. 1c80: labeling for cmpiLMI_Fan-cimprovagt.- Allow net_admin for gluste
  3236. 1cc0: rd.- Allow telepathy domain to create dconf with correct labelin
  3237. 1d00: g in /home/userX/.cache/.- Add pegasus_openlmi_system_t.- Fix pu
  3238. 1d40: ppet_domtrans_master() to make all puppet calling working in pas
  3239. 1d80: senger.te.- Fix corecmd_exec_chroot().- Fix logging_relabel_sysl
  3240. 1dc0: og_pid_socket interface.- Fix typo in unconfineduser.te.- Allow
  3241. 1e00: system_r to access unconfined_dbusd_t to run hp_chec.- Allow xdm
  3242. 1e40: _t to act as a dbus client to itsel.- Allow fetchmail to resolve
  3243. 1e80: host names.- Allow gnupg apps to write to pcscd socket.- Add la
  3244. 1ec0: beling for cmpiLMI_Fan-cimprovagt.- Allow net_admin for glusterd
  3245. 1f00: .- Allow telepathy domain to create dconf with correct labeling
  3246. 1f40: in /home/userX/.cache/.- Add pegasus_openlmi_system_t.- Fix pupp
  3247. 1f80: et_domtrans_master() to make all puppet calling working in passe
  3248. 1fc0: nger.te.-httpd_t does access_check on certs.- Add support for cm
  3249. 2000: piLMI_Service-cimprovagt.- Allow pegasus domtrans to rpm_t to ma
  3250. 2040: ke pycmpiLMI_Software-cimprovagt running as rpm_t.- Label pycmpi
  3251. 2080: LMI_Software-cimprovagt as rpm_exec_t.- Add support for pycmpiLM
  3252. 20c0: I_Storage-cimprovagt.- Add support for cmpiLMI_Networking-cimpro
  3253. 2100: vagt.- Allow system_cronjob_t to create user_tmpfs_t to make pul
  3254. 2140: seaudio working.- Allow virtual machines and containers to run a
  3255. 2180: s user doains, needed for virt-sandbox.- Allow buglist.cgi to re
  3256. 21c0: ad cpu info.- Allow systemd-tmpfile to handle tmp content in pri
  3257. 2200: nt spool dir.- Allow systemd-sysctl to send system log messages.
  3258. 2240: - Add support for RTP media ports and fmpro-internal.- Make audi
  3259. 2280: td working if audit is configured to perform SINGLE action on di
  3260. 22c0: sk error.- Add interfaces to handle systemd units.- Make systemd
  3261. 2300: -notify working if pcsd is used.- Add support for netlabel and l
  3262. 2340: abel /usr/sbin/netlabelctl as iptables_exec_t.- Instead of havin
  3263. 2380: g all unconfined domains get all of the named transition rules,.
  3264. 23c0: - Only allow unconfined_t, init_t, initrc_t and rpm_script_t by
  3265. 2400: default..- Add definition for the salt ports.- Allow xdm_t to cr
  3266. 2440: eate link files in xdm_var_run_t.- Dontaudit reads of blk files
  3267. 2480: or chr files leaked into ldconfig_t.- Allow sys_chroot for usera
  3268. 24c0: dd_t.- Allow net_raw cap for ipsec_t.- Allow sysadm_t to reload
  3269. 2500: services.- Add additional fixes to make strongswan working with
  3270. 2540: a simple conf.- Allow sysadm_t to enable/disable init_t services
  3271. 2580: .- Add additional glusterd perms.- Allow apache to read lnk file
  3272. 25c0: s in the /mnt directory.- Allow glusterd to ask the kernel to lo
  3273. 2600: ad a module.- Fix description of ftpd_use_fusefs boolean.- Allow
  3274. 2640: svirt_lxc_net_t to sys_chroot, modify policy to tighten up svir
  3275. 2680: t_lxc_domain capabilties and process controls, but add them to s
  3276. 26c0: virt_lxc_net_t.- Allow glusterds to request load a kernel module
  3277. 2700: .- Allow boinc to stream connect to xserver_t.- Allow sblim doma
  3278. 2740: ins to read /etc/passwd.- Allow mdadm to read usb devices.- Allo
  3279. 2780: w collectd to use ping plugin.- Make foghorn working with SNMP.-
  3280. 27c0: Allow sssd to read ldap certs.- Allow haproxy to connect to RTP
  3281. 2800: media ports.- Add additional trans rules for aide_db.- Add labe
  3282. 2840: ling for /usr/lib/pcsd/pcsd.- Add labeling for /var/log/pcsd.- A
  3283. 2880: dd support for pcs which is a corosync and pacemaker configurati
  3284. 28c0: on tool.- Label /var/lib/ipa/pki-ca/publish as pki_tomcat_cert_t
  3285. 2900: .- Add labeling for /usr/libexec/kde4/polkit-kde-authentication-
  3286. 2940: agent-1.- Allow all domains that can domtrans to shutdown, to st
  3287. 2980: art the power services script to shutdown.- consolekit needs to
  3288. 29c0: be able to shut down system.- Move around interfaces.- Remove nf
  3289. 2a00: sd_rw_t and nfsd_ro_t, they don't do anything.- Add additional f
  3290. 2a40: ixes for rabbitmq_beam to allow getattr on mountpoints.- Allow g
  3291. 2a80: conf-defaults-m to read /etc/passwd.- Fix pki_rw_tomcat_cert() i
  3292. 2ac0: nterface to support lnk_files.- Add support for gluster ports.-
  3293. 2b00: Make sure that all keys located in /etc/ssh/ are labeled correct
  3294. 2b40: ly.- Make sure apcuspd lock files get created with the correct l
  3295. 2b80: abel.- Use getcap in gluster.te.- Fix gluster policy.- add addit
  3296. 2bc0: ional fixes to allow beam.smp to interact with couchdb files.- A
  3297. 2c00: dditional fix for #974149.- Allow gluster to user gluster ports.
  3298. 2c40: - Allow glusterd to transition to rpcd_t and add additional fixe
  3299. 2c80: s for #980683.- Allow tgtd working when accessing to the passthr
  3300. 2cc0: ough device.- Fix labeling for mdadm unit files.- Add mdadm fixe
  3301. 2d00: s.- Fix definition of sandbox.disabled to sandbox.pp.disabled.-
  3302. 2d40: Allow mdamd to execute systemctl.- Allow mdadm to read /dev/kvm.
  3303. 2d80: - Allow ipsec_mgmt_t to read l2tpd pid content.- Allow nsd_t to
  3304. 2dc0: read /dev/urand.- Allow mdadm_t to read framebuffer.- Allow rabb
  3305. 2e00: itmq_beam_t to read process info on rabbitmq_epmd_t.- Allow mozi
  3306. 2e40: lla_plugin_config_t to create tmp files.- Cleanup openvswitch po
  3307. 2e80: licy.- Allow mozilla plugin to getattr on all executables.- Allo
  3308. 2ec0: w l2tpd_t to create fifo_files in /var/run.- Allow samba to touc
  3309. 2f00: h/manage fifo_files or sock_files in a samba_share_t directory.-
  3310. 2f40: Allow mdadm to connecto its own unix_stream_socket.- FIXME: nag
  3311. 2f80: ios changed locations to /log/nagios which is wrong. But we need
  3312. 2fc0: to have this workaround for now..- Allow apache to access smoke
  3313. 3000: ping pid files.- Allow rabbitmq_beam_t to getattr on all filesys
  3314. 3040: tems.- Add systemd support for iodined.- Allow nup_upsdrvctl_t t
  3315. 3080: o execute its entrypoint.- Allow fail2ban_client to write to fai
  3316. 30c0: l2ban_var_run_t, Also allow it to use nsswitch.- add labeling fo
  3317. 3100: r ~/.cache/libvirt-sandbox.- Add interface to allow domains tran
  3318. 3140: sitioned to by confined users to send sigchld to screen program.
  3319. 3180: - Allow sysadm_t to check the system status of files labeled etc
  3320. 31c0: _t, /etc/fstab.- Allow systemd_localed to start /usr/lib/systemd
  3321. 3200: /system/systemd-vconsole-setup.service.- Allow an domain that ha
  3322. 3240: s an entrypoint from a type to be allowed to execute the entrypo
  3323. 3280: int without a transition, I can see no case where this is a ba
  3324. 32c0: d thing, and elminiates a whole class of AVCs..- Allow staff to
  3325. 3300: getsched all domains, required to run htop.- Add port definition
  3326. 3340: for redis port.- fix selinuxuser_use_ssh_chroot boolean.- Add p
  3327. 3380: rosody policy written by Michael Scherer.- Allow nagios plugins
  3328. 33c0: to read /sys info.- ntpd needs to manage own log files.- Add sup
  3329. 3400: port for HOME_DIR/.IBMERS.- Allow iptables commands to read fire
  3330. 3440: walld config.- Allow consolekit_t to read utmp.- Fix filename tr
  3331. 3480: ansitions on .razor directory.- Add additional fixes to make DSP
  3332. 34c0: AM with LDA working.- Allow snort to read /etc/passwd.- Allow fa
  3333. 3500: il2ban to communicate with firewalld over dbus.- Dontaudit opens
  3334. 3540: hift_cgreoup_file_t read/write leaked dev.- Allow nfsd to use mo
  3335. 3580: untd port.- Call th proper interface.- Allow openvswitch to read
  3336. 35c0: sys and execute plymouth.- Allow tmpwatch to read /var/spool/cu
  3337. 3600: ps/tmp.- Add support for /usr/libexec/telepathy-rakia.- Add syst
  3338. 3640: emd support for zoneminder.- Allow mysql to create files/directo
  3339. 3680: ries under /var/log/mysql.- Allow zoneminder apache scripts to r
  3340. 36c0: w zoneminder tmpfs.- Allow httpd to manage zoneminder lib files.
  3341. 3700: - Add zoneminder_run_sudo boolean to allow to start zoneminder.-
  3342. 3740: Allow zoneminder to send mails.- gssproxy_t sock_file can be un
  3343. 3780: der /var/lib.- Allow web domains to connect to whois port..- All
  3344. 37c0: ow sandbox_web_type to connect to the same ports as mozilla_plug
  3345. 3800: in_t..- We really need to add an interface to corenet to define
  3346. 3840: what a web_client_domain is and.- then define chrome_sandbox_t,
  3347. 3880: mozilla_plugin_t and sandbox_web_type to that domain..- Add labe
  3348. 38c0: ling for cmpiLMI_LogicalFile-cimprovagt.- Also make pegasus_open
  3349. 3900: lmi_logicalfile_t as unconfined to have unconfined_domain attrib
  3350. 3940: ute for filename trans rules.- Update policy rules for pegasus_o
  3351. 3980: penlmi_logicalfile_t.- Add initial types for logicalfile/unconfi
  3352. 39c0: ned OpenLMI providers.- mailmanctl needs to read own log.- Allow
  3353. 3a00: logwatch manage own lock files.- Allow nrpe to read meminfo.- A
  3354. 3a40: llow httpd to read certs located in pki-ca.- Add pki_read_tomcat
  3355. 3a80: _cert() interface.- Add support for nagios openshift plugins.- A
  3356. 3ac0: dd port definition for redis port.- fix selinuxuser_use_ssh_chro
  3357. 3b00: ot boolean.- Shrink the size of policy by moving to attributes,
  3358. 3b40: also add dridomain so that mozilla_plugin can follow selinuxuse_
  3359. 3b80: dri boolean. .- Allow bootloader to manage generic log files .-
  3360. 3bc0: Allow ftp to bind to port 989 .- Fix label of new gear directory
  3361. 3c00: .- Add support for new directory /var/lib/openshift/gears/ .- A
  3362. 3c40: dd openshift_manage_lib_dirs() .- allow virtd domains to manage
  3363. 3c80: setrans_var_run_t .- Allow useradd to manage all openshift conte
  3364. 3cc0: nt .- Add support so that mozilla_plugin_t can use dri devices .
  3365. 3d00: - Allow chronyd to change the scheduler .- Allow apmd to shut do
  3366. 3d40: wnthe system .- Devicekit_disk_t needs to manage /etc/fstab.- Ma
  3367. 3d80: ke DSPAM to act as a LDA working.- Allow ntop to create netlink
  3368. 3dc0: socket.- Allow policykit to send a signal to policykit-auth.- Al
  3369. 3e00: low stapserver to dbus chat with avahi/systemd-logind.- Fix labe
  3370. 3e40: ling on haproxy unit file.- Clean up haproxy policy.- A new poli
  3371. 3e80: cy for haproxy and placed it to rhcs.te.- Add support for ldirec
  3372. 3ec0: tord and treat it with cluster_t.- Make sure anaconda log dir is
  3373. 3f00: created with var_log_t.- Allow lvm_t to create default targets
  3374. 3f40: for filesystem handling.- Fix labeling for razor-lightdm binarie
  3375. 3f80: s.- Allow insmod_t to read any file labeled var_lib_t.- Add poli
  3376. 3fc0: cy for pesign.- Activate policy for cmpiLMI_Account-cimprovagt.-
  3377. 13:00:16.868725 <= Recv data, 16384 bytes (0x4000)
  3378. 0000: Allow isnsd syscall=listen.- /usr/libexec/pegasus/cimprovagt ne
  3379. 0040: eds setsched caused by sched_setscheduler.- Allow ctdbd to use u
  3380. 0080: dp/4379.- gatherd wants sys_nice and setsched.- Add support for
  3381. 00c0: texlive2012.- Allow NM to read file_t (usb stick with no labels
  3382. 0100: used to transfer keys for example).- Allow cobbler to execute ap
  3383. 0140: ache with domain transition.- condor_collector uses tcp/9000.- L
  3384. 0180: abel /usr/sbin/virtlockd as virtd_exec_t for now.- Allow cobbler
  3385. 01c0: to execute ldconfig.- Allow NM to execute ssh.- Allow mdadm to
  3386. 0200: read /dev/crash.- Allow antivirus domains to connect to snmp por
  3387. 0240: t.- Make amavisd-snmp working correctly.- Allow nfsd_t to mounto
  3388. 0280: n nfsd_fs_t.- Add initial snapper policy.- We still need to have
  3389. 02c0: consolekit policy.- Dontaudit firefox attempting to connect to
  3390. 0300: the xserver_port_t if run within sandbox_web_t.- Dontaudit sandb
  3391. 0340: ox apps attempting to open user_devpts_t.- Allow dirsrv to read
  3392. 0380: network state.- Fix pki_read_tomcat_lib_files.- Add labeling for
  3393. 03c0: /usr/libexec/nm-ssh-service.- Add label cert_t for /var/lib/ipa
  3394. 0400: /pki-ca/publish.- Lets label /sys/fs/cgroup as cgroup_t for now,
  3395. 0440: to keep labels consistant.- Allow nfsd_t to mounton nfsd_fs_t.-
  3396. 0480: Dontaudit sandbox apps attempting to open user_devpts_t.- Allow
  3397. 04c0: passwd_t to change role to system_r from unconfined_r.- Don't a
  3398. 0500: udit access checks by sandbox xserver on xdb var_lib.- Allow nto
  3399. 0540: p to read usbmon devices.- Add labeling for new polcykit authori
  3400. 0580: zor.- Dontaudit access checks from fail2ban_client.- Don't audit
  3401. 05c0: access checks by sandbox xserver on xdb var_lib.- Allow apps th
  3402. 0600: at connect to xdm stream to conenct to xdm_dbusd_t stream.- Fix
  3403. 0640: labeling for all /usr/bim/razor-lightdm-* binaries.- Add filenam
  3404. 0680: e trans for /dev/md126p1.- Make vdagent able to request loading
  3405. 06c0: kernel module.- Add support for cloud-init make it as unconfined
  3406. 0700: domain.- Allow snmpd to run smartctl in fsadm_t domain.- remove
  3407. 0740: duplicate openshift_search_lib() interface.- Allow mysqld to se
  3408. 0780: arch openshift lib files.- Allow openshift cgroup to interact wi
  3409. 07c0: th passedin file descriptors.- Allow colord to list directories
  3410. 0800: inthe users homedir.- aide executes prelink to check files.- Mak
  3411. 0840: e sure cupsd_t creates content in /etc/cups with the correct lab
  3412. 0880: el.- Lest dontaudit apache read all domains, so passenger will n
  3413. 08c0: ot cause this avc.- Allow gssd to connect to gssproxy.- systemd-
  3414. 0900: tmpfiles needs to be able to raise the level to fix labeling on
  3415. 0940: /run/setrans in MLS.- Allow systemd-tmpfiles to relabel also loc
  3416. 0980: k files.- Allow useradd to add homdir in /var/lib/openshift.- Al
  3417. 09c0: low setfiles and semanage to write output to /run/files.- Add la
  3418. 0a00: beling for /dev/tgt.- Dontaudit leak fd from firewalld for modpr
  3419. 0a40: obe.- Allow runuser running as rpm_script_t to create netlink_au
  3420. 0a80: dit socket.- Allow mdadm to read BIOS non-volatile RAM.- account
  3421. 0ac0: service watches when accounts come and go in wtmp.- /usr/java/jr
  3422. 0b00: e1.7.0_21/bin/java needs to create netlink socket.- Add httpd_us
  3423. 0b40: e_sasl boolean.- Allow net_admin for tuned_t.- iscsid needs sys_
  3424. 0b80: module to auto-load kernel modules.- Allow blueman to read bluet
  3425. 0bc0: ooth conf.- Add nova_manage_lib_files() interface.- Fix mplayer_
  3426. 0c00: filetrans_home_content().- Add mplayer_filetrans_home_content().
  3427. 0c40: - mozilla_plugin_config_roles need to be able to access mozilla_
  3428. 0c80: plugin_config_t.- Revert "Allow thumb_t to append inherited xdm
  3429. 0cc0: stream socket".- Add iscsi_filetrans_named_content() interface.-
  3430. 0d00: Allow to create .mplayer with the correct labeling for unconfin
  3431. 0d40: ed.- Allow iscsiadmin to create lock file with the correct label
  3432. 0d80: ing.- Allow wine to manage wine home content.- Make amanda worki
  3433. 0dc0: ng with socket actiovation.- Add labeling for /usr/sbin/iscsiadm
  3434. 0e00: .- Add support for /var/run/gssproxy.sock.- dnsmasq_t needs to r
  3435. 0e40: ead sysctl_net_t.- Fix courier_domain_template() interface.- All
  3436. 0e80: ow blueman to write ip_forward.- Allow mongodb to connect to mon
  3437. 0ec0: godb port.- Allow mongodb to connect to mongodb port.- Allow jav
  3438. 0f00: a to bind jobss_debug port.- Fixes for *_admin interfaces.- Allo
  3439. 0f40: w iscsid auto-load kernel modules needed for proper iSCSI functi
  3440. 0f80: onality.- Need to assign attribute for courier_domain to all cou
  3441. 0fc0: rier_domains.- Fail2ban reads /etc/passwd.- postfix_virtual will
  3442. 1000: create new files in postfix_spool_t.- abrt triggers sys_ptrace
  3443. 1040: by running pidof.- Label ~/abc as mozilla_home_t, since java app
  3444. 1080: s as plugin want to create it.- Add passenger fixes needed by fo
  3445. 10c0: reman.- Remove dup interfaces.- Add additional interfaces for qu
  3446. 1100: antum.- Add new interfaces for dnsmasq.- Allow passenger to rea
  3447. 1140: d localization and send signull to itself.- Allow dnsmasq to str
  3448. 1180: eam connect to quantum.- Add quantum_stream_connect().- Make sur
  3449. 11c0: e that mcollective starts the service with the correct labeling.
  3450. 1200: - Add labels for ~/.manpath.- Dontaudit attempts by svirt_t to g
  3451. 1240: etpw* calls.- sandbox domains are trying to look at parent proce
  3452. 1280: ss data.- Allow courior auth to create its pid file in /var/spoo
  3453. 12c0: l/courier subdir.- Add fixes for beam to have it working with co
  3454. 1300: uchdb.- Add labeling for /run/nm-xl2tpd.con.- Allow apache to st
  3455. 1340: ream connect to thin.- Add systemd support for amand.- Make publ
  3456. 1380: ic types usable for fs mount points.- Call correct mandb interfa
  3457. 13c0: ce in domain.te.- Allow iptables to r/w quantum inherited pipes
  3458. 1400: and send sigchld.- Allow ifconfig domtrans to iptables and execu
  3459. 1440: te ldconfig.- Add labels for ~/.manpath.- Allow systemd to read
  3460. 1480: iscsi lib files.- seunshare is trying to look at parent process
  3461. 14c0: data.- Fix openshift_search_lib.- Add support for abrt-uefioops-
  3462. 1500: oops.- Allow colord to getattr any file system.- Allow chrome pr
  3463. 1540: ocesses to look at each other.- Allow sys_ptrace for abrt_t.- Ad
  3464. 1580: d new policy for gssproxy.- Dontaudit leaked file descriptor wri
  3465. 15c0: tes from firewalld.- openshift_net_type is interface not templat
  3466. 1600: e.- Dontaudit pppd to search gnome config.- Update openshift_sea
  3467. 1640: rch_lib() interface.- Add fs_list_pstorefs().- Fix label on libb
  3468. 1680: cm_host.so since it is built incorrectly on raspberry pi, needs
  3469. 16c0: back port to F18.- Better labels for raspberry pi devices.- Allo
  3470. 1700: w init to create devpts_t directory.- Temporarily label rasbery
  3471. 1740: pi devices as memory_device_t, needs back port to f18.- Allow sy
  3472. 1780: sadm_t to build kernels.- Make sure mount creates /var/run/blkid
  3473. 17c0: with the correct label, needs back port to F18.- Allow userdoma
  3474. 1800: ins to stream connect to gssproxy.- Dontaudit leaked file descri
  3475. 1840: ptor writes from firewalld.- Allow xserver to read /dev/urandom.
  3476. 1880: - Add additional fixes for ipsec-mgmt.- Make SSHing into an Open
  3477. 18c0: shift Enterprise Node working.- Add transition rules to unconfin
  3478. 1900: ed domains and to sysadm_t to create /etc/adjtime.- with the pro
  3479. 1940: per label..- Update files_filetrans_named_content() interface to
  3480. 1980: get right labeling for pam.d conf files.- Allow systemd-timedat
  3481. 19c0: ed to create adjtime.- Add clock_create_adjtime().- Additional f
  3482. 1a00: ix ifconfing for #966106.- Allow kernel_t to create boot.log wit
  3483. 1a40: h correct labeling.- Remove unconfined_mplayer for which we don'
  3484. 1a80: t have rules.- Rename interfaces.- Add userdom_manage_user_home_
  3485. 1ac0: files/dirs interfaces.- Fix files_dontaudit_read_all_non_securit
  3486. 1b00: y_files.- Fix ipsec_manage_key_file().- Fix ipsec_filetrans_key_
  3487. 1b40: file().- Label /usr/bin/razor-lightdm-greeter as xdm_exec_t inst
  3488. 1b80: ead of spamc_exec_t.- Fix labeling for ipse.secrets.- Add interf
  3489. 1bc0: aces for ipsec and labeling for ipsec.info and ipsec_setup.pid.-
  3490. 1c00: Add files_dontaudit_read_all_non_security_files() interface.- /
  3491. 1c40: var/log/syslog-ng should be labeled var_log_t.- Make ifconfig_va
  3492. 1c80: r_run_t a mountpoint.- Add transition from ifconfig to dnsmasq.-
  3493. 1cc0: Allow ifconfig to execute bin_t/shell_exec_t.- We want to have
  3494. 1d00: hwdb.bin labeled as etc_t.- update logging_filetrans_named_conte
  3495. 1d40: nt() interface.- Allow systemd_timedate_t to manage /etc/adjtime
  3496. 1d80: .- Allow NM to send signals to l2tpd.- Update antivirus_can_scan
  3497. 1dc0: _system boolean.- Allow devicekit_disk_t to sys_config_tty.- Run
  3498. 1e00: abrt-harvest programs as abrt_t, and allow abrt_t to list all f
  3499. 1e40: ilesystem directories.- Make printing from vmware working.- Allo
  3500. 1e80: w php-cgi from php54 collection to access /var/lib/net-snmp/mib_
  3501. 1ec0: indexes.- Add virt_qemu_ga_data_t for qemu-ga.- Make chrome and
  3502. 1f00: mozilla able to connect to same ports, add jboss_management_port
  3503. 1f40: _t to both.- Fix typo in virt.te.- Add virt_qemu_ga_unconfined_t
  3504. 1f80: for hook scripts.- Make sure NetworkManager files get created w
  3505. 1fc0: ith the correct label.- Add mozilla_plugin_use_gps boolean.- Fix
  3506. 2000: cyrus to have support for net-snmp.- Additional fixes for dnsma
  3507. 2040: sq and quantum for #966106.- Add plymouthd_create_log().- remove
  3508. 2080: httpd_use_oddjob for which we don't have rules.- Add missing ru
  3509. 20c0: les for httpd_can_network_connect_cobbler.- Add missing cluster_
  3510. 2100: use_execmem boolean.- Call userdom_manage_all_user_home_type_fil
  3511. 2140: es/dirs.- Additional fix for ftp_home_dir.- Fix ftp_home_dir boo
  3512. 2180: lean.- Allow squit to recv/send client squid packet.- Fix nut.te
  3513. 21c0: to have nut_domain attribute.- Add support for ejabberd; TODO:
  3514. 2200: revisit jabberd and rabbit policy.- Fix amanda policy.- Add more
  3515. 2240: fixes for domains which use libusb.- Make domains which use lib
  3516. 2280: usb working correctly.- Allow l2tpd to create ipsec key files wi
  3517. 22c0: th correct labeling and manage them.- Fix cobbler_manage_lib_fil
  3518. 2300: es/cobbler_read_lib_files to cover also lnk files.- Allow rabbit
  3519. 2340: mq-beam to bind generic node.- Allow l2tpd to read ipse-mgmt pid
  3520. 2380: files.- more fixes for l2tpd, NM and pppd from #967072.- Dontau
  3521. 23c0: dit to getattr on dirs for dovecot-deliver.- Allow raiudusd serv
  3522. 2400: er connect to postgresql socket.- Add kerberos support for radiu
  3523. 2440: sd.- Allow saslauthd to connect to ldap port.- Allow postfix to
  3524. 2480: manage postfix_private_t files.- Add chronyd support for #965457
  3525. 24c0: .- Fix labeling for HOME_DIR/\.icedtea.- CHange squid and snmpd
  3526. 2500: to be allowed also write own logs.- Fix labeling for /usr/libexe
  3527. 2540: c/qemu-ga.- Allow virtd_t to use virt_lock_t.- Allow also sealer
  3528. 2580: t to read the policy from the kernel.- qemu-ga needs to execute
  3529. 25c0: scripts in /usr/libexec/qemu-ga and to use /tmp content.- Dontau
  3530. 2600: dit listing of users homedir by sendmail Seems like a leak.- All
  3531. 2640: ow passenger to transition to puppet master.- Allow apache to co
  3532. 2680: nnect to mythtv.- Add definition for mythtv ports.- Add addition
  3533. 26c0: al fixes for #948073 bug.- Allow sge_execd_t to also connect to
  3534. 2700: sge ports.- Allow openshift_cron_t to manage openshift_var_lib_t
  3535. 2740: sym links.- Allow openshift_cron_t to manage openshift_var_lib_
  3536. 2780: t sym links.- Allow sge_execd to bind sge ports. Allow kill capa
  3537. 27c0: bility and reads cgroup files.- Remove pulseaudio filetrans puls
  3538. 2800: eaudio_manage_home_dirs which is a part of pulseaudio_manage_hom
  3539. 2840: e_files.- Add networkmanager_stream_connect().- Make gnome-abrt
  3540. 2880: wokring with staff_t.- Fix openshift_manage_lib_files() interfac
  3541. 28c0: e.- mdadm runs ps command which seems to getattr on random log f
  3542. 2900: iles.- Allow mozilla_plugin_t to create pulseaudit_home_t direct
  3543. 2940: ories.- Allow qemu-ga to shutdown virtual hosts.- Add labelling
  3544. 2980: for cupsd-browsed.- Add web browser plugins to connect to aol po
  3545. 29c0: rts.- Allow nm-dhcp-helper to stream connect to NM.- Add port de
  3546. 2a00: finition for sge ports.- Make sure users and unconfined domains
  3547. 2a40: create .hushlogin with the correct label.- Allow pegaus to chat
  3548. 2a80: with realmd over DBus.- Allow cobblerd to read network state.- A
  3549. 2ac0: llow boicn-client to stat on /dev/input/mice.- Allow certwatch t
  3550. 2b00: o read net_config_t when it executes apache.- Allow readahead to
  3551. 2b40: create /run/systemd and then create its own directory with the
  3552. 2b80: correct label.- Transition directories and files when in a user_
  3553. 2bc0: tmp_t directory.- Change certwatch to domtrans to apache instead
  3554. 2c00: of just execute.- Allow virsh_t to read xen lib files.- update
  3555. 2c40: policy rules for pegasus_openlmi_account_t.- Add support for svn
  3556. 2c80: serve_tmp_t.- Activate account openlmi policy.- pegasus_openlmi_
  3557. 2cc0: domain_template needs also require pegasus_t.- One more fix for
  3558. 2d00: policykit.te.- Call fs_list_cgroups_dirs() in policykit.te.- All
  3559. 2d40: ow nagios service plugin to read mysql config files.- Add labeli
  3560. 2d80: ng for /var/svn.- Fix chrome.te.- Fix pegasus_openlmi_domain_tem
  3561. 2dc0: plate() interfaces.- Fix dev_rw_vfio_dev definiton, allow virtd_
  3562. 2e00: t to read tmpfs_t symlinks.- Fix location of google-chrome data.
  3563. 2e40: - Add support for chome_sandbox to store content in the homedir.
  3564. 2e80: - Allow policykit to watch for changes in cgroups file system.-
  3565. 2ec0: Add boolean to allow mozilla_plugin_t to use spice.- Allow coll
  3566. 2f00: ectd to bind to udp port.- Allow collected_t to read all of /pro
  3567. 2f40: c.- Should use netlink socket_perms.- Should use netlink socket_
  3568. 2f80: perms.- Allow glance domains to connect to apache ports.- Allow
  3569. 2fc0: apcupsd_t to manage its log files.- Allow chrome objects to rw_i
  3570. 3000: nherited unix_stream_socket from callers.- Allow staff_t to exec
  3571. 3040: ute virtd_exec_t for running vms.- nfsd_t needs to bind mountd p
  3572. 3080: ort to make nfs-mountd.service working.- Allow unbound net_admin
  3573. 30c0: capability because of setsockopt syscall.- Fix fs_list_cgroup_d
  3574. 3100: irs().- Label /usr/lib/nagios/plugins/utils.pm as bin_t.- Remove
  3575. 3140: uplicate definition of fs_read_cgroup_files().- Remove duplicat
  3576. 3180: e definition of fs_read_cgroup_files().- Add files_mountpoint_fi
  3577. 31c0: letrans interface to be used by quotadb_t and snapperd.- Additio
  3578. 3200: nal interfaces needed to list and read cgroups config.- Add port
  3579. 3240: definition for collectd port.- Add labels for /dev/ptp*.- Allow
  3580. 3280: staff_t to execute virtd_exec_t for running vms.- Allow samba-n
  3581. 32c0: et to also read realmd tmp files.- Allow NUT to use serial ports
  3582. 3300: .- realmd can be started by systemctl now.- Remove userdom_home_
  3583. 3340: manager for xdm_t and move all rules to xserver.te directly.- Ad
  3584. 3380: d new xdm_write_home boolean to allow xdm_t to create files in H
  3585. 33c0: OME dirs with xdm_home_t.- Allow postfix-showq to read/write uni
  3586. 3400: x.showq in /var/spool/postfix/pid.- Allow virsh to read xen lock
  3587. 3440: file.- Allow qemu-ga to create files in /run with proper labeli
  3588. 3480: ng.- Allow glusterd to connect to own socket in /tmp.- Allow gla
  3589. 34c0: nce-api to connect to http port to make glance image-create work
  3590. 3500: ing.- Allow keystonte_t to execute rpm.- Fix realmd cache interf
  3591. 3540: aces.- Allow tcpd to execute leafnode.- Allow samba-net to read
  3592. 3580: realmd cache files.- Dontaudit sys_tty_config for alsactl.- Fix
  3593. 35c0: allow rules for postfix_var_run.- Allow cobblerd to read /etc/pa
  3594. 3600: sswd.- Allow pegasus to read exports.- Allow systemd-timedate to
  3595. 3640: read xdm state.- Allow mout to stream connect to rpcbind.- Add
  3596. 3680: labeling just for /usr/share/pki/ca-trust-source instead of /usr
  3597. 36c0: /share/pki.- Allow thumbnails to share memory with apps which ru
  3598. 3700: n thumbnails.- Allow postfix-postqueue block_suspend.- Add lib i
  3599. 3740: nterfaces for smsd.- Add support for nginx.- Allow s2s running a
  3600. 3780: s jabberd_t to connect to jabber_interserver_port_t.- Allow pki
  3601. 37c0: apache domain to create own tmp files and execute httpd_suexec.-
  3602. 3800: Allow procmail to manger user tmp files/dirs/lnk_files.- Add vi
  3603. 3840: rt_stream_connect_svirt() interface.- Allow dovecot-auth to exec
  3604. 3880: ute bin_t.- Allow iscsid to request that kernel load a kernel mo
  3605. 38c0: dule.- Add labeling support for /var/lib/mod_security.- Allow iw
  3606. 3900: running as tuned_t to create netlink socket.- Dontaudit sys_tty
  3607. 3940: _config for thumb_t.- Add labeling for nm-l2tp-service.- Allow h
  3608. 3980: ttpd running as certwatch_t to open tcp socket.- Allow useradd t
  3609. 39c0: o manager smsd lib files.- Allow useradd_t to add homedirs in /v
  3610. 3a00: ar/lib.- Fix typo in userdomain.te.- Cleanup userdom_read_home_c
  3611. 3a40: erts.- Implement userdom_home_reader_certs_type to allow read ce
  3612. 3a80: rts also on encrypt /home with ecryptfs_t.- Allow staff to strea
  3613. 3ac0: m connect to svirt_t to make gnome-boxes working.- Allow lvm to
  3614. 3b00: create its own unit files.- Label /var/lib/sepolgen as selinux_c
  3615. 3b40: onfig_t.- Add filetrans rules for tw devices.- Add transition fr
  3616. 3b80: om cupsd_config_t to cupsd_t.- Add filetrans rules for tw device
  3617. 3bc0: s.- Cleanup bad transition lines.- Fix lockdev_manage_files().-
  3618. 3c00: Allow setroubleshootd to read var_lib_t to make email_alert work
  3619. 3c40: ing.- Add lockdev_manage_files().- Call proper interface in virt
  3620. 3c80: .te.- Allow gkeyring_domain to create /var/run/UID/config/dbus f
  3621. 3cc0: ile.- system dbus seems to be blocking suspend.- Dontaudit attem
  3622. 3d00: ps to sys_ptrace, which I believe gpsd does not need.- When you
  3623. 3d40: enter a container from root, you generate avcs with a leaked fil
  3624. 3d80: e descriptor.- Allow mpd getattr on file system directories.- Ma
  3625. 3dc0: ke sure realmd creates content with the correct label.- Allow sy
  3626. 3e00: stemd-tty-ask to write kmsg.- Allow mgetty to use lockdev librar
  3627. 3e40: y for device locking.- Fix selinuxuser_user_share_music boolean
  3628. 3e80: name to selinuxuser_share_music.- When you enter a container fro
  3629. 3ec0: m root, you generate avcs with a leaked file descriptor.- Make s
  3630. 3f00: ure init.fc files are labeled correctly at creation.- File name
  3631. 3f40: trans vconsole.conf.- Fix labeling for nagios plugins.- label sh
  3632. 3f80: ared libraries in /opt/google/chrome as testrel_shlib_t.- Allow
  3633. 3fc0: certmonger to dbus communicate with realmd .- Make realmd workin
  3634. 13:00:16.874029 <= Recv data, 16384 bytes (0x4000)
  3635. 0000: g.- Fix mozilla specification of homedir content.- Allow certmon
  3636. 0040: ger to read network state.- Allow tmpwatch to read tmp in /var/s
  3637. 0080: pool/{cups,lpd}.- Label all nagios plugin as unconfined by defau
  3638. 00c0: lt.- Add httpd_serve_cobbler_files().- Allow mdadm to read /dev/
  3639. 0100: sr0 and create tmp files.- Allow certwatch to send mails.- Fix l
  3640. 0140: abeling for nagios plugins.- label shared libraries in /opt/goog
  3641. 0180: le/chrome as testrel_shlib_t.- Allow realmd to run ipa, really n
  3642. 01c0: eeds to be an unconfined_domain.- Allow sandbox domains to use i
  3643. 0200: nherted terminals.- Allow pscd to use devices labeled svirt_imag
  3644. 0240: e_t in order to use cat cards..- Add label for new alsa pid.- Al
  3645. 0280: sa now uses a pid file and needs to setsched .- Fix oracleasmfs_
  3646. 02c0: t definition.- Add support for sshd_unit_file_t.- Add oracleasmf
  3647. 0300: s_t.- Allow unlabeled_t files to be stored on unlabeled_t filesy
  3648. 0340: stems.- Fix description of deny_ptrace boolean.- Remove allow fo
  3649. 0380: r execmod lib_t for now.- Allow quantum to connect to keystone p
  3650. 03c0: ort.- Allow nova-console to talk with mysql over unix stream soc
  3651. 0400: ket.- Allow dirsrv to stream connect to uuidd.- thumb_t needs to
  3652. 0440: be able to create ~/.cache if it does not exist.- virtd needs t
  3653. 0480: o be able to sys_ptrace when starting and stoping containers.- A
  3654. 04c0: llow alsa_t signal_perms, we probaly should search for any app t
  3655. 0500: hat can execute something without transition and give it signal_
  3656. 0540: perms....- Add dontaudit for mozilla_plugin_t looking at the xdm
  3657. 0580: _t sockets.- Fix deny_ptrace boolean, certain ptrace leaked into
  3658. 05c0: the system.- Allow winbind to manage kerberos_rcache_host.- All
  3659. 0600: ow spamd to create spamd_var_lib_t directories.- Remove transiti
  3660. 0640: on to mozilla_tmp_t by mozilla_t, to allow it to manage the user
  3661. 0680: s tmp dirs.- Add mising nslcd_dontaudit_write_sock_file() interf
  3662. 06c0: ace.- one more fix.- Fix pki_read_tomcat_lib_files() interface.-
  3663. 0700: Allow certmonger to read pki-tomcat lib files.- Allow certwatch
  3664. 0740: to execute bin_t.- Allow snmp to manage /var/lib/net-snmp files
  3665. 0780: .- Call snmp_manage_var_lib_files(fogorn_t) instead of snmp_mana
  3666. 07c0: ge_var_dirs.- Fix vmware_role() interface.- Fix cobbler_manage_l
  3667. 0800: ib_files() interface.- Allow nagios check disk plugins to execut
  3668. 0840: e bin_t.- Allow quantum to transition to openvswitch_t.- Allow p
  3669. 0880: ostdrop to stream connect to postfix-master.- Allow quantum to s
  3670. 08c0: tream connect to openvswitch.- Add xserver_dontaudit_xdm_rw_stre
  3671. 0900: am_sockets() interface.- Allow daemon to send dgrams to initrc_t
  3672. 0940: .- Allow kdm to start the power service to initiate a reboot or
  3673. 0980: poweroff.- Add mising nslcd_dontaudit_write_sock_file() interfac
  3674. 09c0: e.- one more fix.- Fix pki_read_tomcat_lib_files() interface.- A
  3675. 0a00: llow certmonger to read pki-tomcat lib files.- Allow certwatch t
  3676. 0a40: o execute bin_t.- Allow snmp to manage /var/lib/net-snmp files.-
  3677. 0a80: Don't audit attempts to write to stream socket of nscld by thum
  3678. 0ac0: bnailers.- Allow git_system_t to read network state.- Allow pega
  3679. 0b00: sas to execute mount command.- Fix desc for drdb_admin.- Fix con
  3680. 0b40: dor_amin().- Interface fixes for uptime, vdagent, vnstatd.- Fix
  3681. 0b80: labeling for moodle in /var/www/moodle/data.- Add interface fixe
  3682. 0bc0: s.- Allow bugzilla to read certs.- /var/www/moodle needs to be w
  3683. 0c00: ritable by apache.- Add interface to dontaudit attempts to send
  3684. 0c40: dbus messages to systemd domains, for xguest.- Fix namespace_ini
  3685. 0c80: t_t to create content with proper labels, and allow it to manage
  3686. 0cc0: all user content.- Allow httpd_t to connect to osapi_compute po
  3687. 0d00: rt using httpd_use_openstack bolean.- Fixes for dlm_controld.- F
  3688. 0d40: ix apache_read_sys_content_rw_dirs() interface.- Allow logrotate
  3689. 0d80: to read /var/log/z-push dir.- Fix sys_nice for cups_domain.- Al
  3690. 0dc0: low postfix_postdrop to acces postfix_public socket.- Allow sche
  3691. 0e00: d_setscheduler for cupsd_t.- Add missing context for /usr/sbin/s
  3692. 0e40: nmpd.- Kernel_t needs mac_admin in order to support labeled NFS.
  3693. 0e80: - Fix systemd_dontaudit_dbus_chat() interface.- Add interface to
  3694. 0ec0: dontaudit attempts to send dbus messages to systemd domains, fo
  3695. 0f00: r xguest.- Allow consolehelper domain to write Xauth files in /r
  3696. 0f40: oot.- Add port definition for osapi_compute port.- Allow unconfi
  3697. 0f80: ned to create /etc/hostname with correct labeling.- Add systemd_
  3698. 0fc0: filetrans_named_hostname() interface.- Allow httpd_t to connect
  3699. 1000: to osapi_compute port using httpd_use_openstack bolean.- Fixes f
  3700. 1040: or dlm_controld.- Fix apache_read_sys_content_rw_dirs() interfac
  3701. 1080: e.- Allow logrotate to read /var/log/z-push dir.- Allow postfix_
  3702. 10c0: postdrop to acces postfix_public socket.- Allow sched_setschedul
  3703. 1100: er for cupsd_t.- Add missing context for /usr/sbin/snmpd.- Allow
  3704. 1140: consolehelper more access discovered by Tom London.- Allow fsda
  3705. 1180: emon to send signull to all domain.- Add port definition for osa
  3706. 11c0: pi_compute port.- Allow unconfined to create /etc/hostname with
  3707. 1200: correct labeling.- Add systemd_filetrans_named_hostname() interf
  3708. 1240: ace.- Fix file_contexts.subs to label /run/lock correctly.- Try
  3709. 1280: to label on controlC devices up to 30 correctly.- Add mount_rw_p
  3710. 12c0: id_files() interface.- Add additional mount/umount interfaces ne
  3711. 1300: eded by mock.- fsadm_t sends audit messages in reads kernel_ipc_
  3712. 1340: info when doing livecd-iso-to-disk.- Fix tabs.- Allow initrc_dom
  3713. 1380: ain to search rgmanager lib files.- Add more fixes which make mo
  3714. 13c0: ck working together with confined users. * Allow mock_t to mana
  3715. 1400: ge rpm files. * Allow mock_t to read rpm log files. * Allow mo
  3716. 1440: ck to setattr on tmpfs, devpts. * Allow mount/umount filesystem
  3717. 1480: s.- Add rpm_read_log() interface.- yum-cron runs rpm from within
  3718. 14c0: it..- Allow tuned to transition to dmidecode.- Allow firewalld
  3719. 1500: to do net_admin.- Allow mock to unmont tmpfs_t.- Fix virt_sigkil
  3720. 1540: l() interface.- Add additional fixes for mock. Mainly caused by
  3721. 1580: mount running in mock_t.- Allow mock to write sysfs_t and mount
  3722. 15c0: pid files.- Add mailman_domain to mailman_template().- Allow ope
  3723. 1600: nvswitch to execute shell.- Allow qpidd to use kerberos.- Allow
  3724. 1640: mailman to use fusefs, needs back port to RHEL6.- Allow apache a
  3725. 1680: nd its scripts to use anon_inodefs.- Add alias for git_user_cont
  3726. 16c0: ent_t and git_sys_content_t so that RHEL6 will update to RHEL7.-
  3727. 1700: Realmd needs to connect to samba ports, needs back port to F18
  3728. 1740: also.- Allow colord to read /run/initial-setup-.- Allow sanlock-
  3729. 1780: helper to send sigkill to virtd which is registred to sanlock.-
  3730. 17c0: Add virt_kill() interface.- Add rgmanager_search_lib() interface
  3731. 1800: .- Allow wdmd to getattr on all filesystems. Back ported from RH
  3732. 1840: EL6.- Allow realmd to create tmp files.- FIx ircssi_home_t type
  3733. 1880: to irssi_home_t.- Allow adcli running as realmd_t to connect to
  3734. 18c0: ldap port.- Allow NetworkManager to transition to ipsec_t, for r
  3735. 1900: unning strongswan.- Make openshift_initrc_t an lxc_domain.- Allo
  3736. 1940: w gssd to manage user_tmp_t files.- Fix handling of irclogs in u
  3737. 1980: sers homedir.- Fix labeling for drupal an wp-content in subdirs
  3738. 19c0: of /var/www/html.- Allow abrt to read utmp_t file.- Fix openshif
  3739. 1a00: t policy to transition lnk_file, sock-file an fifo_file when cre
  3740. 1a40: ated in a tmpfs_t, needs back port to RHEL6.- fix labeling for (
  3741. 1a80: oo|rhc)-restorer-wrapper.sh.- firewalld needs to be able to writ
  3742. 1ac0: e to network sysctls.- Fix mozilla_plugin_dontaudit_rw_sem() int
  3743. 1b00: erface.- Dontaudit generic ipc read/write to a mozilla_plugin fo
  3744. 1b40: r sandbox_x domains.- Add mozilla_plugin_dontaudit_rw_sem() inte
  3745. 1b80: rface.- Allow svirt_lxc_t to transition to openshift domains.- A
  3746. 1bc0: llow condor domains block_suspend and dac_override caps.- Allow
  3747. 1c00: condor_master to read passd.- Allow condor_master to read system
  3748. 1c40: state.- Allow NetworkManager to transition to ipsec_t, for runn
  3749. 1c80: ing strongswan.- Lots of access required by lvm_t to created enc
  3750. 1cc0: rypted usb device.- Allow xdm_t to dbus communicate with systemd
  3751. 1d00: _localed_t.- Label strongswan content as ipsec_exec_mgmt_t for n
  3752. 1d40: ow.- Allow users to dbus chat with systemd_localed.- Fix handlin
  3753. 1d80: g of .xsession-errors in xserver.if, so kde will work.- Might be
  3754. 1dc0: a bug but we are seeing avc's about people status on init_t:ser
  3755. 1e00: vice.- Make sure we label content under /var/run/lock as <<none>
  3756. 1e40: >.- Allow daemon and systemprocesses to search init_var_run_t di
  3757. 1e80: rectory.- Add boolean to allow xdm to write xauth data to the ho
  3758. 1ec0: me directory.- Allow mount to write keys for the unconfined doma
  3759. 1f00: in.- Add unconfined_write_keys() interface.- Add labeling for /u
  3760. 1f40: sr/share/pki.- Allow programs that read var_run_t symlinks also
  3761. 1f80: read var_t symlinks.- Add additional ports as mongod_port_t for
  3762. 1fc0: 27018, 27019, 28017, 28018 and 28019 ports.- Fix labeling for /
  3763. 2000: etc/dhcp directory.- add missing systemd_stub_unit_file() interf
  3764. 2040: ace.- Add files_stub_var() interface.- Add lables for cert_t dir
  3765. 2080: ectories.- Make localectl set-x11-keymap working at all.- Allow
  3766. 20c0: abrt to manage mock build environments to catch build problems..
  3767. 2100: - Allow virt_domains to setsched for running gdb on itself.- All
  3768. 2140: ow thumb_t to execute user home content.- Allow pulseaudio runni
  3769. 2180: ng as mozilla_plugin_t to read /run/systemd/users/1000.- Allow c
  3770. 21c0: ertwatch to execut /usr/bin/httpd.- Allow cgred to send signal p
  3771. 2200: erms to itself, needs back port to RHEL6.- Allow openshift_cron_
  3772. 2240: t to look at quota.- Allow cups_t to read inhered tmpfs_t from t
  3773. 2280: he kernel.- Allow yppasswdd to use NIS.- Tuned wants sys_rawio c
  3774. 22c0: apability.- Add ftpd_use_fusefs boolean.- Allow dirsrvadmin_t to
  3775. 2300: signal itself.- Allow localectl to read /etc/X11/xorg.conf.d di
  3776. 2340: rectory.- Revert "Revert "Fix filetrans rules for kdm creates .x
  3777. 2380: session-errors"".- Allow mount to transition to systemd_passwd_a
  3778. 23c0: gent.- Make sure abrt directories are labeled correctly.- Allow
  3779. 2400: commands that are going to read mount pid files to search mount_
  3780. 2440: var_run_t.- label /usr/bin/repoquery as rpm_exec_t.- Allow autom
  3781. 2480: ount to block suspend.- Add abrt_filetrans_named_content so that
  3782. 24c0: abrt directories get labeled correctly.- Allow virt domains to
  3783. 2500: setrlimit and read file_context.- Allow nagios to manage nagios
  3784. 2540: spool files.- /var/spool/snmptt is a directory which snmdp needs
  3785. 2580: to write to, needs back port to RHEL6.- Add swift_alias.* polic
  3786. 25c0: y files which contain typealiases for swift types.- Add support
  3787. 2600: for /run/lock/opencryptoki.- Allow pkcsslotd chown capability.-
  3788. 2640: Allow pkcsslotd to read passwd.- Add rsync_stub() interface.- Al
  3789. 2680: low systemd_timedate also manage gnome config homedirs.- Label /
  3790. 26c0: usr/lib64/security/pam_krb5/pam_krb5_cchelper as bin_t.- Fix fil
  3791. 2700: etrans rules for kdm creates .xsession-errors.- Allow sytemd_tmp
  3792. 2740: files to create wtmp file.- Really should not label content und
  3793. 2780: er /var/lock, since it could have labels on it different from va
  3794. 27c0: r_lock_t.- Allow systemd to list all file system directories.- A
  3795. 2800: dd some basic stub interfaces which will be used in PRODUCT poli
  3796. 2840: cies.- Fix log transition rule for cluster domains.- Start to gr
  3797. 2880: oup all cluster log together.- Dont use filename transition for
  3798. 28c0: POkemon Advanced Adventure until a new checkpolicy update.- cups
  3799. 2900: uses usbtty_device_t devices.- These fixes were all required to
  3800. 2940: build a MLS virtual Machine with single level desktops.- Allow
  3801. 2980: domains to transiton using httpd_exec_t.- Allow svirt domains to
  3802. 29c0: manage kernel key rings.- Allow setroubleshoot to execute ldcon
  3803. 2a00: fig.- Allow firewalld to read generate gnome data.- Allow blueto
  3804. 2a40: oth to read machine-info.- Allow boinc domain to send signal to
  3805. 2a80: itself.- Fix gnome_filetrans_home_content() interface.- Allow mo
  3806. 2ac0: zilla_plugins to list apache modules, for use with gxine.- Fix l
  3807. 2b00: abels for POkemon in the users homedir.- Allow xguest to read md
  3808. 2b40: stat.- Dontaudit virt_domains getattr on /dev/*.- These fixes we
  3809. 2b80: re all required to build a MLS virtual Machine with single level
  3810. 2bc0: desktops.- Need to back port this to RHEL6 for openshift.- Add
  3811. 2c00: tcp/8891 as milter port.- Allow nsswitch domains to read sssd_va
  3812. 2c40: r_lib_t files.- Allow ping to read network state..- Fix typo.- A
  3813. 2c80: dd labels to /etc/X11/xorg.d and allow systemd-timestampd_t to m
  3814. 2cc0: anage them.- Adopt swift changes from lhh@redhat.com.- Add rhcs_
  3815. 2d00: manage_cluster_pid_files() interface.- Allow screen domains to c
  3816. 2d40: onfigure tty and setup sock_file in ~/.screen directory.- ALlow
  3817. 2d80: setroubleshoot to read default_context_t, needed to backport to
  3818. 2dc0: F18.- Label /etc/owncloud as being an apache writable directory.
  3819. 2e00: - Allow sshd to stream connect to an lxc domain.- Allow postgres
  3820. 2e40: ql to manage rgmanager pid files.- Allow postgresql to read ccs
  3821. 2e80: data.- Allow systemd_domain to send dbus messages to policykit.-
  3822. 2ec0: Add labels for /etc/hostname and /etc/machine-info and allow sy
  3823. 2f00: stemd-hostnamed to create them.- All systemd domains that create
  3824. 2f40: content are reading the file_context file and setfscreate.- Sys
  3825. 2f80: temd domains need to search through init_var_run_t.- Allow sshd
  3826. 2fc0: to communicate with libvirt to set containers labels.- Add inter
  3827. 3000: face to manage pid files.- Allow NetworkManger_t to read /etc/ho
  3828. 3040: stname.- Dontaudit leaked locked files into openshift_domains.-
  3829. 3080: Add fixes for oo-cgroup-read - it nows creates tmp files.- Allow
  3830. 30c0: gluster to manage all directories as well as files.- Dontaudit
  3831. 3100: chrome_sandbox_nacl_t using user terminals.- Allow sysstat to ma
  3832. 3140: nage its own log files.- Allow virtual machines to setrlimit and
  3833. 3180: send itself signals..- Add labeling for /var/run/hplip.- Fix PO
  3834. 31c0: STIN scriptlet.- Merge rgmanger, corosync,pacemaker,aisexec poli
  3835. 3200: cies to cluster_t in rhcs.pp.- Fix authconfig.py labeling.- Make
  3836. 3240: any domains that write homedir content do it correctly.- Allow
  3837. 3280: glusterd to read/write anyhwere on the file system by default.-
  3838. 32c0: Be a little more liberal with the rsync log files.- Fix iscsi_ad
  3839. 3300: min interface.- Allow iscsid_t to read /dev/urand.- Fix up iscsi
  3840. 3340: domain for use with unit files.- Add filename transition suppor
  3841. 3380: t for spamassassin policy.- Allow web plugins to use badly forma
  3842. 33c0: ted libraries.- Allow nmbd_t to create samba_var_t directories.-
  3843. 3400: Add filename transition support for spamassassin policy.- Add f
  3844. 3440: ilename transition support for tvtime.- Fix alsa_home_filetrans_
  3845. 3480: alsa_home() interface.- Move all userdom_filetrans_home_content(
  3846. 34c0: ) calling out of booleans.- Allow logrotote to getattr on all fi
  3847. 3500: le sytems.- Remove duplicate userdom_filetrans_home_content() ca
  3848. 3540: lling.- Allow kadmind to read /etc/passwd.- Dontaudit append .xs
  3849. 3580: ession-errors file on ecryptfs for policykit-auth.- Allow antiv
  3850. 35c0: irus domain to manage antivirus db links.- Allow logrotate to re
  3851. 3600: ad /sys.- Allow mandb to setattr on man dirs.- Remove mozilla_pl
  3852. 3640: ugin_enable_homedirs boolean.- Fix ftp_home_dir boolean.- homedi
  3853. 3680: r mozilla filetrans has been moved to userdom_home_manager.- hom
  3854. 36c0: edir telepathy filetrans has been moved to userdom_home_manager.
  3855. 3700: - Remove gnome_home_dir_filetrans() from gnome_role_gkeyringd().
  3856. 3740: - Might want to eventually write a daemon on fusefsd..- Add poli
  3857. 3780: cy fixes for sshd [net] child from plautrba@redhat.com.- Tor use
  3858. 37c0: s a new port.- Remove bin_t for authconfig.py.- Fix so only one
  3859. 3800: call to userdom_home_file_trans.- Allow home_manager_types to cr
  3860. 3840: eate content with the correctl label.- Fix all domains that writ
  3861. 3880: e data into the homedir to do it with the correct label.- Change
  3862. 38c0: the postgresql to use proper boolean names, which is causing ht
  3863. 3900: tpd_t to.- not get access to postgresql_var_run_t.- Hostname nee
  3864. 3940: ds to send syslog messages.- Localectl needs to be able to send
  3865. 3980: dbus signals to users.- Make sure userdom_filetrans_type will cr
  3866. 39c0: eate files/dirs with user_home_t labeling by default.- Allow use
  3867. 3a00: r_home_manger domains to create spam* homedir content with corre
  3868. 3a40: ct labeling.- Allow user_home_manger domains to create HOMEDIR/.
  3869. 3a80: tvtime with correct labeling.- Add missing miscfiles_setattr_man
  3870. 3ac0: _pages() interface and for now comment some rules for userdom_fi
  3871. 3b00: letrans_type to make build process working.- Declare userdom_fil
  3872. 3b40: etrans_type attribute.- userdom_manage_home_role() needs to be c
  3873. 3b80: alled withoout usertype attribute because of userdom_filetrans_t
  3874. 3bc0: ype attribute.- fusefsd is mounding a fuse file system on /run/u
  3875. 3c00: ser/UID/gvfs.- Man pages are now generated in the build process.
  3876. 3c40: - Allow cgred to list inotifyfs filesystem.- Allow gluster to ge
  3877. 3c80: t attrs on all fs.- New access required for virt-sandbox.- Allow
  3878. 3cc0: dnsmasq to execute bin_t.- Allow dnsmasq to create content in /
  3879. 3d00: var/run/NetworkManager.- Fix openshift_initrc_signal() interface
  3880. 3d40: .- Dontaudit openshift domains doing getattr on other domains.-
  3881. 3d80: Allow consolehelper domain to communicate with session bus.- Moc
  3882. 3dc0: k should not be transitioning to any other domains, we should k
  3883. 3e00: eep mock_t as mock_t.- Update virt_qemu_ga_t policy.- Allow auth
  3884. 3e40: config running from realmd to restart oddjob service.- Add syste
  3885. 3e80: md support for oddjob.- Add initial policy for realmd_consolehel
  3886. 3ec0: per_t which if for authconfig executed by realmd.- Add labeling
  3887. 3f00: for gnashpluginrc.- Allow chrome_nacl to execute /dev/zero.- All
  3888. 3f40: ow condor domains to read /proc.- mozilla_plugin_t will getattr
  3889. 3f80: on /core if firefox crashes.- Allow condor domains to read /etc/
  3890. 3fc0: passwd.- Allow dnsmasq to execute shell scripts, openstack requi
  3891. 13:00:16.878540 <= Recv data, 16384 bytes (0x4000)
  3892. 0000: res this access.- Fix glusterd labeling.- Allow virtd_t to inter
  3893. 0040: act with the socket type.- Allow nmbd_t to override dac if you t
  3894. 0080: urned on sharing all files.- Allow tuned to created kobject_ueve
  3895. 00c0: nt socket.- Allow guest user to run fusermount.- Allow openshift
  3896. 0100: to read /proc and locale.- Allow realmd to dbus chat with rpm.-
  3897. 0140: Add new interface for virt.- Remove depracated interfaces.- All
  3898. 0180: ow systemd_domains read access on etc, etc_runtime and usr files
  3899. 01c0: , also allow them to connect stream to syslog socket.- /usr/shar
  3900. 0200: e/munin/plugins/plugin.sh should be labeled as bin_t.- Remove so
  3901. 0240: me more unconfined_t process transitions, that I don't believe a
  3902. 0280: re necessary.- Stop transitioning uncofnined_t to checkpc.- dmra
  3903. 02c0: id creates /var/lock/dmraid.- Allow systemd_localed to creatre u
  3904. 0300: nix_dgram_sockets.- Allow systemd_localed to write kernel messag
  3905. 0340: es..- Also cleanup systemd definition a little..- Fix userdom_re
  3906. 0380: stricted_xwindows_user_template() interface.- Label any block de
  3907. 03c0: vices or char devices under /dev/infiniband as fixed_disk_device
  3908. 0400: _t.- User accounts need to dbus chat with accountsd daemon.- Gno
  3909. 0440: me requires all users to be able to read /proc/1/.- virsh now do
  3910. 0480: es a setexeccon call.- Additional rules required by openshift do
  3911. 04c0: mains.- Allow svirt_lxc_domains to use inherited terminals, need
  3912. 0500: ed to make virt-sandbox-service execute work.- Allow spamd_updat
  3913. 0540: e_t to search spamc_home_t.- Avcs discovered by mounting an isci
  3914. 0580: device under /mnt.- Allow lspci running as logrotate to read pc
  3915. 05c0: i.ids.- Additional fix for networkmanager_read_pid_files().- Fix
  3916. 0600: networkmanager_read_pid_files() interface.- Allow all svirt dom
  3917. 0640: ains to connect to svirt_socket_t.- Allow virsh to set SELinux c
  3918. 0680: ontext for a process..- Allow tuned to create netlink_kobject_ue
  3919. 06c0: vent_socket.- Allow systemd-timestamp to set SELinux context.- A
  3920. 0700: dd support for /var/lib/systemd/linger.- Fix ssh_sysadm_login to
  3921. 0740: be working on MLS as expected.- Rename files_rw_inherited_tmp_f
  3922. 0780: iles to files_rw_inherited_tmp_file.- Add missing files_rw_inher
  3923. 07c0: ited_tmp_files interface.- Add additional interface for ecryptfs
  3924. 0800: .- ALlow nova-cert to connect to postgresql.- Allow keystone to
  3925. 0840: connect to postgresql.- Allow all cups domains to getattr on fil
  3926. 0880: esystems.- Allow pppd to send signull.- Allow tuned to execute l
  3927. 08c0: dconfig.- Allow gpg to read fips_enabled.- Add additional fixes
  3928. 0900: for ecryptfs.- Allow httpd to work with posgresql.- Allow keysto
  3929. 0940: ne getsched and setsched.- Allow gpg to read fips_enabled.- Add
  3930. 0980: support for /var/cache/realmd.- Add support for /usr/sbin/blazer
  3931. 09c0: _usb and systemd support for nut.- Add labeling for fenced_sanlo
  3932. 0a00: ck and allow sanclok transition to fenced_t.- bitlbee wants to r
  3933. 0a40: ead own log file.- Allow glance domain to send a signal itself.-
  3934. 0a80: Allow xend_t to request that the kernel load a kernel module.-
  3935. 0ac0: Allow pacemaker to execute heartbeat lib files.- cleanup new swi
  3936. 0b00: ft policy.- Fix smartmontools.- Fix userdom_restricted_xwindows_
  3937. 0b40: user_template() interface.- Add xserver_xdm_ioctl_log() interfac
  3938. 0b80: e.- Allow Xusers to ioctl lxdm.log to make lxdm working.- Add ML
  3939. 0bc0: S fixes to make MLS boot/log-in working.- Add mls_socket_write_a
  3940. 0c00: ll_levels() also for syslogd.- fsck.xfs needs to read passwd.- F
  3941. 0c40: ix ntp_filetrans_named_content calling in init.te.- Allow postgr
  3942. 0c80: esql to create pg_log dir.- Allow sshd to read rsync_data_t to m
  3943. 0cc0: ake rsync <backuphost> working.- Change ntp.conf to be labeled n
  3944. 0d00: et_conf_t.- Allow useradd to create homedirs in /run. ircd-ratb
  3945. 0d40: ox does this and we should just allow it.- Allow xdm_t to execut
  3946. 0d80: e gstreamer home content.- Allod initrc_t and unconfined domains
  3947. 0dc0: , and sysadm_t to manage ntp.- New policy for openstack swift do
  3948. 0e00: mains.- More access required for openshift_cron_t.- Use cupsd_lo
  3949. 0e40: g_t instead of cupsd_var_log_t.- rpm_script_roles should be used
  3950. 0e80: in rpm_run.- Fix rpm_run() interface.- Fix openshift_initrc_run
  3951. 0ec0: ().- Fix sssd_dontaudit_stream_connect() interface.- Fix sssd_do
  3952. 0f00: ntaudit_stream_connect() interface.- Allow LDA's job to deliver
  3953. 0f40: mail to the mailbox.- dontaudit block_suspend for mozilla_plugin
  3954. 0f80: _t.- Allow l2tpd_t to all signal perms.- Allow uuidgen to read /
  3955. 0fc0: dev/random.- Allow mozilla-plugin-config to read power_supply in
  3956. 1000: fo.- Implement cups_domain attribute for cups domains.- We now n
  3957. 1040: eed access to user terminals since we start by executing a comma
  3958. 1080: nd outside the tty.- We now need access to user terminals since
  3959. 10c0: we start by executing a command outside the tty.- svirt lxc cont
  3960. 1100: ainers want to execute userhelper apps, need these changes to al
  3961. 1140: low this to happen.- Add containment of openshift cron jobs.- Al
  3962. 1180: low system cron jobs to create tmp directories.- Make userhelp_c
  3963. 11c0: onf_t a config file.- Change rpm to use rpm_script_roles.- More
  3964. 1200: fixes for rsync to make rsync <backuphost> wokring.- Allow logwa
  3965. 1240: tch to domtrans to mdadm.- Allow pacemaker to domtrans to ifconf
  3966. 1280: ig.- Allow pacemaker to setattr on corosync.log.- Add pacemaker_
  3967. 12c0: use_execmem for memcheck-amd64 command.- Allow block_suspend cap
  3968. 1300: ability.- Allow create fifo_file in /tmp with pacemaker_tmp_t.-
  3969. 1340: Allow systat to getattr on fixed disk.- Relabel /etc/ntp.conf to
  3970. 1380: be net_conf_t.- ntp_admin should create files in /etc with the
  3971. 13c0: correct label.- Add interface to create ntp_conf_t files in /etc
  3972. 1400: .- Add additional labeling for quantum.- Allow quantum to execut
  3973. 1440: e dnsmasq with transition.- boinc_cliean wants also execmem as b
  3974. 1480: oinc projecs have.- Allow sa-update to search admin home for /ro
  3975. 14c0: ot/.spamassassin.- Allow sa-update to search admin home for /roo
  3976. 1500: t/.spamassassin.- Allow antivirus domain to read net sysctl.- Do
  3977. 1540: ntaudit attempts from thumb_t to connect to ssd.- Dontaudit atte
  3978. 1580: mpts by readahead to read sock_files.- Dontaudit attempts by rea
  3979. 15c0: dahead to read sock_files.- Create tmpfs file while running as w
  3980. 1600: ine as user_tmpfs_t.- Dontaudit attempts by readahead to read so
  3981. 1640: ck_files.- libmpg ships badly created librarie.- Change ssh_use_
  3982. 1680: pts to use macro and only inherited sshd_devpts_t.- Allow confin
  3983. 16c0: ed users to read systemd_logind seat information.- libmpg ships
  3984. 1700: badly created libraries.- Add support for strongswan.service.- A
  3985. 1740: dd labeling for strongswan.- Allow l2tpd_t to read network manag
  3986. 1780: er content in /run directory.- Allow rsync to getattr any file i
  3987. 17c0: n rsync_data_t.- Add labeling and filename transition for .grl-p
  3988. 1800: odcasts.- mount.glusterfs executes glusterfsd binary.- Allow sys
  3989. 1840: temd_hostnamed_t to stream connect to systemd.- Dontaudit any us
  3990. 1880: er doing a access check.- Allow obex-data-server to request the
  3991. 18c0: kernel to load a module.- Allow gpg-agent to manage gnome conten
  3992. 1900: t (~/.cache/gpg-agent-info).- Allow gpg-agent to read /proc/sys/
  3993. 1940: crypto/fips_enabled.- Add new types for antivirus.pp policy modu
  3994. 1980: le.- Allow gnomesystemmm_t caps because of ioprio_set.- Make sur
  3995. 19c0: e if mozilla_plugin creates files while in permissive mode, they
  3996. 1a00: get created with the correct label, user_home_t.- Allow gnomesy
  3997. 1a40: stemmm_t caps because of ioprio_set.- Allow NM rawip socket.- fi
  3998. 1a80: les_relabel_non_security_files can not be used with boolean.- Ad
  3999. 1ac0: d interface to thumb_t dbus_chat to allow it to read remote proc
  4000. 1b00: ess state.- ALlow logrotate to domtrans to mdadm_t.- kde gnomecl
  4001. 1b40: ock wants to write content to /tmp.- kde gnomeclock wants to wri
  4002. 1b80: te content to /tmp.- /usr/libexec/kde4/kcmdatetimehelper attempt
  4003. 1bc0: s to create /root/.kde.- Allow blueman_t to rwx zero_device_t, f
  4004. 1c00: or some kind of jre.- Allow mozilla_plugin_t to rwx zero_device_
  4005. 1c40: t, for some kind of jre.- Ftp full access should be allowed to c
  4006. 1c80: reate directories as well as files.- Add boolean to allow rsync_
  4007. 1cc0: full_acces, so that an rsync server can write all.- over the loc
  4008. 1d00: al machine.- logrotate needs to rotate logs in openshift directo
  4009. 1d40: ries, needs back port to RHEL6.- Add missing vpnc_roles type lin
  4010. 1d80: e.- Allow stapserver to write content in /tmp.- Allow gnome keyr
  4011. 1dc0: ing to create keyrings dir in ~/.local/share.- Dontaudit thumb d
  4012. 1e00: rives trying to bind to udp sockets if nis_enabled is turned on.
  4013. 1e40: - Add interface to colord_t dbus_chat to allow it to read remote
  4014. 1e80: process state.- Allow colord_t to read cupsd_t state.- Add mate
  4015. 1ec0: -thumbnail-font as thumnailer.- Allow sectoolm to sys_ptrace sin
  4016. 1f00: ce it is looking at other proceses /proc data..- Allow qpidd to
  4017. 1f40: list /tmp. Needed by ssl.- Only allow init_t to transition to rs
  4018. 1f80: ync_t domain, not initrc_t. This should be back ported to F17,
  4019. 1fc0: F18.- - Added systemd support for ksmtuned.- Added booleans. .ks
  4020. 2000: mtuned_use_nfs. .ksmtuned_use_cifs.- firewalld seems to be creat
  4021. 2040: ing mmap files which it needs to execute in /run /tmp and /dev/s
  4022. 2080: hm. Would like to clean this up but for now we will allow.- Loo
  4023. 20c0: ks like qpidd_t needs to read /dev/random.- Lots of probing avc'
  4024. 2100: s caused by execugting gpg from staff_t.- Dontaudit senmail trig
  4025. 2140: gering a net_admin avc.- Change thumb_role to use thumb_run, not
  4026. 2180: sure why we have a thumb_role, needs back port.- Logwatch does
  4027. 21c0: access check on mdadm binary.- Add raid_access_check_mdadm() ite
  4028. 2200: rface.- Fix systemd_manage_unit_symlinks() interface.- Call syst
  4029. 2240: emd_manage_unit_symlinks(() which is correct interface.- Add fil
  4030. 2280: ename transition for opasswd.- Switch gnomeclock_dbus_chat to sy
  4031. 22c0: stemd_dbus_chat_timedated since we have switched the name of gno
  4032. 2300: meclock.- Allow sytstemd-timedated to get status of init_t.- Add
  4033. 2340: new systemd policies for hostnamed and rename gnomeclock_t to s
  4034. 2380: ystemd_timedate_t.- colord needs to communicate with systemd and
  4035. 23c0: systemd_logind, also remove duplicate rules.- Switch gnomeclock
  4036. 2400: _dbus_chat to systemd_dbus_chat_timedated since we have switched
  4037. 2440: the name of gnomeclock.- Allow gpg_t to manage all gnome files.
  4038. 2480: - Stop using pcscd_read_pub_files.- New rules for xguest, dontau
  4039. 24c0: dit attempts to dbus chat.- Allow firewalld to create its mmap f
  4040. 2500: iles in tmpfs and tmp directories.- Allow firewalld to create it
  4041. 2540: s mmap files in tmpfs and tmp directories.- run unbound-chkconf
  4042. 2580: as named_t, so it can read dnssec.- Colord is reading xdm proces
  4043. 25c0: s state, probably reads state of any apps that sends dbus messag
  4044. 2600: e.- Allow mdadm_t to change the kernel scheduler.- mythtv policy
  4045. 2640: .- Update mandb_admin() interface.- Allow dsspam to listen on ow
  4046. 2680: n tpc_socket.- seutil_filetrans_named_content needs to be option
  4047. 26c0: al.- Allow sysadm_t to execute content in his homedir.- Add atta
  4048. 2700: ch_queue to tun_socket, new patch from Paul Moore.- Change most
  4049. 2740: of selinux configuration types to security_file_type..- Add file
  4050. 2780: name transition rules for selinux configuration.- ssh into a box
  4051. 27c0: with -X -Y requires ssh_use_ptys.- Dontaudit thumb drives tryin
  4052. 2800: g to bind to udp sockets if nis_enabled is turned on.- Allow all
  4053. 2840: unpriv userdomains to send dbus messages to hostnamed and timed
  4054. 2880: ated.- New allow rules found by Tom London for systemd_hostnamed
  4055. 28c0: .- Allow systemd-tmpfiles to relabel lpd spool files.- Ad labeli
  4056. 2900: ng for texlive bash scripts.- Add xserver_filetrans_fonts_cache_
  4057. 2940: home_content() interface.- Remove duplicate rules from *.te.- Ad
  4058. 2980: d support for /var/lock/man-db.lock.- Add support for /var/tmp/a
  4059. 29c0: brt(/.*)?.- Add additional labeling for munin cgi scripts.- Allo
  4060. 2a00: w httpd_t to read munin conf files.- Allow certwatch to read mem
  4061. 2a40: info.- Fix nscd_dontaudit_write_sock_file() interfac.- Fix gnome
  4062. 2a80: _filetrans_home_content() to include also "fontconfig" dir as ca
  4063. 2ac0: che_home_t.- llow mozilla_plugin_t to create HOMEDIR/.fontconfig
  4064. 2b00: with the proper labeling.- Allow gnomeclock to talk to puppet o
  4065. 2b40: ver dbus.- Allow numad access discovered by Dominic.- Add suppor
  4066. 2b80: t for HOME_DIR/.maildir.- Fix attribute_role for mozilla_plugin_
  4067. 2bc0: t domain to allow staff_r to access this domain.- Allow udev to
  4068. 2c00: relabel udev_var_run_t lnk_files.- New bin_t file in mcelog.- Re
  4069. 2c40: move all mcs overrides and replace with t1 != mcs_constrained_ty
  4070. 2c80: pes.- Add attribute_role for iptables.- mcs_process_set_categori
  4071. 2cc0: es needs to be called for type.- Implement additional role_attri
  4072. 2d00: bute statements.- Sodo domain is attempting to get the additribu
  4073. 2d40: tes of proc_kcore_t.- Unbound uses port 8953.- Allow svirt_t ima
  4074. 2d80: ges to compromise_kernel when using pci-passthrough.- Add label
  4075. 2dc0: for dns lib files.- Bluetooth aquires a dbus name.- Remove redun
  4076. 2e00: dant files_read_usr_file calling.- Remove redundant files_read_e
  4077. 2e40: tc_file calling.- Fix mozilla_run_plugin().- Add role_attribute
  4078. 2e80: support for more domains.- Mass merge with upstream.- Bump the p
  4079. 2ec0: olicy version to 28 to match selinux userspace.- Rebuild versus
  4080. 2f00: latest libsepol.- Add systemd_status_all_unit_files() interface.
  4081. 2f40: - Add support for nshadow.- Allow sysadm_t to administrate the p
  4082. 2f80: ostfix domains.- Add interface to setattr on isid directories fo
  4083. 2fc0: r use by tmpreaper.- Allow sshd_t sys_admin for use with afs log
  4084. 3000: ins.- Allow systemd to read/write all sysctls.- Allow sshd_t sys
  4085. 3040: _admin for use with afs logins.- Allow systemd to read/write all
  4086. 3080: sysctls.- Add systemd_status_all_unit_files() interface.- Add s
  4087. 30c0: upport for nshadow.- Allow sysadm_t to administrate the postfix
  4088. 3100: domains.- Add interface to setattr on isid directories for use b
  4089. 3140: y tmpreaper.- Allow sshd_t sys_admin for use with afs logins.- A
  4090. 3180: llow systemd to read/write all sysctls.- Allow sshd_t sys_admin
  4091. 31c0: for use with afs logins.- Add labeling for /var/named/chroot/etc
  4092. 3200: /localtim.- Allow setroubleshoot_fixit to execute rpm.- zonemind
  4093. 3240: er needs to connect to httpd ports where remote cameras are list
  4094. 3280: ening.- Allow firewalld to execute content created in /run direc
  4095. 32c0: tory.- Allow svirt_t to read generic certs.- Dontaudit leaked ps
  4096. 3300: content to mozilla plugin.- Allow sshd_t sys_admin for use with
  4097. 3340: afs logins.- Allow systemd to read/write all sysctls.- init scr
  4098. 3380: ipts are creating systemd_unit_file_t directories.- systemd_logi
  4099. 33c0: nd_t is looking at all files under /run/user/apache.- Allow syst
  4100. 3400: emd to manage all user tmp files.- Add labeling for /var/named/c
  4101. 3440: hroot/etc/localtime.- Allow netlabel_peer_t type to flow over ne
  4102. 3480: tif_t and node_t, and only be hindered by MLS, need back port to
  4103. 34c0: RHEL6.- Keystone is now using a differnt port.- Allow xdm_t to
  4104. 3500: use usbmuxd daemon to control sound.- Allow passwd daemon to exe
  4105. 3540: cute gnome_exec_keyringd.- Fix chrome_sandbox policy.- Add label
  4106. 3580: ing for /var/run/checkquorum-timer.- More fixes for the dspam do
  4107. 35c0: main, needs back port to RHEL6.- More fixes for the dspam domain
  4108. 3600: , needs back port to RHEL6.- sssd needs to connect to kerberos p
  4109. 3640: assword port if a user changes his password.- Lots of fixes from
  4110. 3680: RHEL testing of dspam web.- Allow chrome and mozilla_plugin to
  4111. 36c0: create msgq and semaphores.- Fixes for dspam cgi scripts.- Fixes
  4112. 3700: for dspam cgi scripts.- Allow confine users to ptrace screen.-
  4113. 3740: Backport virt_qemu_ga_t changes from RHEL.- Fix labeling for dsp
  4114. 3780: am.cgi needed for RHEL6.- We need to back port this policy to RH
  4115. 37c0: EL6, for lxc domains.- Dontaudit attempts to set sys_resource of
  4116. 3800: logrotate.- Allow corosync to read/write wdmd's tmpfs files.- I
  4117. 3840: see a ptrace of mozilla_plugin_t by staff_t, will allow without
  4118. 3880: deny_ptrace being set.- Allow cron jobs to read bind config for
  4119. 38c0: unbound.- libvirt needs to inhibit systemd.- kdumpctl needs to
  4120. 3900: delete boot_t files.- Fix duplicate gnome_config_filetrans.- vir
  4121. 3940: td_lxc_t is using /dev/fuse.- Passenger needs to create a direct
  4122. 3980: ory in /var/log, needs a backport to RHEL6 for openshift.- apcup
  4123. 39c0: sd can be setup to listen to snmp trafic.- Allow transition from
  4124. 3a00: kdumpgui to kdumpctl.- Add fixes for munin CGI scripts.- Allow
  4125. 3a40: deltacloud to connect to openstack at the keystone port.- Allow
  4126. 3a80: domains that transition to svirt domains to be able to signal th
  4127. 3ac0: em.- Fix file context of gstreamer in .cache directory.- libvirt
  4128. 3b00: is communicating with logind.- NetworkManager writes to the sys
  4129. 3b40: temd inhibit pipe.- Allow munin disk plugins to get attributes o
  4130. 3b80: f all directories.- Allow munin disk plugins to get attributes o
  4131. 3bc0: f all directorie.- Allow logwatch to get attributes of all direc
  4132. 3c00: tories.- Fix networkmanager_manage_lib() interface.- Fix gnome_m
  4133. 3c40: anage_config() to allow to manage sock_file.- Fix virtual_domain
  4134. 3c80: _context.- Add support for dynamic DNS for DHCPv6.- Allow svirt
  4135. 3cc0: to use netlink_route_socket which was a part of auth_use_nsswitc
  4136. 3d00: h.- Add additional labeling for /var/www/openshift/broker.- Fix
  4137. 3d40: rhev policy.- Allow openshift_initrc domain to dbus chat with sy
  4138. 3d80: stemd_logind.- Allow httpd to getattr passenger log file if run_
  4139. 3dc0: stickshift.- Allow consolehelper-gtk to connect to xserver.- Add
  4140. 3e00: labeling for the tmp-inst directory defined in pam_namespace.co
  4141. 3e40: nf.- Add lvm_metadata_t labeling for /etc/multipath.- consoletyp
  4142. 3e80: e is no longer used.- Add label for efivarfs.- Allow certmonger
  4143. 3ec0: to send signal to itself.- Allow plugin-config to read own proce
  4144. 3f00: ss status.- Add more fixes for pacemaker.- apache/drupal can run
  4145. 3f40: clamscan on uploaded content.- Allow chrome_sandbox_nacl_t to r
  4146. 3f80: ead pid 1 content.- Fix MCS Constraints to control ingres and eg
  4147. 3fc0: res controls on the network..- Change name of svirt_nokvm_t to s
  4148. 13:00:16.884519 <= Recv data, 16384 bytes (0x4000)
  4149. 0000: virt_tcg_t.- Allow tuned to request the kernel to load kernel mo
  4150. 0040: dules.- Label /var/lib/pgsql/.ssh as ssh_home_t.- Add labeling f
  4151. 0080: or /usr/bin/pg_ctl.- Allow systemd-logind to manage keyring user
  4152. 00c0: tmp dirs.- Add support for 7389/tcp port.- gems seems to be pla
  4153. 0100: ced in lots of places.- Since xdm is running a full session, it
  4154. 0140: seems to be trying to execute lots of executables via dbus.- Add
  4155. 0180: back tcp/8123 port as http_cache port.- Add ovirt-guest-agent\.
  4156. 01c0: pid labeling.- Allow xend to run scsi_id.- Allow rhsmcertd-worke
  4157. 0200: r to read "physical_package_id".- Allow pki_tomcat to connect to
  4158. 0240: ldap port.- Allow lpr to read /usr/share/fonts.- Allow open fil
  4159. 0280: e from CD/DVD drive on domU.- Allow munin services plugins to ta
  4160. 02c0: lk to SSSD.- Allow all samba domains to create samba directory i
  4161. 0300: n var_t directories.- Take away svirt_t ability to use nsswitch.
  4162. 0340: - Dontaudit attempts by openshift to read apache logs.- Allow ap
  4163. 0380: ache to create as well as append _ra_content_t.- Dontaudit sendm
  4164. 03c0: ail_t reading a leaked file descriptor.- Add interface to have a
  4165. 0400: dmin transition /etc/prelink.cache to the proper label.- Add snt
  4166. 0440: p support to ntp policy.- Allow firewalld to dbus chat with devi
  4167. 0480: cekit_power.- Allow tuned to call lsblk.- Allow tor to read /pro
  4168. 04c0: c/sys/kernel/random/uuid.- Add tor_can_network_relay boolean.- A
  4169. 0500: dd openshift_initrc_signal() interface.- Fix typos.- dspam port
  4170. 0540: is treat as spamd_port_t.- Allow setroubleshoot to getattr on al
  4171. 0580: l executables.- Allow tuned to execute profiles scripts in /etc/
  4172. 05c0: tuned.- Allow apache to create directories to store its log file
  4173. 0600: s.- Allow all directories/files in /var/log starting with passen
  4174. 0640: ger to be labeled passenger_log_t.- Looks like apache is sending
  4175. 0680: sinal to openshift_initrc_t now,needs back port to RHEL6.- Allo
  4176. 06c0: w Postfix to be configured to listen on TCP port 10026 for email
  4177. 0700: from DSPAM.- Add filename transition for /etc/tuned/active_prof
  4178. 0740: ile.- Allow condor_master to send mails.- Allow condor_master to
  4179. 0780: read submit.cf.- Allow condor_master to create /tmp files/dirs.
  4180. 07c0: - Allow condor_mater to send sigkill to other condor domains.- A
  4181. 0800: llow condor_procd sigkill capability.- tuned-adm wants to talk w
  4182. 0840: ith tuned daemon.- Allow kadmind and krb5kdc to also list sssd_p
  4183. 0880: ublic_t.- Allow accountsd to dbus chat with init.- Fix git_read_
  4184. 08c0: generic_system_content_files() interface.- pppd wants sys_nice b
  4185. 0900: y nmcli because of "syscall=sched_setscheduler".- Fix mozilla_pl
  4186. 0940: ugin_can_network_connect to allow to connect to all ports.- Labe
  4187. 0980: l all munin plugins which are not covered by munin plugins polic
  4188. 09c0: y as unconfined_munin_plugin_exec_t.- dspam wants to search /va
  4189. 0a00: r/spool for opendkim data.- Revert "Add support for tcp/10026 po
  4190. 0a40: rt as dspam_port_t".- Turning on labeled networking requires add
  4191. 0a80: itional access for netlabel_peer_t; these allow rules need to be
  4192. 0ac0: back ported to RHEL6.- Allow all application domains to use fif
  4193. 0b00: o_files passed in from userdomains, also allow them to write to
  4194. 0b40: tmp_files inherited from userdomain.- Allow systemd_tmpfiles_t t
  4195. 0b80: o setattr on mandb_cache_t.- consolekit.pp was not removed from
  4196. 0bc0: the postinstall script.- Add back consolekit policy.- Silence bo
  4197. 0c00: otloader trying to use inherited tty.- Silence xdm_dbusd_t tryin
  4198. 0c40: g to execute telepathy apps.- Fix shutdown avcs when machine has
  4199. 0c80: unconfined.pp disabled.- The host and a virtual machine can sha
  4200. 0cc0: re the same printer on a usb device.- Change oddjob to transitio
  4201. 0d00: n to a ranged openshift_initr_exec_t when run from oddjob.- Allo
  4202. 0d40: w abrt_watch_log_t to execute bin_t.- Allow chrome sandbox to wr
  4203. 0d80: ite content in ~/.config/chromium.- Dontaudit setattr on fontcon
  4204. 0dc0: fig dir for thumb_t.- Allow lircd to request the kernel to load
  4205. 0e00: module.- Make rsync as userdom_home_manager.- Allow rsync to sea
  4206. 0e40: rch automount filesystem.- Add fixes for pacemaker.- Add support
  4207. 0e80: for 4567/tcp port.- Random fixes from Tuomo Soini.- xdm wants t
  4208. 0ec0: o get init status.- Allow programs to run in fips_mode.- Add int
  4209. 0f00: erface to allow the reading of all blk device nodes.- Allow init
  4210. 0f40: to relabel rpcbind sock_file.- Fix labeling for lastlog and fai
  4211. 0f80: llog related to logrotate.- ALlow aeolus_configserver to use TRA
  4212. 0fc0: M port.- Add fixes for aeolus_configserver.- Allow snmpd to conn
  4213. 1000: ect to snmp port.- Allow spamd_update to create spamd_var_lib_t
  4214. 1040: directories.- Allow domains that can read sssd_public_t files to
  4215. 1080: also list the directory.- Remove miscfiles_read_localization, t
  4216. 10c0: his is defined for all domains.- Allow syslogd to request the ke
  4217. 1100: rnel to load a module.- Allow syslogd_t to read the network stat
  4218. 1140: e information.- Allow xdm_dbusd_t connect to the system DBUS.- A
  4219. 1180: dd support for 7389/tcp port.- Allow domains to read/write all i
  4220. 11c0: nherited sockets.- Allow staff_t to read kmsg.- Add awstats_purg
  4221. 1200: e_apache_log boolean.- Allow ksysguardproces to read /.config/Tr
  4222. 1240: olltech.conf.- Allow passenger to create and append puppet log f
  4223. 1280: iles.- Add puppet_append_log and puppet_create_log interfaces.-
  4224. 12c0: Add puppet_manage_log() interface.- Allow tomcat domain to searc
  4225. 1300: h tomcat_var_lib_t.- Allow pki_tomcat_t to connect to pki_ca por
  4226. 1340: ts.- Allow pegasus_t to have net_admin capability.- Allow pegasu
  4227. 1380: s_t to write /sys/class/net/<interface>/flags.- Allow mailserver
  4228. 13c0: _delivery to manage mail_home_rw_t lnk_files.- Allow fetchmail t
  4229. 1400: o create log files.- Allow gnomeclock to manage home config in .
  4230. 1440: kde.- Allow bittlebee to read kernel sysctls.- Allow logrotate t
  4231. 1480: o list /root.- Fix userhelper_console_role_template().- Allow en
  4232. 14c0: abling Network Access Point service using blueman.- Make vmware_
  4233. 1500: host_t as unconfined domain.- Allow authenticate users in webacc
  4234. 1540: ess via squid, using mysql as backend.- Allow gathers to get var
  4235. 1580: ious metrics on mounted file systems.- Allow firewalld to read /
  4236. 15c0: etc/hosts.- Fix cron_admin_role() to make sysadm cronjobs runnin
  4237. 1600: g in the sysadm_t instead of cronjob_t.- Allow kdumpgui to read/
  4238. 1640: write to zipl.conf.- Commands needed to get mock to build from s
  4239. 1680: taff_t in enforcing mode.- Allow mdadm_t to manage cgroup files.
  4240. 16c0: - Allow all daemons and systemprocesses to use inherited initrc_
  4241. 1700: tmp_t files.- dontaudit ifconfig_t looking at fifo_files that ar
  4242. 1740: e leaked to it.- Add lableing for Quest Authentication System.-
  4243. 1780: Fix filetrans interface definitions.- Dontaudit xdm_t to getattr
  4244. 17c0: on BOINC lib files.- Add systemd_reload_all_services() interfac
  4245. 1800: e.- Dontaudit write access on /var/lib/net-snmp/mib_indexes .- O
  4246. 1840: nly stop mcsuntrustedproc from relableing files.- Allow accounts
  4247. 1880: d to dbus chat with gdm.- Allow realmd to getattr on all fs.- Al
  4248. 18c0: low logrotate to reload all services.- Add systemd unit file for
  4249. 1900: radiusd.- Allow winbind to create samba pid dir.- Add labeling
  4250. 1940: for /var/nmbd/unexpected.- Allow chrome and mozilla plugin to co
  4251. 1980: nnect to msnp ports.- Fix storage_rw_inherited_fixed_disk_dev()
  4252. 19c0: to cover also blk_file.- Dontaudit setfiles reading /dev/random.
  4253. 1a00: - On initial boot gnomeclock is going to need to be set buy gdm.
  4254. 1a40: - Fix tftp_read_content() interface.- Random apps looking at ker
  4255. 1a80: nel file systems.- Testing virt with lxc requiers additional acc
  4256. 1ac0: ess for virsh_t.- New allow rules requied for latest libvirt, li
  4257. 1b00: bvirt talks directly to journald,lxc setup tool needs compromize
  4258. 1b40: _kernel,and we need ipc_lock in the container.- Allow MPD to rea
  4259. 1b80: d /dev/radnom.- Allow sandbox_web_type to read logind files whic
  4260. 1bc0: h needs to read pulseaudio.- Allow mozilla plugins to read /dev/
  4261. 1c00: hpet.- Add labeling for /var/lib/zarafa-webap.- Allow BOINC clie
  4262. 1c40: nt to use an HTTP proxy for all connections.- Allow rhsmertd to
  4263. 1c80: domain transition to dmidecod.- Allow setroubleshootd to send D
  4264. 1cc0: -Bus msg to ABRT.- Define usbtty_device_t as a term_tty.- Allow
  4265. 1d00: svnserve to accept a connection.- Allow xend manage default virt
  4266. 1d40: _image_t type.- Allow prelink_cron_system_t to overide user comp
  4267. 1d80: onant when executing cp.- Add labeling for z-push.- Gnomeclock s
  4268. 1dc0: ets the realtime clock.- Openshift seems to be storing apache lo
  4269. 1e00: gs in /var/lib/openshift/.log/httpd.- Allow lxc domains to use /
  4270. 1e40: dev/random and /dev/urandom.- Add port defintion for tcp/9000.-
  4271. 1e80: Fix labeling for /usr/share/cluster/checkquorum to label also ch
  4272. 1ec0: eckquorum.wdmd.- Add rules and labeling for $HOME/cache/\.gstrea
  4273. 1f00: mer-.* directory.- Add support for CIM provider openlmi-networki
  4274. 1f40: ng which uses NetworkManager dbus API.- Allow shorewall_t to cre
  4275. 1f80: ate netlink_socket.- Allow krb5admind to block suspend.- Fix lab
  4276. 1fc0: els on /var/run/dlm_controld /var/log/dlm_controld.- Allow krb5k
  4277. 2000: dc to block suspend.- gnomessytemmm_t needs to read /etc/passwd.
  4278. 2040: - Allow cgred to read all sysctls.- Allow all domains to read /p
  4279. 2080: roc/sys/vm/overcommit_memory.- Make proc_numa_t an MLS Trusted O
  4280. 20c0: bject.- Add /proc/numactl support for confined users.- Allow ssh
  4281. 2100: _t to connect to any port > 1023.- Add openvswitch domain.- Puls
  4282. 2140: eaudio tries to create directories in gnome_home_t directories.-
  4283. 2180: New ypbind pkg wants to search /var/run which is caused by sd_n
  4284. 21c0: otify.- Allow NM to read certs on NFS/CIFS using use_nfs_*, use_
  4285. 2200: samba_* booleans.- Allow sanlock to read /dev/random.- Treat php
  4286. 2240: -fpm with httpd_t.- Allow domains that can read named_conf_t to
  4287. 2280: be able to list the directories.- Allow winbind to create sock f
  4288. 22c0: iles in /var/run/samba.- Add smsd policy.- Add support for OpenS
  4289. 2300: hift sbin labelin.- Add boolean to allow virt to use rawip.- All
  4290. 2340: ow mozilla_plugin to read all file systems with noxattrs support
  4291. 2380: .- Allow kerberos to write on anon_inodefs fs.- Additional acces
  4292. 23c0: s required by fenced.- Add filename transitions for passwd.lock/
  4293. 2400: group.lock.- UPdate man pages.- Create coolkey directory in /var
  4294. 2440: /cache with the correct label.- Fix label on /etc/group.lock.- A
  4295. 2480: llow gnomeclock to create lnk_file in /etc.- label /root/.pki as
  4296. 24c0: a home_cert_t.- Add interface to make sure rpcbind.sock is crea
  4297. 2500: ted with the correct label.- Add definition for new directory /v
  4298. 2540: ar/lib/os-probe and bootloader wants to read udev rules.- opendk
  4299. 2580: im should be a part of milter.- Allow libvirt to set the kernel
  4300. 25c0: sched algorythm.- Allow mongod to read sysfs_t.- Add authconfig
  4301. 2600: policy.- Remove calls to miscfiles_read_localization all domains
  4302. 2640: get this.- Allow virsh_t to read /root/.pki/ content.- Add labe
  4303. 2680: l for log directory under /var/www/stickshift.- Allow getty to s
  4304. 26c0: etattr on usb ttys.- Allow sshd to search all directories for ss
  4305. 2700: hd_home_t content.- Allow staff domains to send dbus messages to
  4306. 2740: kdumpgui.- Fix labels on /etc/.pwd.lock and friends to be passw
  4307. 2780: d_file_t.- Dontaudit setfiles reading urand.- Add files_dontaudi
  4308. 27c0: t_list_tmp() for domains to which we added sys_nice/setsched.- A
  4309. 2800: llow staff_gkeyringd_t to read /home/$USER/.local/share/keyrings
  4310. 2840: dir.- Allow systemd-timedated to read /dev/urandom.- Allow entr
  4311. 2880: opyd_t to read proc_t (meminfo).- Add unconfined munin plugin.-
  4312. 28c0: Fix networkmanager_read_conf() interface.- Allow blueman to list
  4313. 2900: /tmp which is needed by sys_nic/setsched.- Fix label of /etc/ma
  4314. 2940: il/aliasesdb-stamp.- numad is searching cgroups.- realmd is comm
  4315. 2980: unicating with networkmanager using dbus.- Lots of fixes to try
  4316. 29c0: to get kdump to work.- Allow loging programs to dbus chat with r
  4317. 2a00: ealmd.- Make apache_content_template calling as optional.- realm
  4318. 2a40: d is using policy kit.- Add new selinuxuser_use_ssh_chroot boole
  4319. 2a80: an.- dbus needs to be able to read/write inherited fixed disk de
  4320. 2ac0: vice_t passed through it.- Cleanup netutils process allow rule.-
  4321. 2b00: Dontaudit leaked fifo files from openshift to ping.- sanlock ne
  4322. 2b40: eds to read mnt_t lnk files.- Fail2ban needs to setsched and sys
  4323. 2b80: _nice.- Change default label of all files in /var/run/rpcbind.-
  4324. 2bc0: Allow sandbox domains (java) to read hugetlbfs_t.- Allow awstats
  4325. 2c00: cgi content to create tmp files and read apache log files.- All
  4326. 2c40: ow setuid/setgid for cupsd-config.- Allow setsched/sys_nice pro
  4327. 2c80: cupsd-config.- Fix /etc/localtime sym link to be labeled locale
  4328. 2cc0: _t.- Allow sshd to search postgresql db t since this is a homedi
  4329. 2d00: r.- Allow xwindows users to chat with realmd.- Allow unconfined
  4330. 2d40: domains to configure all files and null_device_t service.- Adopt
  4331. 2d80: pki-selinux policy.- pki is leaking which we dontaudit until a
  4332. 2dc0: pki code fix.- Allow setcap for arping.- Update man pages.- Add
  4333. 2e00: labeling for /usr/sbin/mcollectived.- pki fixes.- Allow smokepin
  4334. 2e40: g to execute fping in the netutils_t domain.- Allow mount to rel
  4335. 2e80: abelfrom unlabeled file systems.- systemd_logind wants to send a
  4336. 2ec0: nd receive messages from devicekit disk over dbus to make connec
  4337. 2f00: ted mouse working.- Add label to get bin files under libreoffice
  4338. 2f40: labeled correctly.- Fix interface to allow executing of base_ro
  4339. 2f80: _file_type.- Add fixes for realmd.- Update pki policy.- Add tftp
  4340. 2fc0: _homedir boolean.- Allow blueman sched_setscheduler.- openshift
  4341. 3000: user domains wants to r/w ssh tcp sockets.- Additional requireme
  4342. 3040: nts for disable unconfined module when booting.- Fix label of sy
  4343. 3080: stemd script files.- semanage can use -F /dev/stdin to get input
  4344. 30c0: .- syslog now uses kerberos keytabs.- Allow xserver to compromis
  4345. 3100: e_kernel access.- Allow nfsd to write to mount_var_run_t when r
  4346. 3140: unning the mount command.- Add filename transition rule for bin_
  4347. 3180: t directories.- Allow files to read usr_t lnk_files.- dhcpc want
  4348. 31c0: s chown.- Add support for new openshift labeling.- Clean up for
  4349. 3200: tunable+optional statements.- Add labeling for /usr/sbin/mkhomed
  4350. 3240: ir_helper.- Allow antivirus domain to managa amavis spool files.
  4351. 3280: - Allow rpcbind_t to read passwd .- Allow pyzor running as spamc
  4352. 32c0: to manage amavis spool.- Add interfaces to read kernel_t proc i
  4353. 3300: nfo.- Missed this version of exec_all.- Allow anyone who can loa
  4354. 3340: d a kernel module to compromise kernel.- Add oddjob_dbus_chat to
  4355. 3380: openshift apache policy.- Allow chrome_sandbox_nacl_t to send s
  4356. 33c0: ignals to itself.- Add unit file support to usbmuxd_t.- Allow al
  4357. 3400: l openshift domains to read sysfs info.- Allow openshift domains
  4358. 3440: to getattr on all domains.- MLS fixes from Dan.- Fix name of ca
  4359. 3480: pability2 secure_firmware->compromise_kerne.- Allow xdm to searc
  4360. 34c0: h all file systems.- Add interface to allow the config of all fi
  4361. 3500: les.- Add rngd policy.- Remove kgpg as a gpg_exec_t type.- Allow
  4362. 3540: plymouthd to block suspend.- Allow systemd_dbus to config any f
  4363. 3580: ile.- Allow system_dbus_t to configure all services.- Allow fres
  4364. 35c0: hclam_t to read usr_files.- varnishd requires execmem to load mo
  4365. 3600: dules.- Allow semanage to verify types.- Allow sudo domain to ex
  4366. 3640: ecute user home files.- Allow session_bus_type to transition to
  4367. 3680: user_tmpfs_t.- Add dontaudit caused by yum updates.- Implement p
  4368. 36c0: ki policy but not activated.- tuned wants to getattr on all file
  4369. 3700: systems.- tuned needs also setsched. The build is needed for tes
  4370. 3740: t day.- Add policy for qemu-qa.- Allow razor to write own config
  4371. 3780: files.- Add an initial antivirus policy to collect all antivir
  4372. 37c0: us program.- Allow qdisk to read usr_t.- Add additional caps for
  4373. 3800: vmware_host.- Allow tmpfiles_t to setattr on mandb_cache_t.- Do
  4374. 3840: ntaudit leaked files into mozilla_plugin_config_t.- Allow wdmd t
  4375. 3880: o getattr on tmpfs.- Allow realmd to use /dev/random.- allow con
  4376. 38c0: tainers to send audit messages.- Allow root mount any file via l
  4377. 3900: oop device with enforcing mls policy.- Allow tmpfiles_t to setat
  4378. 3940: tr on mandb_cache_t.- Allow tmpfiles_t to setattr on mandb_cache
  4379. 3980: _t.- Make userdom_dontaudit_write_all_ not allow open.- Allow in
  4380. 39c0: it scripts to read all unit files.- Add support for saphostctrl
  4381. 3a00: ports.- Add kernel_read_system_state to sandbox_client_t.- Add s
  4382. 3a40: ome of the missing access to kdumpgui.- Allow systemd_dbusd_t to
  4383. 3a80: status the init system.- Allow vmnet-natd to request the kernel
  4384. 3ac0: to load a module.- Allow gsf-office-thum to append .cache/gdm/s
  4385. 3b00: ession.log.- realmd wants to read .config/dconf/user.- Firewalld
  4386. 3b40: wants sys_nice/setsched.- Allow tmpreaper to delete mandb cache
  4387. 3b80: files.- Firewalld wants sys_nice/setsched.- Allow firewalld to
  4388. 3bc0: perform a DNS name resolution.- Allown winbind to read /usr/sha
  4389. 3c00: re/samba/codepages/lowcase.dat.- Add support for HTTPProxy* in /
  4390. 3c40: etc/freshclam.conf.- Fix authlogin_yubike boolean.- Extend smbd_
  4391. 3c80: selinux man page to include samba booleans.- Allow dhcpc to exec
  4392. 3cc0: ute consoletype.- Allow ping to use inherited tmp files created
  4393. 3d00: in init scripts.- On full relabel with unconfined domain disable
  4394. 3d40: d, initrc was running some chcon's.- Allow people who delete man
  4395. 3d80: pages to delete mandb cache files.- Add missing permissive doma
  4396. 3dc0: ins.- Add new mandb policy.- ALlow systemd-tmpfiles_t to relabel
  4397. 3e00: mandb_cache_t.- Allow logrotate to start all unit files.- Add f
  4398. 3e40: ixes for ctbd.- Allow nmbd to stream connect to ctbd.- Make cgle
  4399. 3e80: ar_t as nsswitch_domain.- Fix bogus in interfaces.- Allow opensh
  4400. 3ec0: ift to read/write postfix public pipe.- Add postfix_manage_spool
  4401. 3f00: _maildrop_files() interface.- stickshift paths have been renamed
  4402. 3f40: to openshift.- gnome-settings-daemon wants to write to /run/sys
  4403. 3f80: temd/inhibit/ pipes.- Update man pages, adding ENTRYPOINTS.- Ad
  4404. 3fc0: d mei_device_t.- Make sure gpg content in homedir created with c
  4405. 13:00:16.889861 <= Recv data, 16384 bytes (0x4000)
  4406. 0000: orrect label.- Allow dmesg to write to abrt cache files.- automo
  4407. 0040: unt wants to search virtual memory sysctls.- Add support for hp
  4408. 0080: lip logs stored in /var/log/hp/tmp.- Add labeling for /etc/owncl
  4409. 00c0: oud/config.php.- Allow setroubleshoot to send analysys to syslog
  4410. 0100: d-journal.- Allow virsh_t to interact with new fenced daemon.- A
  4411. 0140: llow gpg to write to /etc/mail/spamassassiin directories.- Make
  4412. 0180: dovecot_deliver_t a mail server delivery type.- Add label for /v
  4413. 01c0: ar/tmp/DNS25.- Fixes for tomcat_domain template interface.- Remo
  4414. 0200: ve init_systemd and init_upstart boolean, Move init_daemon_domai
  4415. 0240: n and init_system_domain to use attributes.- Add attribute to al
  4416. 0280: l base os types. Allow all domains to read all ro base OS types
  4417. 02c0: .- Additional unit files to be defined as power unit files.- Fix
  4418. 0300: more boolean names.- Fix boolean name so subs will continue to
  4419. 0340: work.- dbus needs to start getty unit files.- Add interface to a
  4420. 0380: llow system_dbusd_t to start the poweroff service.- xdm wants to
  4421. 03c0: exec telepathy apps.- Allow users to send messages to systemdlo
  4422. 0400: gind.- Additional rules needed for systemd and other boot apps.-
  4423. 0440: systemd wants to list /home and /boot.- Allow gkeyringd to writ
  4424. 0480: e dbus/conf file.- realmd needs to read /dev/urand.- Allow reada
  4425. 04c0: head to delete /.readahead if labeled root_t, might get created
  4426. 0500: before policy is loaded.- Fixes to safe more rules.- Re-write to
  4427. 0540: mcat_domain_template().- Fix passenger labeling.- Allow all doma
  4428. 0580: ins to read man pages.- Add ephemeral_port_t to the 'generic' po
  4429. 05c0: rt interfaces.- Fix the names of postgresql booleans.- Stop usin
  4430. 0600: g attributes form netlabel_peer and syslog, auth_use_nsswitch se
  4431. 0640: tsup netlabel_peer.- Move netlable_peer check out of booleans.-
  4432. 0680: Remove call to recvfrom_netlabel for kerberos call.- Remove use
  4433. 06c0: of attributes when calling syslog call .- Move -miscfiles_read_l
  4434. 0700: ocalization to domain.te to save hundreds of allow rules.- Allow
  4435. 0740: all domains to read locale files. This eliminates around 1500
  4436. 0780: allow rules- Cleanup nis_use_ypbind_uncond interface.- Allow rnd
  4437. 07c0: c to block suspend.- tuned needs to modify the schedule of the k
  4438. 0800: ernel.- Allow svirt_t domains to read alsa configuration files.-
  4439. 0840: ighten security on irc domains and make sure they label content
  4440. 0880: in homedir correctly.- Add filetrans_home_content for irc files
  4441. 08c0: .- Dontaudit all getattr access for devices and filesystems for
  4442. 0900: sandbox domains.- Allow stapserver to search cgroups directories
  4443. 0940: .- Allow all postfix domains to talk to spamd.- Add interfaces t
  4444. 0980: o ignore setattr until kernel fixes this to be checked after the
  4445. 09c0: DAC check.- Change pam_t to pam_timestamp_t.- Add dovecot_domai
  4446. 0a00: n attribute and allow this attribute block_suspend capability2.-
  4447. 0a40: Add sanlock_use_fusefs boolean.- numad wants send/recieve msg.-
  4448. 0a80: Allow rhnsd to send syslog msgs.- Make piranha-pulse as initrc
  4449. 0ac0: domain.- Update openshift instances to dontaudit setattr until t
  4450. 0b00: he kernel is fixed..- Fix auth_login_pgm_domain() interface to
  4451. 0b40: allow domains also managed user tmp dirs because of #856880 rela
  4452. 0b80: ted to pam_systemd.- Remove pam_selinux.8 which conflicts with m
  4453. 0bc0: an page owned by the pam package.- Allow glance-api to talk to m
  4454. 0c00: ysql.- ABRT wants to read Xorg.0.log if if it detects problem wi
  4455. 0c40: th Xorg.- Fix gstreamer filename trans. interface.- Man page fix
  4456. 0c80: es by Dan Walsh.- Allow postalias to read postfix config files.-
  4457. 0cc0: Allow man2html to read man pages.- Allow rhev-agentd to search
  4458. 0d00: all mountpoints.- Allow rhsmcertd to read /dev/random.- Add tgtd
  4459. 0d40: _stream_connect() interface.- Add cyrus_write_data() interface.-
  4460. 0d80: Dontaudit attempts by sandboxX clients connectiing to the xserv
  4461. 0dc0: er_port_t.- Add port definition for tcp/81 as http_port_t.- Fix
  4462. 0e00: /dev/twa labeling.- Allow systemd to read modules config.- Merge
  4463. 0e40: openshift policy.- Allow xauth to read /dev/urandom.- systemd n
  4464. 0e80: eeds to relabel content in /run/systemd directories.- Files unco
  4465. 0ec0: nfined should be able to perform all services on all files.- Pup
  4466. 0f00: pet tmp file can be leaked to all domains.- Dontaudit rhsmcertd-
  4467. 0f40: worker to search /root/.local.- Allow chown capability for zaraf
  4468. 0f80: a domains.- Allow system cronjobs to runcon into openshift doma
  4469. 0fc0: ins.- Allow virt_bridgehelper_t to manage content in the svirt_h
  4470. 1000: ome_t labeled directories.- nmbd wants to create /var/nmbd.- St
  4471. 1040: op transitioning out of anaconda and firstboot, just causes AVC
  4472. 1080: messages.- Allow clamscan to read /etc files.- Allow bcfg2 to bi
  4473. 10c0: nd cyphesis port.- heartbeat should be run as rgmanager_t instea
  4474. 1100: d of corosync_t.- Add labeling for /etc/openldap/certs.- Add lab
  4475. 1140: eling for /opt/sartest directory.- Make crontab_t as userdom hom
  4476. 1180: e reader.- Allow tmpreaper to list admin_home dir.- Add defition
  4477. 11c0: for imap_0 replay cache file.- Add support for gitolite3.- Allo
  4478. 1200: w virsh_t to send syslog messages.- allow domains that can read
  4479. 1240: samba content to be able to list the directories also.- Add real
  4480. 1280: md_dbus_chat to allow all apps that use nsswitch to talk to real
  4481. 12c0: md.- Separate out sandbox from sandboxX policy so we can disable
  4482. 1300: it by default.- Run dmeventd as lvm_t.- Mounting on any directo
  4483. 1340: ry requires setattr and write permissions.- Fix use_nfs_home_dir
  4484. 1380: s() boolean.- New labels for pam_krb5.- Allow init and initrc do
  4485. 13c0: mains to sys_ptrace since this is needed to look at processes no
  4486. 1400: t owned by uid 0.- Add realmd_dbus_chat to allow all apps that u
  4487. 1440: se nsswitch to talk to realmd.- Separate sandbox policy into san
  4488. 1480: dbox and sandboxX, and disable sandbox by default on fresh insta
  4489. 14c0: lls.- Allow domains that can read etc_t to read etc_runtime_t .-
  4490. 1500: Allow all domains to use inherited tmpfiles.- Allow realmd to r
  4491. 1540: ead resolv.conf.- Add pegasus_cache_t type.- Label /usr/sbin/fen
  4492. 1580: ce_virtd as virsh_exec_t.- Add policy for pkcsslotd.- Add suppor
  4493. 15c0: t for cpglockd.- Allow polkit-agent-helper to read system-auth-a
  4494. 1600: c.- telepathy-idle wants to read gschemas.compiled.- Allow plymo
  4495. 1640: uthd to getattr on fs_t.- Add slpd policy.- Allow ksysguardproce
  4496. 1680: s to read/write config_usr_t.- Fix labeling substitution so rpm
  4497. 16c0: will label /lib/systemd content correctly.- Add file name transi
  4498. 1700: tions for ttyACM0.- spice-vdagent(d)'s are going to log over to
  4499. 1740: syslog.- Add sensord policy.- Add more fixes for passenger polic
  4500. 1780: y related to puppet.- Allow wdmd to create wdmd_tmpfs_t.- Fix la
  4501. 17c0: beling for /var/run/cachefilesd\.pid.- Add thumb_tmpfs_t files t
  4502. 1800: ype.- Allow svirt domains to manage the network since this is co
  4503. 1840: ntainerized.- Allow svirt_lxc_net_t to send audit messages.- Mak
  4504. 1880: e "snmpwalk -mREDHAT-CLUSTER-MIB ...." working.- Allow dlm_contr
  4505. 18c0: old to execute dlm_stonith labeled as bin_t.- Allow GFS2 working
  4506. 1900: on F17.- Abrt needs to execute dmesg.- Allow jockey to list the
  4507. 1940: contents of modeprobe.d.- Add policy for lightsquid as squid_cr
  4508. 1980: on_t.- Mailscanner is creating files and directories in /tmp.- d
  4509. 19c0: mesg is now reading /dev/kmsg.- Allow xserver to communicate wit
  4510. 1a00: h secure_firmware.- Allow fsadm tools (fsck) to read /run/mount
  4511. 1a40: contnet.- Allow sysadm types to read /dev/kmsg.-.- Allow postfix
  4512. 1a80: , sssd, rpcd to block_suspend.- udev seems to need secure_firmwa
  4513. 1ac0: re capability.- Allow virtd to send dbus messages to firewalld s
  4514. 1b00: o it can configure the firewall.- Fix labeling of content in /ru
  4515. 1b40: n created by virsh_t.- Allow condor domains to read kernel sysct
  4516. 1b80: ls.- Allow condor_master to connect to amqp.- Allow thumb drives
  4517. 1bc0: to create shared memory and semaphores.- Allow abrt to read moz
  4518. 1c00: illa_plugin config files.- Add labels for lightsquid.- Default f
  4519. 1c40: iles in /opt and /usr that end in .cgi as httpd_sys_script_t, al
  4520. 1c80: low.- dovecot_auth_t uses ldap for user auth.- Allow domains tha
  4521. 1cc0: t can read dhcp_etc_t to read lnk_files.- Add more then one watc
  4522. 1d00: hdog device.- Allow useradd_t to manage etc_t files so it can re
  4523. 1d40: name it and edit them.- Fix invalid class dir should be fifo_fil
  4524. 1d80: e.- Move /run/blkid to fsadm and make sure labeling is correct.-
  4525. 1dc0: Fix bogus regex found by eparis.- Fix manage run interface sinc
  4526. 1e00: e lvm needs more access.- syslogd is searching cgroups directory
  4527. 1e40: .- Fixes to allow virt-sandbox-service to manage lxc var run con
  4528. 1e80: tent.- Fix Boolean settings.- Add new libjavascriptcoregtk as te
  4529. 1ec0: xtrel_shlib_t.- Allow xdm_t to create xdm_home_t directories.- A
  4530. 1f00: dditional access required for systemd.- Dontaudit mozilla_plugin
  4531. 1f40: attempts to ipc_lock.- Allow tmpreaper to delete unlabeled file
  4532. 1f80: s.- Eliminate screen_tmp_t and allow it to manage user_tmp_t.- D
  4533. 1fc0: ontaudit mozilla_plugin_config_t to append to leaked file descri
  4534. 2000: ptors.- Allow web plugins to connect to the asterisk ports.- Con
  4535. 2040: dor will recreate the lock directory if it does not exist.- Oddj
  4536. 2080: ob mkhomedir needs to connectto user processes.- Make oddjob_mkh
  4537. 20c0: omedir_t a userdom home manager.- Put placeholder back in place
  4538. 2100: for proper numbering of capabilities.- Systemd also configures i
  4539. 2140: nit scripts.- Fix ecryptfs interfaces.- Bootloader seems to be t
  4540. 2180: rolling around /dev/shm and /dev.- init wants to create /etc/sys
  4541. 21c0: temd/system-update.target.wants.- Fix systemd_filetrans call to
  4542. 2200: move it out of tunable.- Fix up policy to work with systemd user
  4543. 2240: space manager.- Add secure_firmware capability and remove bogus
  4544. 2280: epolwakeup.- Call seutil_*_login_config interfaces where should
  4545. 22c0: be needed.- Allow rhsmcertd to send signal to itself.- Allow thi
  4546. 2300: n domains to send signal to itself.- Allow Chrome_ChildIO to rea
  4547. 2340: d dosfs_t.- Add role rules for realmd, sambagui.- Add new type s
  4548. 2380: elinux_login_config_t for /etc/selinux/<type>/logins/.- Addition
  4549. 23c0: al fixes for seutil_manage_module_store().- dbus_system_domain()
  4550. 2400: should be used with optional_policy.- Fix svirt to be allowed t
  4551. 2440: o use fusefs file system.- Allow login programs to read /run/ da
  4552. 2480: ta created by systemd_login.- sssd wants to write /etc/selinux/<
  4553. 24c0: policy>/logins/ for SELinux PAM module.- Fix svirt to be allowed
  4554. 2500: to use fusefs file system.- Allow piranha domain to use nsswitc
  4555. 2540: h.- Sanlock needs to send Kill Signals to non root processes.- P
  4556. 2580: ulseaudio wants to execute /run/user/PID/.orc.- Fix saslauthd wh
  4557. 25c0: en it tries to read /etc/shadow.- Label gnome-boxes as a virt ho
  4558. 2600: medir.- Need to allow svirt_t ability to getattr on nfs_t file s
  4559. 2640: ystems.- Update sanlock policy to solve all AVC's.- Change confi
  4560. 2680: ned users can optionally manage virt content.- Handle new direct
  4561. 26c0: ories under ~/.cache.- Add block suspend to appropriate domains.
  4562. 2700: - More rules required for containers.- Allow login programs to r
  4563. 2740: ead /run/ data created by systemd_logind.- Allow staff users to
  4564. 2780: run svirt_t processes.- Update to upstream.- More fixes for syst
  4565. 27c0: emd to make rawhide booting from Dan Walsh.- Add systemd fixes t
  4566. 2800: o make rawhide booting.- Add systemd_logind_inhibit_var_run_t at
  4567. 2840: tribute.- Remove corenet_all_recvfrom_unlabeled() for non-contri
  4568. 2880: b policies because we moved it to domain.if for all domain_type.
  4569. 28c0: - Add interface for mysqld to dontaudit signull to all processes
  4570. 2900: .- Label new /var/run/journal directory correctly.- Allow users
  4571. 2940: to inhibit suspend via systemd.- Add new type for the /var/run/i
  4572. 2980: nhibit directory.- Add interface to send signull to systemd_logi
  4573. 29c0: n so avahi can send them.- Allow systemd_passwd to send syslog m
  4574. 2a00: essages.- Remove corenet_all_recvfrom_unlabeled() calling fro po
  4575. 2a40: licy files.- Allow editparams.cgi running as httpd_bugzill
  4576. 2a80: a_script_t to read /etc/group.- Allow smbd to read cluster confi
  4577. 2ac0: g.- Add additional labeling for passenger.- Allow dbus to inhibi
  4578. 2b00: t suspend via systemd.- Allow avahi to send signull to systemd_l
  4579. 2b40: ogin.- Add interface to dontaudit getattr access on sysctls.- Al
  4580. 2b80: low sshd to execute /bin/login.- Looks like xdm is recreating th
  4581. 2bc0: e xdm directory in ~/.cache/ on login.- Allow syslog to use the
  4582. 2c00: leaked kernel_t unix_dgram_socket from system-jounald.- Fix sem
  4583. 2c40: anage to work with unconfined domain disabled on F18.- Dontaudit
  4584. 2c80: attempts by mozilla plugins to getattr on all kernel sysctls.-
  4585. 2cc0: Virt seems to be using lock files.- Dovecot seems to be searchin
  4586. 2d00: g directories of every mountpoint.- Allow jockey to read random/
  4587. 2d40: urandom, execute shell and install third-party drivers.- Add adi
  4588. 2d80: tional params to allow cachedfiles to manage its content.- gpg a
  4589. 2dc0: gent needs to read /dev/random.- The kernel hands an svirt domai
  4590. 2e00: ns /SYSxxxxx which is a tmpfs that httpd wants to read and write
  4591. 2e40: .- Add a bunch of dontaudit rules to quiet svirt_lxc domains.- A
  4592. 2e80: dditional perms needed to run svirt_lxc domains.- Allow cgclear
  4593. 2ec0: to read cgconfig.- Allow sys_ptrace capability for snmp.- Allow
  4594. 2f00: freshclam to read /proc.- Allow procmail to manage /home/user/Ma
  4595. 2f40: ildir content.- Allow NM to execute wpa_cli.- Allow amavis to re
  4596. 2f80: ad clamd system state.- Regenerate man pages.- Rebuilt for https
  4597. 2fc0: ://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild.- Add realmd an
  4598. 3000: d stapserver policies.- Allow useradd to manage stap-server lib
  4599. 3040: files.- Tighten up capabilities for confined users.- Label /etc/
  4600. 3080: security/opasswd as shadow_t.- Add label for /dev/ecryptfs.- All
  4601. 30c0: ow condor_startd_t to start sshd with the ranged.- Allow lpstat.
  4602. 3100: cups to read fips_enabled file.- Allow pyzor running as spamc_t
  4603. 3140: to create /root/.pyzor directory.- Add labelinf for amavisd-snmp
  4604. 3180: init script.- Add support for amavisd-snmp.- Allow fprintd sigk
  4605. 31c0: ill self.- Allow xend (w/o libvirt) to start virtual machines.-
  4606. 3200: Allow aiccu to read /etc/passwd.- Allow condor_startd to Make sp
  4607. 3240: ecified domain MCS trusted for setting any category set for the
  4608. 3280: processes it executes.- Add condor_startd_ranged_domtrans_to() i
  4609. 32c0: nterface.- Add ssd_conf_t for /etc/sssd.- accountsd needs to fch
  4610. 3300: own some files/directories.- Add ICACLient and zibrauserdata as
  4611. 3340: mozilla_filetrans_home_content.- SELinux reports afs_t needs dac
  4612. 3380: _override to read /etc/mtab, even though everything works, addin
  4613. 33c0: g dontaudit.- Allow xend_t to read the /etc/passwd file.- Until
  4614. 3400: we figure out how to fix systemd issues, allow all apps that sen
  4615. 3440: d syslog messages to send them to kernel_t.- Add init_access_che
  4616. 3480: ck() interface.- Fix label on /usr/bin/pingus to not be labeled
  4617. 34c0: as ping_exec_t.- Allow tcpdump to create a netlink_socket.- Labe
  4618. 3500: l newusers like useradd.- Change xdm log files to be labeled xdm
  4619. 3540: _log_t.- Allow sshd_t with privsep to work in MLS.- Allow freshc
  4620. 3580: lam to update databases thru HTTP proxy.- Allow s-m-config to ac
  4621. 35c0: cess check on systemd.- Allow abrt to read public files by defau
  4622. 3600: lt.- Fix amavis_create_pid_files() interface.- Add labeling and
  4623. 3640: filename transition for dbomatic.log.- Allow system_dbusd_t to s
  4624. 3680: tream connect to bluetooth, and use its socket.- Allow amavisd t
  4625. 36c0: o execute fsav.- Allow tuned to use sys_admin and sys_nice capab
  4626. 3700: ilities.- Add php-fpm policy from Bryan.- Add labeling for aeolu
  4627. 3740: s-configserver-thinwrapper.- Allow thin domains to execute shell
  4628. 3780: .- Fix gnome_role_gkeyringd() interface description.- Lot of int
  4629. 37c0: erface fixes.- Allow OpenMPI job running as condor_startd_ssh_t
  4630. 3800: to manage condor lib files.- Allow OpenMPI job to use kerberos.-
  4631. 3840: Make deltacloudd_t as nsswitch_domain.- Allow xend_t to run lss
  4632. 3880: csi.- Allow qemu-dm running as xend_t to create tun_socket.- Add
  4633. 38c0: labeling for /opt/brother/Printers(.*/)?inf.- Allow jockey-back
  4634. 3900: end to read pyconfig-64.h labeled as usr_t.- Fix clamscan_can_sc
  4635. 3940: an_system boolean.- Allow lpr to connectto to /run/user/$USER/ke
  4636. 3980: yring-22uREb/pkcs11.- initrc is calling exportfs which is not co
  4637. 39c0: nfined so it attempts to read nfsd_files.- Fixes for passenger r
  4638. 3a00: unning within openshift..- Add labeling for all tomcat6 dirs.- A
  4639. 3a40: dd support for tomcat6.- Allow cobblerd to read /etc/passwd.- Al
  4640. 3a80: low jockey to read sysfs and and execute binaries with bin_t.- A
  4641. 3ac0: llow thum to use user terminals.- Allow cgclear to read cgconfig
  4642. 3b00: config files.- Fix bcf2g.fc.- Remove sysnet_dns_name_resolve()
  4643. 3b40: from policies where auth_use_nsswitch() is used for other domain
  4644. 3b80: s.- Allow dbomatic to execute ruby.- abrt_watch_log should be ab
  4645. 3bc0: rt_domain.- Allow mozilla_plugin to connect to gatekeeper port.-
  4646. 3c00: add ptrace_child access to process.- remove files_read_etc_file
  4647. 3c40: s() calling from all policies which have auth_use_nsswith().- Al
  4648. 3c80: low boinc domains to manage boinc_lib_t lnk_files.- Add support
  4649. 3cc0: for boinc-client.service unit file.- Add support for boinc.log.-
  4650. 3d00: Allow mozilla_plugin execmod on mozilla home files if allow_ex.
  4651. 3d40: - Allow dovecot_deliver_t to read dovecot_var_run_t.- Allow ldco
  4652. 3d80: nfig and insmod to manage kdumpctl tmp files.- Move thin policy
  4653. 3dc0: out from cloudform.pp and add a new thin poli.- pacemaker needs
  4654. 3e00: to communicate with corosync streams.- abrt is now started on de
  4655. 3e40: mand by dbus.- Allow certmonger to talk directly to Dogtag serve
  4656. 3e80: rs.- Change labeling for /var/lib/cobbler/webui_sessions to http
  4657. 3ec0: d_c.- Allow mozila_plugin to execute gstreamer home files.- Allo
  4658. 3f00: w useradd to delete all file types stored in the users hom.- rhs
  4659. 3f40: mcertd reads the rpm database.- Add support for lightdm.- Add to
  4660. 3f80: mcat policy.- Remove pyzor/razor policy.- rhsmcertd reads the rp
  4661. 3fc0: m database.- Dontaudit thumb to setattr on xdm_tmp dir.- Allow
  4662. 13:00:16.894352 <= Recv data, 16384 bytes (0x4000)
  4663. 0000: wicd to execute ldconfig in the networkmanager_t domain.- Add /v
  4664. 0040: ar/run/cherokee\.pid labeling.- Allow mozilla_plugin to create m
  4665. 0080: ozilla_plugin_tmp_t lnk files too.- Allow postfix-master to r/w
  4666. 00c0: pipes other postfix domains.- Allow snort to create netlink_sock
  4667. 0100: et.- Add kdumpctl policy.- Allow firstboot to create tmp_t files
  4668. 0140: /directories.- /usr/bin/paster should not be labeled as piranha_
  4669. 0180: exec_t.- remove initrc_domain from tomcat.- Allow ddclient to re
  4670. 01c0: ad /etc/passwd.- Allow useradd to delete all file types stored i
  4671. 0200: n the users homedir.- Allow ldconfig and insmod to manage kdumpc
  4672. 0240: tl tmp files.- Firstboot should be just creating tmp_t dirs and
  4673. 0280: xauth should be allowed to write to those.- Transition xauth fil
  4674. 02c0: es within firstboot_tmp_t.- Fix labeling of /run/media to match
  4675. 0300: /media.- Label all lxdm.log as xserver_log_t.- Add port definiti
  4676. 0340: on for mxi port.- Allow local_login_t to execute tmux.- apcupsd
  4677. 0380: needs to read /etc/passwd.- Sanlock allso sends sigkill.- Allow
  4678. 03c0: glance_registry to connect to the mysqld port.- Dontaudit mozill
  4679. 0400: a_plugin trying to getattr on /dev/gpmctl.- Allow firefox plugin
  4680. 0440: s/flash to connect to port 1234.- Allow mozilla plugins to delet
  4681. 0480: e user_tmp_t files.- Add transition name rule for printers.conf.
  4682. 04c0: O.- Allow virt_lxc_t to read urand.- Allow systemd_loigind to li
  4683. 0500: st gstreamer_home_dirs.- Fix labeling for /usr/bin.- Fixes for c
  4684. 0540: loudform services. * support FIPS.- Allow polipo to work as web
  4685. 0580: caching.- Allow chfn to execute tmux.- Add support for ecryptfs
  4686. 05c0: . * ecryptfs does not support xattr. * we need labeling for HO
  4687. 0600: MEDIR.- Add policy for (u)mount.ecryptfs*.- Fix labeling of kerb
  4688. 0640: ero host cache files, allow rpc.svcgssd to manage host cache.- A
  4689. 0680: llow dovecot to manage Maildir content, fix transitions to Maild
  4690. 06c0: ir.- Allow postfix_local to transition to dovecot_deliver.- Dont
  4691. 0700: audit attempts to setattr on xdm_tmp_t, looks like bogus code.-
  4692. 0740: Cleanup interface definitions.- Allow apmd to change with the lo
  4693. 0780: gind daemon.- Changes required for sanlock in rhel6.- Label /run
  4694. 07c0: /user/apache as httpd_tmp_t.- Allow thumb to use lib_t as execmo
  4695. 0800: d if boolean turned on.- Allow squid to create the squid directo
  4696. 0840: ry in /var with the correct labe.- Add a new policy for glusterd
  4697. 0880: from Bryan Bickford (bbickfor@redhat.com).- Allow virtd to exec
  4698. 08c0: xend_exec_t without transition.- Allow virtd_lxc_t to unmount a
  4699. 0900: ll file systems.- PolicyKit path has changed.- Allow httpd conne
  4700. 0940: ct to dirsrv socket.- Allow tuned to write generic kernel sysctl
  4701. 0980: s.- Dontaudit logwatch to gettr on /dev/dm-2.- Allow policykit-a
  4702. 09c0: uth to manage kerberos files.- Make condor_startd and rgmanager
  4703. 0a00: as initrc domain.- Allow virsh to read /etc/passwd.- Allow mount
  4704. 0a40: to mount on user_tmp_t for /run/user/dwalsh/gvfs.- xdm now need
  4705. 0a80: s to execute xsession_exec_t.- Need labels for /var/lib/gdm.- Fi
  4706. 0ac0: x files_filetrans_named_content() interface.- Add new attribute
  4707. 0b00: - initrc_domain.- Allow systemd_logind_t to signal, signull, sig
  4708. 0b40: kill all processes.- Add filetrans rules for etc_runtime files.-
  4709. 0b80: Rename boolean names to remove allow_.- Mass merge with upstrea
  4710. 0bc0: m. * new policy topology to include contrib policy modules. *
  4711. 0c00: we have now two base policy patches.- Fix description of authlog
  4712. 0c40: in_nsswitch_use_ldap.- Fix transition rule for rhsmcertd_t neede
  4713. 0c80: d for RHEL7.- Allow useradd to list nfs state data.- Allow openv
  4714. 0cc0: pn to manage its log file and directory.- We want vdsm to transi
  4715. 0d00: tion to mount_t when executing mount command to make sure /etc/m
  4716. 0d40: tab remains labeled correctly.- Allow thumb to use nvidia device
  4717. 0d80: s.- Allow local_login to create user_tmp_t files for kerberos.-
  4718. 0dc0: Pulseaudio needs to read systemd_login /var/run content.- virt
  4719. 0e00: should only transition named system_conf_t config files.- Allow
  4720. 0e40: munin to execute its plugins.- Allow nagios system plugin to re
  4721. 0e80: ad /etc/passwd.- Allow plugin to connect to soundd port.- Fix ht
  4722. 0ec0: tpd_passwd to be able to ask passwords.- Radius servers can use
  4723. 0f00: ldap for backing store.- Seems to need to mount on /var/lib for
  4724. 0f40: xguest polyinstatiation to work..- Allow systemd_logind to list
  4725. 0f80: the contents of gnome keyring.- VirtualGL need xdm to be able to
  4726. 0fc0: manage content in /etc/opt/VirtualGL.- Add policy for isns-util
  4727. 1000: s.- Add policy for subversion daemon.- Allow boinc to read passw
  4728. 1040: d.- Allow pads to read kernel network state.- Fix man2html inter
  4729. 1080: face for sepolgen-ifgen.- Remove extra /usr/lib/systemd/system/s
  4730. 10c0: mb.- Remove all /lib/systemd and replace with /usr/lib/systemd.-
  4731. 1100: Add policy for man2html.- Fix the label of kerberos_home_t to k
  4732. 1140: rb5_home_t.- Allow mozilla plugins to use Citrix.- Allow tuned t
  4733. 1180: o read /proc/sys/kernel/nmi_watchdog.- Allow tune /sys options v
  4734. 11c0: ia systemd's tmpfiles.d "w" type.- Dontaudit lpr_t to read/write
  4735. 1200: leaked mozilla tmp files.- Add file name transition for .grl-po
  4736. 1240: dcasts directory.- Allow corosync to read user tmp files.- Allow
  4737. 1280: fenced to create snmp lib dirs/files.- More fixes for sge polic
  4738. 12c0: y.- Allow mozilla_plugin_t to execute any application.- Allow db
  4739. 1300: us to read/write any open file descriptors to any non security f
  4740. 1340: ile on the system that it inherits to that it can pass them to a
  4741. 1380: nother domain.- Allow mongod to read system state information.-
  4742. 13c0: Fix wrong type, we should dontaudit sys_admin for xdm_t not xse
  4743. 1400: rver_t.- Allow polipo to manage polipo_cache dirs.- Add jabbar_c
  4744. 1440: lient port to mozilla_plugin_t.- Cleanup procmail policy.- syste
  4745. 1480: m bus will pass around open file descriptors on files that do no
  4746. 14c0: t have labels on them.- Allow l2tpd_t to read system state.- All
  4747. 1500: ow tuned to run ls /dev.- Allow sudo domains to read usr_t files
  4748. 1540: .- Add label to machine-id .- Fix corecmd_read_bin_symlinks cut
  4749. 1580: and paste error.- Fix pulseaudio port definition.- Add labeling
  4750. 15c0: for condor_starter.- Allow chfn_t to creat user_tmp_files.- Allo
  4751. 1600: w chfn_t to execute bin_t.- Allow prelink_cron_system_t to getpw
  4752. 1640: calls.- Allow sudo domains to manage kerberos rcache files.- Al
  4753. 1680: low user_mail_domains to work with courie.- Port definitions nec
  4754. 16c0: essary for running jboss apps within openshift.- Add support fo
  4755. 1700: r openstack-nova-metadata-api.- Add support for nova-console*.-
  4756. 1740: Add support for openstack-nova-xvpvncproxy.- Fixes to make privs
  4757. 1780: ep+SELinux working if we try to use chage to change passwd.- Fix
  4758. 17c0: auth_role() interface.- Allow numad to read sysfs.- Allow matah
  4759. 1800: ari-rpcd to execute shell.- Add label for ~/.spicec.- xdm is exe
  4760. 1840: cuting lspci as root which is requesting a sys_admin priv but se
  4761. 1880: ems to succeed without it.- Devicekit_disk wants to read the log
  4762. 18c0: ind sessions file when writing a cd.- Add fixes for condor to ma
  4763. 1900: ke condor jobs working correctly.- Change label of /var/log/rpmp
  4764. 1940: kgs to cron_log_t.- Access requires to allow systemd-tmpfiles --
  4765. 1980: create to work..- Fix obex to be a user application started by t
  4766. 19c0: he session bus..- Add additional filename trans rules for kerber
  4767. 1a00: os.- Fix /var/run/heartbeat labeling.- Allow apps that are manag
  4768. 1a40: ing rcache to file trans correctly.- Allow openvpn to authentica
  4769. 1a80: te against ldap server.- Containers need to listen to network st
  4770. 1ac0: arting and stopping events.- Make systemd unit files less specif
  4771. 1b00: ic.- Fix zarafa labeling.- Allow guest_t to fix labeling.- coren
  4772. 1b40: et_tcp_bind_all_unreserved_ports(ssh_t) should be called with th
  4773. 1b80: e user_tcp_server boolean.- add lxc_contexts.- Allow accountsd t
  4774. 1bc0: o read /proc.- Allow restorecond to getattr on all file sytems.-
  4775. 1c00: tmpwatch now calls getpw.- Allow apache daemon to transition to
  4776. 1c40: pwauth domain.- Label content under /var/run/user/NAME/keyring*
  4777. 1c80: as gkeyringd_tmp_t.- The obex socket seems to be a stream socke
  4778. 1cc0: t.- dd label for /var/run/nologin.- Allow jetty running as httpd
  4779. 1d00: _t to read hugetlbfs files.- Allow sys_nice and setsched for rhs
  4780. 1d40: mcertd.- Dontaudit attempts by mozilla_plugin_t to bind to ssdp
  4781. 1d80: ports.- Allow setfiles to append to xdm_tmp_t.- Add labeling for
  4782. 1dc0: /export as a usr_t directory.- Add labels for .grl files create
  4783. 1e00: d by gstreamer.- Add labeling for /usr/share/jetty/bin/jetty.sh.
  4784. 1e40: - Add jetty policy which contains file type definitios.- Allow j
  4785. 1e80: ockey to use its own fifo_file and make this the default for all
  4786. 1ec0: domains.- Allow mozilla_plugins to use spice (vnc_port/couchdb)
  4787. 1f00: .- asterisk wants to read the network state.- Blueman now uses /
  4788. 1f40: var/lib/blueman- Add label for nodejs_debug.- Allow mozilla_plug
  4789. 1f80: in_t to create ~/.pki directory and content.- Add clamscan_can_s
  4790. 1fc0: can_system boolean.- Allow mysqld to read kernel network state.-
  4791. 2000: Allow sshd to read/write condor lib files.- Allow sshd to read/
  4792. 2040: write condor-startd tcp socket.- Fix description on httpd_gracef
  4793. 2080: ul_shutdown.- Allow glance_registry to communicate with mysql.-
  4794. 20c0: dbus_system_domain is using systemd to lauch applications.- add
  4795. 2100: interfaces to allow domains to send kill signals to user mail ag
  4796. 2140: ents.- Remove unnessary access for svirt_lxc domains, add privs
  4797. 2180: for virtd_lxc_t.- Lots of new access required for secure contain
  4798. 21c0: ers.- Corosync needs sys_admin capability.- ALlow colord to crea
  4799. 2200: te shm.- .orc should be allowed to be created by any app that ca
  4800. 2240: n create gstream home content, thumb_t to be specific.- Add bool
  4801. 2280: ean to control whether or not mozilla plugins can create random
  4802. 22c0: content in the users homedir.- Add new interface to allow domai
  4803. 2300: ns to list msyql_db directories, needed for libra.- shutdown has
  4804. 2340: to be allowed to delete etc_runtime_t.- Fail2ban needs to read
  4805. 2380: /etc/passwd.- Allow ldconfig to create /var/cache/ldconfig.- Al
  4806. 23c0: low tgtd to read hardware state information.- Allow collectd to
  4807. 2400: create packet socket.- Allow chronyd to send signal to itself.-
  4808. 2440: Allow collectd to read /dev/random.- Allow collectd to send sign
  4809. 2480: al to itself.- firewalld needs to execute restorecon.- Allow res
  4810. 24c0: torecon and other login domains to execute restorecon.- Allow lo
  4811. 2500: grotate to getattr on systemd unit files.- Add support for tor s
  4812. 2540: ystemd unit file.- Allow apmd to create /var/run/pm-utils with t
  4813. 2580: he correct label.- Allow l2tpd to send sigkill to pppd.- Allow p
  4814. 25c0: ppd to stream connect to l2tpd.- Add label for scripts in /etc/g
  4815. 2600: dm/.- Allow systemd_logind_t to ignore mcs constraints on sigkil
  4816. 2640: l.- Fix files_filetrans_system_conf_named_files() interface.- Ad
  4817. 2680: d labels for /usr/share/wordpress/wp-includes/*.php.- Allow cobb
  4818. 26c0: ler to get SELinux mode and booleans.- Add unconfined_execmem_ex
  4819. 2700: ec_t as an alias to bin_t.- Allow fenced to read snmp var lib fi
  4820. 2740: les, also allow it to read usr_t.- ontaudit access checks on all
  4821. 2780: executables from mozilla_plugin.- Allow all user domains to set
  4822. 27c0: exec, so that sshd will work properly if it call setexec(NULL) w
  4823. 2800: hile running withing a user mode.- Allow systemd_tmpfiles_t to g
  4824. 2840: etattr all pipes and sockets.- Allow glance-registry to send sys
  4825. 2880: tem log messages.- semanage needs to manage mock lib files/dirs.
  4826. 28c0: - Add policy for abrt-watch-log.- Add definitions for jboss_mess
  4827. 2900: aging ports.- Allow systemd_tmpfiles to manage printer devices.-
  4828. 2940: Allow oddjob to use nsswitch.- Fix labeling of log files for po
  4829. 2980: stgresql.- Allow mozilla_plugin_t to execmem and execstack by de
  4830. 29c0: fault.- Allow firewalld to execute shell.- Fix /etc/wicd content
  4831. 2a00: files to get created with the correct label.- Allow mcelog to e
  4832. 2a40: xec shell.- Add ~/.orc as a gstreamer_home_t.- /var/spool/postfi
  4833. 2a80: x/lib64 should be labeled lib_t.- mpreaper should be able to lis
  4834. 2ac0: t all file system labeled directories.- Add support for apache t
  4835. 2b00: o use openstack.- Add labeling for /etc/zipl.conf and zipl binar
  4836. 2b40: y.- Turn on allow_execstack and turn off telepathy transition fo
  4837. 2b80: r final release.- More access required for virt_qmf_t.- Addition
  4838. 2bc0: al assess required for systemd-logind to support multi-seat.- Al
  4839. 2c00: low mozilla_plugin to setrlimit.- Revert changes to fuse file sy
  4840. 2c40: stem to stop deadlock.- Allow condor domains to connect to ephem
  4841. 2c80: eral ports.- More fixes for condor policy.- Allow keystone to st
  4842. 2cc0: ream connect to mysqld.- Allow mozilla_plugin_t to read generic
  4843. 2d00: USB device to support GPS devices.- Allow thum to file name tran
  4844. 2d40: sition gstreamer home content.- Allow thum to read all non secur
  4845. 2d80: ity files.- Allow glance_api_t to connect to ephemeral ports.- A
  4846. 2dc0: llow nagios plugins to read /dev/urandom.- Allow syslogd to sear
  4847. 2e00: ch postfix spool to support postfix chroot env.- Fix labeling fo
  4848. 2e40: r /var/spool/postfix/dev.- Allow wdmd chown.- Label .esd_auth as
  4849. 2e80: pulseaudio_home_t.- Have no idea why keyring tries to write to
  4850. 2ec0: /run/user/dwalsh/dconf/user, but we can dontaudit for now.- Add
  4851. 2f00: support for clamd+systemd.- Allow fresclam to execute systemctl
  4852. 2f40: to handle clamd.- Change labeling for /usr/sbin/rpc.ypasswd.env.
  4853. 2f80: .- Allow yppaswd_t to execute yppaswd_exec_t..- Allow yppaswd_t
  4854. 2fc0: to read /etc/passwd.- Gnomekeyring socket has been moved to /run
  4855. 3000: /user/USER/.- Allow samba-net to connect to ldap port.- Allow si
  4856. 3040: gnal for vhostmd.- allow mozilla_plugin_t to read user_home_t so
  4857. 3080: cket.- New access required for secure Linux Containers.- zfs now
  4858. 30c0: supports xattrs.- Allow quantum to execute sudo and list sysfs.
  4859. 3100: - Allow init to dbus chat with the firewalld.- Allow zebra to re
  4860. 3140: ad /etc/passwd.- Allow svirt_t to create content in the users ho
  4861. 3180: medir under ~/.libvirt.- Fix label on /var/lib/heartbeat.- Allow
  4862. 31c0: systemd_logind_t to send kill signals to all processes started
  4863. 3200: by a user.- Fuse now supports Xattr Support.- upowered needs to
  4864. 3240: setsched on the kernel.- Allow mpd_t to manage log files.- Allow
  4865. 3280: xdm_t to create /var/run/systemd/multi-session-x.- Add rules fo
  4866. 32c0: r missedfont.log to be used by thumb.fc.- Additional access requ
  4867. 3300: ired for virt_qmf_t.- Allow dhclient to dbus chat with the firew
  4868. 3340: alld.- Add label for lvmetad.- Allow systemd_logind_t to remove
  4869. 3380: userdomain sock_files.- Allow cups to execute usr_t files.- Fix
  4870. 33c0: labeling on nvidia shared libraries.- wdmd_t needs access to sss
  4871. 3400: d and /etc/passwd.- Add boolean to allow ftp servers to run in p
  4872. 3440: assive mode.- Allow namepspace_init_t to relabelto/from a differ
  4873. 3480: ent user system_u from the user the namespace_init running with.
  4874. 34c0: - Fix using httpd_use_fusefs.- Allow chrome_sandbox_nacl to writ
  4875. 3500: e inherited user tmp files as we allow it for chrome_sandbox.- R
  4876. 3540: ename rdate port to time port, and allow gnomeclock to connect t
  4877. 3580: o it.- We no longer need to transition to ldconfig from rpm, rpm
  4878. 35c0: _script, or anaconda.- /etc/auto.* should be labeled bin_t.- Add
  4879. 3600: httpd_use_fusefs boolean.- Add fixes for heartbeat.- Allow sshd
  4880. 3640: _t to signal processes that it transitions to.- Add condor polic
  4881. 3680: y.- Allow svirt to create monitors in ~/.libvirt.- Allow dovecot
  4882. 36c0: to domtrans sendmail to handle sieve scripts.- Lot of fixes for
  4883. 3700: cfengine.- /var/run/postmaster.* labeling is no longer needed.-
  4884. 3740: Alllow drbdadmin to read /dev/urandom.- l2tpd_t seems to use pt
  4885. 3780: mx.- group+ and passwd+ should be labeled as /etc/passwd.- Zaraf
  4886. 37c0: a-indexer is a socket.- Ensure lastlog is labeled correctly.- Al
  4887. 3800: low accountsd to read /proc data about gdm.- Add fixes for tuned
  4888. 3840: .- Add bcfg2 fixes which were discovered during RHEL6 testing.-
  4889. 3880: More fixes for gnome-keyring socket being moved.- Run semanage a
  4890. 38c0: s a unconfined domain, and allow initrc_t to create tmpfs_t sym
  4891. 3900: links on shutdown.- Fix description for files_dontaudit_read_sec
  4892. 3940: urity_files() interface.- Add new policy and man page for bcfg2.
  4893. 3980: - cgconfig needs to use getpw calls.- Allow domains that communi
  4894. 39c0: cate with the keyring to use cache_home_t instead of gkeyringd_t
  4895. 3a00: mpt.- gnome-keyring wants to create a directory in cache_home_t.
  4896. 3a40: - sanlock calls getpw.- Add numad policy and numad man page.- Ad
  4897. 3a80: d fixes for interface bugs discovered by SEWatch.- Add /tmp supp
  4898. 3ac0: ort for squid.- Add fix for #799102. * change default labeli
  4899. 3b00: ng for /var/run/slapd.* sockets.- Make thumb_t as userdom_home_r
  4900. 3b40: eader.- label /var/lib/sss/mc same as pubconf, so getpw domains
  4901. 3b80: can read it.- Allow smbspool running as cups_t to stream connect
  4902. 3bc0: to nmbd.- accounts needs to be able to execute passwd on behalf
  4903. 3c00: of users.- Allow systemd_tmpfiles_t to delete boot flags.- Allo
  4904. 3c40: w dnssec_trigger to connect to apache ports.- Allow gnome keyrin
  4905. 3c80: g to create sock_files in ~/.cache.- google_authenticator is usi
  4906. 3cc0: ng .google_authenticator.- sandbox running from within firefox i
  4907. 3d00: s exposing more leaks.- Dontaudit thumb to read/write /dev/card0
  4908. 3d40: .- Dontaudit getattr on init_exec_t for gnomeclock_t.- Allow cer
  4909. 3d80: tmonger to do a transition to certmonger_unconfined_t.- Allow dh
  4910. 3dc0: cpc setsched which is caused by nmcli.- Add rpm_exec_t for /usr/
  4911. 3e00: sbin/bcfg2.- system cronjobs are sending dbus messages to system
  4912. 3e40: d_logind.- Thumnailers read /dev/urand.- Allow auditctl getcap.-
  4913. 3e80: Allow vdagent to use libsystemd-login.- Allow abrt-dump-oops to
  4914. 3ec0: search /etc/abrt.- Got these avc's while trying to print a boar
  4915. 3f00: ding pass from firefox.- Devicekit is now putting the media dire
  4916. 3f40: ctory under /run/media.- Allow thumbnailers to create content in
  4917. 3f80: ~/.thumbails directory.- Add support for proL2TPd by Dominick G
  4918. 3fc0: rift.- Allow all domains to call getcap.- wdmd seems to get a ra
  4919. 13:00:16.899930 <= Recv data, 16384 bytes (0x4000)
  4920. 0000: ndom chown capability check that it does not need.- Allow vhostm
  4921. 0040: d to read kernel sysctls.- Allow chronyd to read unix.- Allow hp
  4922. 0080: fax to read /etc/passwd.- Add support matahari vios-proxy-* apps
  4923. 00c0: and add virtd_exec_t label for them.- Allow rpcd to read quota_
  4924. 0100: db_t.- Update to man pages to match latest policy.- Fix bug in j
  4925. 0140: ockey interface for sepolgen-ifgen.- Add initial svirt_prot_exec
  4926. 0180: _t policy.- More fixes for systemd from Dan Walsh.- Add a new ty
  4927. 01c0: pe for /etc/firewalld and allow firewalld to write to this direc
  4928. 0200: tory.- Add definition for ~/Maildir, and allow mail deliver doma
  4929. 0240: ins to write there.- Allow polipo to run from a cron job.- Allow
  4930. 0280: rtkit to schedule wine processes.- Allow mozilla_plugin_t to ac
  4931. 02c0: quire a bug, and allow it to transition gnome content in the hom
  4932. 0300: e dir to the proper label.- Allow users domains to send signals
  4933. 0340: to consolehelper domains.- More fixes for boinc policy.- Allow p
  4934. 0380: olipo domain to create its own cache dir and pid file.- Add syst
  4935. 03c0: emctl support to httpd domain.- Add systemctl support to polipo,
  4936. 0400: allow NetworkManager to manage the service.- Add policy for joc
  4937. 0440: key-backend.- Add support for motion daemon which is now covered
  4938. 0480: by zoneminder policy.- Allow colord to read/write motion tmpfs.
  4939. 04c0: - Allow vnstat to search through var_lib_t directories.- Stop tr
  4940. 0500: ansitioning to quota_t, from init an sysadm_t.- Add svirt_lxc_fi
  4941. 0540: le_t as a customizable type.- Add additional fixes for icmp nagi
  4942. 0580: os plugin.- Allow cron jobs to open fifo_files from cron, since
  4943. 05c0: service script opens /dev/stdin.- Add certmonger_unconfined_exec
  4944. 0600: _t.- Make sure tap22 device is created with the correct label.-
  4945. 0640: Allow staff users to read systemd unit files.- Merge in previous
  4946. 0680: ly built policy.- Arpwatch needs to be able to start netlink soc
  4947. 06c0: kets in order to start.- Allow cgred_t to sys_ptrace to look at
  4948. 0700: other DAC Processes.- Back port some of the access that was allo
  4949. 0740: wed in nsplugin_t.- Add definitiona for couchdb ports.- Allow na
  4950. 0780: gios to use inherited users ttys.- Add git support for mock.- Al
  4951. 07c0: low inetd to use rdate port.- Add own type for rdate port.- Allo
  4952. 0800: w samba to act as a portmapper.- Dontaudit chrome_sandbox attemp
  4953. 0840: ts to getattr on chr_files in /dev.- New fixes needed for samba4
  4954. 0880: .- Allow apps that use lib_t to read lib_t symlinks.- Add policy
  4955. 08c0: for nove-cert.- Add labeling for nova-openstack systemd unit f
  4956. 0900: iles.- Add policy for keystoke.- Fix man pages fro domains.- Add
  4957. 0940: man pages for SELinux users and roles.- Add storage_dev_filetra
  4958. 0980: ns_named_fixed_disk() and use it for smartmon.- Add policy for m
  4959. 09c0: atahari-rpcd.- nfsd executes mount command on restart.- Matahari
  4960. 0a00: domains execute renice and setsched.- Dontaudit leaked tty in m
  4961. 0a40: ozilla_plugin_config.- mailman is changing to a per instance nam
  4962. 0a80: ing.- Add 7600 and 4447 as jboss_management ports.- Add fixes fo
  4963. 0ac0: r nagios event handlers.- Label httpd.event as httpd_exec_t, it
  4964. 0b00: is an apache daemon.- Add labeling for /var/spool/postfix/dev/lo
  4965. 0b40: g.- NM reads sysctl.conf.- Iscsi log file context specification
  4966. 0b80: fix.- Allow mozilla plugins to send dbus messages to user domai
  4967. 0bc0: ns that transition to it.- Allow mysql to read the passwd file.-
  4968. 0c00: Allow mozilla_plugin_t to create mozilla home dirs in user home
  4969. 0c40: dir.- Allow deltacloud to read kernel sysctl.- Allow postgresql_
  4970. 0c80: t to connectto itselfAllow postgresql_t to connectto itself.- Al
  4971. 0cc0: low postgresql_t to connectto itself.- Add login_userdomain attr
  4972. 0d00: ibute for users which can log in using terminal.- Allow sysadm_u
  4973. 0d40: to reach system_r by default #784011.- Allow nagios plugins to
  4974. 0d80: use inherited user terminals.- Razor labeling is not used no lon
  4975. 0dc0: ger.- Add systemd support for matahari.- Add port_types to man p
  4976. 0e00: age, move booleans to the top, fix some english.- Add support fo
  4977. 0e40: r matahari-sysconfig-console.- Clean up matahari.fc.- Fix mataha
  4978. 0e80: ri_admin() interfac.- Add labels for/etc/ssh/ssh_host_*.pub keys
  4979. 0ec0: .- Allow ksysguardproces to send system log msgs.- Allow boinc
  4980. 0f00: setpgid and signull.- Allow xdm_t to sys_ptrace to run pidof com
  4981. 0f40: mand.- Allow smtpd_t to manage spool files/directories and symbo
  4982. 0f80: lic links.- Add labeling for jetty.- Needed changes to get unbou
  4983. 0fc0: nd/dnssec to work with openswan.- Add user_fonts_t alias xfs_tmp
  4984. 1000: _t.- Since depmod now runs as insmod_t we need to write to kerne
  4985. 1040: l_object_t.- Allow firewalld to dbus chat with networkmanager.-
  4986. 1080: Allow qpidd to connect to matahari ports.- policykit needs to re
  4987. 10c0: ad /proc for uses not owned by it.- Allow systemctl apps to conn
  4988. 1100: ecto the init stream.- Turn on deny_ptrace boolean.- Remove pam_
  4989. 1140: selinux.8 man page. There was a conflict..- Add proxy class and
  4990. 1180: read access for gssd_proxy.- Separate out the sharing public con
  4991. 11c0: tent booleans.- Allow certmonger to execute a script and send si
  4992. 1200: gnals to apache and dirsrv to reload the certificate.- Add lab
  4993. 1240: el transition for gstream-0.10 and 12.- Add booleans to allow rs
  4994. 1280: ync to share nfs and cifs file sytems.- chrome_sandbox wants to
  4995. 12c0: read the /proc/PID/exe file of the program that executed it.- Fi
  4996. 1300: x filename transitions for cups files.- Allow denyhosts to read
  4997. 1340: "unix".- Add file name transition for locale.conf.new.- Allow bo
  4998. 1380: inc projects to gconf config files.- sssd needs to be able to in
  4999. 13c0: crease the socket limit under certain loads.- sge_execd needs to
  5000. 1400: read /etc/passwd.- Allow denyhost to check network state.- Netw
  5001. 1440: orkManager needs to read sessions data.- Allow denyhost to check
  5002. 1480: network state.- Allow xen to search virt images directories.- A
  5003. 14c0: dd label for /dev/megaraid_sas_ioctl_node.- Add autogenerated ma
  5004. 1500: n pages.- Allow boinc project to getattr on fs.- Allow init to e
  5005. 1540: xecute initrc_state_t.- rhev-agent package was rename to ovirt-g
  5006. 1580: uest-agent.- If initrc_t creates /etc/local.conf then we need to
  5007. 15c0: make sure it is labeled correctly.- sytemd writes content to /r
  5008. 1600: un/initramfs and executes it on shutdown.- kdump_t needs to read
  5009. 1640: /etc/mtab, should be back ported to F16.- udev needs to load ke
  5010. 1680: rnel modules in early system boot.- Need to add sys_ptrace back
  5011. 16c0: in since reading any content in /proc can cause these accesses.-
  5012. 1700: Add additional systemd interfaces which are needed fro *_admin
  5013. 1740: interfaces.- Fix bind_admin() interface.- Allow firewalld to rea
  5014. 1780: d urand.- Alias java, execmem_mono to bin_t to allow third parti
  5015. 17c0: es.- Add label for kmod.- /etc/redhat-lsb contains binaries.- Ad
  5016. 1800: d boolean to allow gitosis to send mail.- Add filename transitio
  5017. 1840: n also for "event20".- Allow systemd_tmpfiles_t to delete all fi
  5018. 1880: le types.- Allow collectd to ipc_lock.- make consoletype_exec op
  5019. 18c0: tional, so we can remove consoletype policy.- remove unconfined_
  5020. 1900: permisive.patch.- Allow openvpn_t to inherit user home content a
  5021. 1940: nd tmp content.- Fix dnssec-trigger labeling.- Turn on obex poli
  5022. 1980: cy for staff_t.- Pem files should not be secret.- Add lots of ru
  5023. 19c0: les to fix AVC's when playing with containers.- Fix policy for d
  5024. 1a00: nssec.- Label ask-passwd directories correctly for systemd.- ssh
  5025. 1a40: d fixes seem to be causing unconfined domains to dyntrans to the
  5026. 1a80: mselves.- fuse file system is now being mounted in /run/user.- s
  5027. 1ac0: ystemd_logind is sending signals to processes that are dbus mess
  5028. 1b00: aging with it.- Add support for winshadow port and allow iscsid
  5029. 1b40: to connect to this port.- httpd should be allowed to bind to the
  5030. 1b80: http_port_t udp socket.- zarafa_var_lib_t can be a lnk_file.- A
  5031. 1bc0: couple of new .xsession-errors files.- Seems like user space an
  5032. 1c00: d login programs need to read logind_sessions_files.- Devicekit
  5033. 1c40: disk seems to be being launched by systemd.- Cleanup handling of
  5034. 1c80: setfiles so most of rules in te file.- Correct port number for
  5035. 1cc0: dnssec.- logcheck has the home dir set to its cache.- Add policy
  5036. 1d00: for grindengine MPI jobs.- Add new sysadm_secadm.pp module..* c
  5037. 1d40: ontains secadm definition for sysadm_t.- Move user_mail_domain a
  5038. 1d80: ccess out of the interface into the te file.- Allow httpd_t to c
  5039. 1dc0: reate httpd_var_lib_t directories as well as files.- Allow snmpd
  5040. 1e00: to connect to the ricci_modcluster stream.- Allow firewalld to
  5041. 1e40: read /etc/passwd.- Add auth_use_nsswitch for colord.- Allow smar
  5042. 1e80: td to read network state.- smartdnotify needs to read /etc/group
  5043. 1ec0: .- Allow gpg and gpg_agent to store sock_file in gpg_secret_t di
  5044. 1f00: rectory.- lxdm startup scripts should be labeled bin_t, so confi
  5045. 1f40: ned users will work.- mcstransd now creates a pid, needs back po
  5046. 1f80: rt to F16.- qpidd should be allowed to connect to the amqp port.
  5047. 1fc0: - Label devices 010-029 as usb devices.- ypserv packager says yp
  5048. 2000: serv does not use tmp_t so removing selinux policy types.- Remov
  5049. 2040: e all ptrace commands that I believe are caused by the kernel/ps
  5050. 2080: avcs.- Add initial Obex policy.- Add logging_syslogd_use_tty bo
  5051. 20c0: olean.- Add polipo_connect_all_unreserved bolean.- Allow zabbix
  5052. 2100: to connect to ftp port.- Allow systemd-logind to be able to swit
  5053. 2140: ch VTs.- Allow apache to communicate with memcached through a so
  5054. 2180: ck_file.- Fix file_context.subs_dist for now to work with pre us
  5055. 21c0: rmove.- More /usr move fixes.- Add zabbix_can_network boolean.-
  5056. 2200: Add httpd_can_connect_zabbix boolean.- Prepare file context labe
  5057. 2240: ling for usrmove functions.- Allow system cronjobs to read kerne
  5058. 2280: l network state.- Add support for selinux_avcstat munin plugin.-
  5059. 22c0: Treat hearbeat with corosync policy.- Allow corosync to read an
  5060. 2300: d write to qpidd shared mem.- mozilla_plugin is trying to run p
  5061. 2340: ulseaudio .- Fixes for new sshd patch for running priv sep domai
  5062. 2380: ns as the users context.- Turn off dontaudit rules when turning
  5063. 23c0: on allow_ypbind.- udev now reads /etc/modules.d directory.- Turn
  5064. 2400: on deny_ptrace boolean for the Rawhide run, so we can test this
  5065. 2440: out.- Cups exchanges dbus messages with init.- udisk2 needs to
  5066. 2480: send syslog messages.- certwatch needs to read /etc/passwd.- Add
  5067. 24c0: labeling for udisks2.- Allow fsadmin to communicate with the sy
  5068. 2500: stemd process.- Treat Bip with bitlbee policy. * Bip is an
  5069. 2540: IRC proxy.- Add port definition for interwise port.- Add support
  5070. 2580: for ipa_memcached socket.- systemd_jounald needs to getattr on
  5071. 25c0: all processes.- mdadmin fixes. * uses getpw.- amavisd calls
  5072. 2600: getpwnam().- denyhosts calls getpwall().- Setup labeling of /var
  5073. 2640: /rsa and /var/lib/rsa to allow login programs to write there.- b
  5074. 2680: luetooth says they do not use /tmp and want to remove the type.-
  5075. 26c0: Allow init to transition to colord.- Mongod needs to read /proc
  5076. 2700: /sys/vm/zone_reclaim_mode.- Allow postfix_smtpd_t to connect to
  5077. 2740: spamd.- Add boolean to allow ftp to connect to all ports > 1023.
  5078. 2780: - Allow sendmain to write to inherited dovecot tmp files.- setro
  5079. 27c0: ubleshoot needs to be able to execute rpm to see what version of
  5080. 2800: packages.- Merge systemd patch.- systemd-tmpfiles wants to rela
  5081. 2840: bel /sys/devices/system/cpu/online.- Allow deltacloudd dac_overr
  5082. 2880: ide, setuid, setgid caps.- Allow aisexec to execute shell.- Add
  5083. 28c0: use_nfs_home_dirs boolean for ssh-keygen.- Fixes to make rawhid
  5084. 2900: e boot in enforcing mode with latest systemd changes.- Add label
  5085. 2940: ing for /var/run/systemd/journal/syslog.- libvirt sends signals
  5086. 2980: to ifconfig.- Allow domains that read logind session files to li
  5087. 29c0: st them.- Fixed destined form libvirt-sandbox.- Allow apps that
  5088. 2a00: list sysfs to also read sympolicy links in this filesystem.- Add
  5089. 2a40: ubac_constrained rules for chrome_sandbox.- Need interface to a
  5090. 2a80: llow domains to use tmpfs_t files created by the kernel, used by
  5091. 2ac0: libra.- Allow postgresql to be executed by the caller.- Standar
  5092. 2b00: dize interfaces of daemons .- Add new labeling for mm-handler.-
  5093. 2b40: Allow all matahari domains to read network state and etc_runtime
  5094. 2b80: _t files.- New fix for seunshare, requires seunshare_domains to
  5095. 2bc0: be able to mounton /.- Allow systemctl running as logrotate_t to
  5096. 2c00: connect to private systemd socket.- Allow tmpwatch to read memi
  5097. 2c40: nfo.- Allow rpc.svcgssd to read supported_krb5_enctype.- Allow z
  5098. 2c80: arafa domains to read /dev/random and /dev/urandom.- Allow snmpd
  5099. 2cc0: to read dev_snmp6.- Allow procmail to talk with cyrus.- Add fix
  5100. 2d00: es for check_disk and check_nagios plugins.- default trans rules
  5101. 2d40: for Rawhide policy.- Make sure sound_devices controlC* are lab
  5102. 2d80: eled correctly on creation.- sssd now needs sys_admin.- Allow sn
  5103. 2dc0: mp to read all proc_type.- Allow to setup users homedir with quo
  5104. 2e00: ta.group.- Add httpd_can_connect_ldap() interface.- apcupsd_t ne
  5105. 2e40: eds to use seriel ports connected to usb devices.- Kde puts proc
  5106. 2e80: mail mail directory under ~/.local/share.- nfsd_t can trigger sy
  5107. 2ec0: s_rawio on tests that involve too many mountpoints, dontaudit fo
  5108. 2f00: r now.- Add labeling for /sbin/iscsiuio.- Add label for /var/lib
  5109. 2f40: /iscan/interpreter.- Dont audit writes to leaked file descriptor
  5110. 2f80: s or redirected output for nacl.- NetworkManager needs to write
  5111. 2fc0: to /sys/class/net/ib*/mode.- Allow abrt to request the kernel t
  5112. 3000: o load a module.- Make sure mozilla content is labeled correctly
  5113. 3040: .- Allow tgtd to read system state.- More fixes for boinc. * al
  5114. 3080: low to resolve dns name. * re-write boinc policy to use boinc_d
  5115. 30c0: omain attribute.- Allow munin services plugins to use NSCD servi
  5116. 3100: ces.- Allow mozilla_plugin_t to manage mozilla_home_t.- Allow ss
  5117. 3140: h derived domain to execute ssh-keygen in the ssh_keygen_t domai
  5118. 3180: n.- Add label for tumblerd.- Fixes for xguest package.- Fixes re
  5119. 31c0: lated to /bin, /sbin.- Allow abrt to getattr on blk files.- Add
  5120. 3200: type for rhev-agent log file.- Fix labeling for /dev/dmfm.- Don
  5121. 3240: taudit wicd leaking.- Allow systemd_logind_t to look at process
  5122. 3280: info of apps that exchange dbus messages with it.- Label /etc/lo
  5123. 32c0: cale.conf correctly.- Allow user_mail_t to read /dev/random.- Al
  5124. 3300: low postfix-smtpd to read MIMEDefang.- Add label for /var/log/su
  5125. 3340: php.log.- Allow swat_t to connect and read/write nmbd_t sock_fil
  5126. 3380: e.- Allow systemd-tmpfiles to setattr for /run/user/gdm/dconf.-
  5127. 33c0: Allow systemd-tmpfiles to change user identity in object context
  5128. 3400: s.- More fixes for rhev_agentd_t consolehelper policy.- Use fs_u
  5129. 3440: se_xattr for squashf.- Fix procs_type interface.- Dovecot has a
  5130. 3480: new fifo_file /var/run/dovecot/stats-mail.- Dovecot has a new f
  5131. 34c0: ifo_file /var/run/stats-mail.- Colord does not need to connect t
  5132. 3500: o network.- Allow system_cronjob to dbus chat with NetworkManage
  5133. 3540: r.- Puppet manages content, want to make sure it labels everythi
  5134. 3580: ng correctly.- Change port 9050 to tor_socks_port_t and then all
  5135. 35c0: ow openvpn to connect to it.- Allow all postfix domains to use t
  5136. 3600: he fifo_file.- Allow sshd_t to getattr on all file systems in or
  5137. 3640: der to generate avc on nfs_t.- Allow apmd_t to read grub.cfg.- L
  5138. 3680: et firewallgui read the selinux config.- Allow systemd-tmpfiles
  5139. 36c0: to delete content in /root that has been moved to /tmp.- Fix dev
  5140. 3700: icekit_manage_pid_files() interface.- Allow squid to check the n
  5141. 3740: etwork state.- Dontaudit colord getattr on file systems.- Allow
  5142. 3780: ping domains to read zabbix_tmp_t files.- Allow mcelog_t to crea
  5143. 37c0: te dir and file in /var/run and label it correctly.- Allow dbus
  5144. 3800: to manage fusefs.- Mount needs to read process state when mounti
  5145. 3840: ng gluster file systems.- Allow collectd-web to read collectd li
  5146. 3880: b files.- Allow daemons and system processes started by init to
  5147. 38c0: read/write the unix_stream_socket passed in from as stdin/stdout
  5148. 3900: /stderr.- Allow colord to get the attributes of tmpfs filesystem
  5149. 3940: .- Add sanlock_use_nfs and sanlock_use_samba booleans.- Add bin_
  5150. 3980: t label for /usr/lib/virtualbox/VBoxManage.- Add ssh_dontaudit_s
  5151. 39c0: earch_home_dir.- Changes to allow namespace_init_t to work.- Add
  5152. 3a00: interface to allow exec of mongod, add port definition for mong
  5153. 3a40: od port, 27017.- Label .kde/share/apps/networkmanagement/certifi
  5154. 3a80: cates/ as home_cert_t.- Allow spamd and clamd to steam connect t
  5155. 3ac0: o each other.- Add policy label for passwd.OLD.- More fixes for
  5156. 3b00: postfix and postfix maildro.- Add ftp support for mozilla plugin
  5157. 3b40: s.- Useradd now needs to manage policy since it calls libsemanag
  5158. 3b80: e.- Fix devicekit_manage_log_files() interface.- Allow colord to
  5159. 3bc0: execute ifconfig.- Allow accountsd to read /sys.- Allow mysqld-
  5160. 3c00: safe to execute shell.- Allow openct to stream connect to pcscd.
  5161. 3c40: - Add label for /var/run/nm-dns-dnsmasq\.conf.- Allow networkman
  5162. 3c80: ager to chat with virtd_t.- Pulseaudio changes.- Merge patches.-
  5163. 3cc0: Merge patches back into git repository..- Remove allow_execmem
  5164. 3d00: boolean and replace with deny_execmem boolean.- Turn back on all
  5165. 3d40: ow_execmem boolean.- Add more MCS fixes to make sandbox working.
  5166. 3d80: - Make faillog MLS trusted to make sudo_$1_t working.- Allow san
  5167. 3dc0: dbox_web_client_t to read passwd_file_t.- Add .mailrc file conte
  5168. 3e00: xt.- Remove execheap from openoffice domain.- Allow chrome_sandb
  5169. 3e40: ox_nacl_t to read cpu_info.- Allow virtd to relabel generic usb
  5170. 3e80: which is need if USB device.- Fixes for virt.if interfaces to co
  5171. 3ec0: nsider chr_file as image file type.- Remove Open Office policy.-
  5172. 3f00: Remove execmem policy.- MCS fixes.- quota fixes.- Remove transi
  5173. 3f40: tions to consoletype.- Make nvidia* to be labeled correctly.- Fi
  5174. 3f80: x abrt_manage_cache() interface.- Make filetrans rules optional
  5175. 3fc0: so base policy will build.- Dontaudit chkpwd_t access to inherit
  5176. 13:00:16.909114 <= Recv data, 16384 bytes (0x4000)
  5177. 0000: ed TTYS.- Make sure postfix content gets created with the correc
  5178. 0040: t label.- Allow gnomeclock to read cgroup.- Fixes for cloudform
  5179. 0080: policy.- Check in fixed for Chrome nacl support.- Begin removin
  5180. 00c0: g qemu_t domain, we really no longer need this domain. .- syste
  5181. 0100: md_passwd needs dac_overide to communicate with users TTY's.- Al
  5182. 0140: low svirt_lxc domains to send kill signals within their containe
  5183. 0180: r.- Remove qemu.pp again without causing a crash.- Remove qemu.p
  5184. 01c0: p, everything should use svirt_t or stay in its current domain.-
  5185. 0200: Allow policykit to talk to the systemd via dbus.- Move chrome_s
  5186. 0240: andbox_nacl_t to permissive domains.- Additional rules for chrom
  5187. 0280: e_sandbox_nacl.- Change bootstrap name to nacl.- Chrome still ne
  5188. 02c0: eds execmem.- Missing role for chrome_sandbox_bootstrap.- Add bo
  5189. 0300: olean to remove execmem and execstack from virtual machines.- Do
  5190. 0340: ntaudit xdm_t doing an access_check on etc_t directories.- Allow
  5191. 0380: named to connect to dirsrv by default.- add ldapmap1_0 as a krb
  5192. 03c0: 5_host_rcache_t file.- Google chrome developers asked me to add
  5193. 0400: bootstrap policy for nacl stuff.- Allow rhev_agentd_t to getattr
  5194. 0440: on mountpoints.- Postfix_smtpd_t needs access to milters and cl
  5195. 0480: eanup seems to read/write postfix_smtpd_t unix_stream_sockets.-
  5196. 04c0: Fixes for cloudform policies which need to connect to random por
  5197. 0500: ts.- Make sure if an admin creates modules content it creates th
  5198. 0540: em with the correct label.- Add port 8953 as a dns port used by
  5199. 0580: unbound.- Fix file name transition for alsa and confined users.-
  5200. 05c0: Turn on mock_t and thumb_t for unconfined domains.- Policy upda
  5201. 0600: te should not modify local contexts.- Remove ada policy.- Remove
  5202. 0640: tzdata policy.- Add labeling for udev.- Add cloudform policy.-
  5203. 0680: Fixes for bootloader policy.- Add policies for nova openstack.-
  5204. 06c0: Add fixes for nova-stack policy.- Allow svirt_lxc_domain to chr_
  5205. 0700: file and blk_file devices if they are in the domain.- Allow init
  5206. 0740: process to setrlimit on itself.- Take away transition rules for
  5207. 0780: users executing ssh-keygen.- Allow setroubleshoot_fixit_t to re
  5208. 07c0: ad /dev/urand.- Allow sshd to relbale tunnel sockets.- Allow fai
  5209. 0800: l2ban domtrans to shorewall in the same way as with iptables.- A
  5210. 0840: dd support for lnk files in the /var/lib/sssd directory.- Allow
  5211. 0880: system mail to connect to courier-authdaemon over an unix stream
  5212. 08c0: socket.- Add passwd_file_t for /etc/ptmptmp.- Dontaudit access
  5213. 0900: checks for all executables, gnome-shell is doing access(EXEC, X_
  5214. 0940: OK).- Make corosync to be able to relabelto cluster lib fies.- A
  5215. 0980: llow samba domains to search /var/run/nmbd.- Allow dirsrv to use
  5216. 09c0: pam.- Allow thumb to call getuid.- chrome less likely to get mm
  5217. 0a00: ap_zero bug so removing dontaudit.- gimp help-browser has built
  5218. 0a40: in javascript.- Best guess is that devices named /dev/bsr4096 sh
  5219. 0a80: ould be labeled as cpu_device_t.- Re-write glance policy.- Move
  5220. 0ac0: dontaudit sys_ptrace line from permissive.te to domain.te.- Remo
  5221. 0b00: ve policy for hal, it no longer exists.- Don't check md5 size or
  5222. 0b40: mtime on certain config files.- Remove allow_ptrace and replace
  5223. 0b80: it with deny_ptrace, which will remove all .ptrace from the sys
  5224. 0bc0: tem.- Remove 2000 dontaudit rules between confined domains on tr
  5225. 0c00: ansition.and replace with single.dontaudit domain domain:process
  5226. 0c40: { noatsecure siginh rlimitinh } ;.- Fixes for bootloader policy
  5227. 0c80: .- $1_gkeyringd_t needs to read $HOME/%USER/.local/share/keystor
  5228. 0cc0: e.- Allow nsplugin to read /usr/share/config.- Allow sa-update t
  5229. 0d00: o update rules.- Add use_fusefs_home_dirs for chroot ssh option.
  5230. 0d40: - Fixes for grub2.- Update systemd_exec_systemctl() interface.-
  5231. 0d80: Allow gpg to read the mail spool.- More fixes for sa-update runn
  5232. 0dc0: ing out of cron job.- Allow ipsec_mgmt_t to read hardware state
  5233. 0e00: information.- Allow pptp_t to connect to unreserved_port_t.- Don
  5234. 0e40: taudit getattr on initctl in /dev from chfn.- Dontaudit getattr
  5235. 0e80: on kernel_core from chfn.- Add systemd_list_unit_dirs to systemd
  5236. 0ec0: _exec_systemctl call.- Fixes for collectd policy.- CHange sysadm
  5237. 0f00: _t to create content as user_tmp_t under /tmp.- Shrink size of p
  5238. 0f40: olicy through use of attributes for userdomain and apache.- Allo
  5239. 0f80: w virsh to read xenstored pid file.- Backport corenetwork fixes
  5240. 0fc0: from upstream.- Do not audit attempts by thumb to search config_
  5241. 1000: home_t dirs (~/.config).- label ~/.cache/telepathy/logger telepa
  5242. 1040: thy_logger_cache_home_t.- allow thumb to read generic data home
  5243. 1080: files (mime.type).- Allow nmbd to manage sock file in /var/run/n
  5244. 10c0: mbd.- ricci_modservice send syslog msgs.- Stop transitioning fro
  5245. 1100: m unconfined_t to ldconfig_t, but make sure /etc/ld.so.cache is
  5246. 1140: labeled correctly.- Allow systemd_logind_t to manage /run/USER/d
  5247. 1180: conf/user.- Fix missing patch from F16.- Allow logrotate setuid
  5248. 11c0: and setgid since logrotate is supposed to do it.- Fixes for thum
  5249. 1200: b policy by grift.- Add new nfsd ports.- Added fix to allow conf
  5250. 1240: ined apps to execmod on chrome.- Add labeling for additional vds
  5251. 1280: m directories.- Allow Exim and Dovecot SASL.- Add label for /var
  5252. 12c0: /run/nmbd.- Add fixes to make virsh and xen working together.- C
  5253. 1300: olord executes ls.- /var/spool/cron is now labeled as user_cron
  5254. 1340: _spool_t.- Stop complaining about leaked file descriptors during
  5255. 1380: install.- Remove java and mono module and merge into execmem.-
  5256. 13c0: Fixes for thumb policy and passwd_file_t.- Fixes caused by the l
  5257. 1400: abeling of /etc/passwd.- Add thumb.patch to transition unconfine
  5258. 1440: d_t to thumb_t for Rawhide.- Add support for Clustered Samba com
  5259. 1480: mands.- Allow ricci_modrpm_t to send log msgs.- move permissive
  5260. 14c0: virt_qmf_t from virt.te to permissivedomains.te.- Allow ssh_t to
  5261. 1500: use kernel keyrings.- Add policy for libvirt-qmf and more fixes
  5262. 1540: for linux containers.- Initial Polipo.- Sanlock needs to run ra
  5263. 1580: nged in order to kill svirt processes.- Allow smbcontrol to stre
  5264. 15c0: am connect to ctdbd.- Add label for /etc/passwd.- Change unconfi
  5265. 1600: ned_domains to permissive for Rawhide.- Add definition for the e
  5266. 1640: phemeral_ports.- Make mta_role() active.- Allow asterisk to conn
  5267. 1680: ect to jabber client port.- Allow procmail to read utmp.- Add NI
  5268. 16c0: S support for systemd_logind_t.- Allow systemd_logind_t to manag
  5269. 1700: e /run/user/$USER/dconf dir which is labeled as config_home_t.-
  5270. 1740: Fix systemd_manage_unit_dirs() interface.- Allow ssh_t to manage
  5271. 1780: directories passed into it.- init needs to be able to create an
  5272. 17c0: d delete unit file directories.- Fix typo in apache_exec_sys_scr
  5273. 1800: ipt.- Add ability for logrotate to transition to awstat domain.-
  5274. 1840: Change screen to use screen_domain attribute and allow screen_d
  5275. 1880: omains to read all process domain state.- Add SELinux support fo
  5276. 18c0: r ssh pre-auth net process in F17.- Add logging_syslogd_can_send
  5277. 1900: mail boolean.- Add definition for ephemeral ports.- Define user_
  5278. 1940: tty_device_t as a customizable_type.- Needs to require a new ver
  5279. 1980: sion of checkpolicy.- Interface fixes.- Allow sanlock to manage
  5280. 19c0: virt lib files.- Add virt_use_sanlock booelan.- ksmtuned is tryi
  5281. 1a00: ng to resolve uids.- Make sure .gvfs is labeled user_home_t in t
  5282. 1a40: he users home directory.- Sanlock sends kill signals and needs t
  5283. 1a80: he kill capability.- Allow mockbuild to work on nfs homedirs.- F
  5284. 1ac0: ix kerberos_manage_host_rcache() interface.- Allow exim to read
  5285. 1b00: system state.- Allow systemd-tmpfiles to set the correct labels
  5286. 1b40: on /var/run, /tmp and other files.- We want any file type that i
  5287. 1b80: s created in /tmp by a process running as initrc_t to be labeled
  5288. 1bc0: initrc_tmp_t.- Allow collectd to read hardware state informati
  5289. 1c00: on.- Add loop_control_device_t.- Allow mdadm to request kernel t
  5290. 1c40: o load module.- Allow domains that start other domains via syste
  5291. 1c80: mctl to search unit dir.- systemd_tmpfilses, needs to list any f
  5292. 1cc0: ile systems mounted on /tmp.- No one can explain why radius is l
  5293. 1d00: isting the contents of /tmp, so we will dontaudit.- If I can man
  5294. 1d40: age etc_runtime files, I should be able to read the links.- Dont
  5295. 1d80: audit hostname writing to mock library chr_files.- Have gdm_t se
  5296. 1dc0: tup labeling correctly in users home dir.- Label content unde /v
  5297. 1e00: ar/run/user/NAME/dconf as config_home_t.- Allow sa-update to exe
  5298. 1e40: cute shell.- Make ssh-keygen working with fips_enabled.- Make mo
  5299. 1e80: ck work for staff_t user.- Tighten security on mock_t.- removing
  5300. 1ec0: unconfined_notrans_t no longer necessary.- Clean up handling of
  5301. 1f00: secure_mode_insmod and secure_mode_policyload.- Remove unconfin
  5302. 1f40: ed_mount_t.- Add exim_exec_t label for /usr/sbin/exim_tidydb.- C
  5303. 1f80: all init_dontaudit_rw_stream_socket() interface in mta policy.-
  5304. 1fc0: sssd need to search /var/cache/krb5rcache directory.- Allow coro
  5305. 2000: sync to relabel own tmp files.- Allow zarafa domains to send sys
  5306. 2040: tem log messages.- Allow ssh to do tunneling.- Allow initrc scri
  5307. 2080: pts to sendto init_t unix_stream_socket.- Changes to make sure d
  5308. 20c0: msmasq and virt directories are labeled correctly.- Changes need
  5309. 2100: ed to allow sysadm_t to manage systemd unit files.- init is pass
  5310. 2140: ing file descriptors to dbus and on to system daemons.- Allow su
  5311. 2180: login additional access Reported by dgrift and Jeremy Miller.- S
  5312. 21c0: teve Grubb believes that wireshark does not need this access.- F
  5313. 2200: ix /var/run/initramfs to stop restorecon from looking at.- pki n
  5314. 2240: eeds another port.- Add more labels for cluster scripts.- Allow
  5315. 2280: apps that manage cgroup_files to manage cgroup link files.- Fix
  5316. 22c0: label on nfs-utils scripts directories.- Allow gatherd to read /
  5317. 2300: dev/rand and /dev/urand.- pki needs another port.- Add more labe
  5318. 2340: ls for cluster scripts.- Fix label on nfs-utils scripts director
  5319. 2380: ies.- Fixes for cluster.- Allow gatherd to read /dev/rand and /d
  5320. 23c0: ev/urand.- abrt leaks fifo files.- Add glance policy.- Allow mda
  5321. 2400: dm setsched.- /var/run/initramfs should not be relabeled with a
  5322. 2440: restorecon run.- memcache can be setup to override sys_resource.
  5323. 2480: - Allow httpd_t to read tetex data.- Allow systemd_tmpfiles to d
  5324. 24c0: elete kernel modules left in /tmp directory..- Allow Postfix to
  5325. 2500: deliver to Dovecot LMTP socket.- Ignore bogus sys_module for lld
  5326. 2540: pad.- Allow chrony and gpsd to send dgrams, gpsd needs to write
  5327. 2580: to the real time clock.- systemd_logind_t sets the attributes on
  5328. 25c0: usb devices.- Allow hddtemp_t to read etc_t files.- Add permiss
  5329. 2600: ivedomains module.- Move all permissive domains calls to permiss
  5330. 2640: ivedomain.te.- Allow pegasis to send kill signals to other UIDs.
  5331. 2680: - Allow insmod_t to use fds leaked from devicekit.- dontaudit ge
  5332. 26c0: tattr between insmod_t and init_t unix_stream_sockets.- Change s
  5333. 2700: ysctl unit file interfaces to use systemctl.- Add support for ch
  5334. 2740: ronyd unit file.- Allow mozilla_plugin to read gnome_usr_config.
  5335. 2780: - Add policy for new gpsd.- Allow cups to create kerberos rhost
  5336. 27c0: cache files.- Add authlogin_filetrans_named_content, to unconfin
  5337. 2800: ed_t to make sure shadow and other log files get labeled correct
  5338. 2840: ly.- Make users_extra and seusers.final into config(noreplace) s
  5339. 2880: o semanage users and login does not get overwritten.- Add policy
  5340. 28c0: for sa-update being run out of cron jobs.- Add create perms to
  5341. 2900: postgresql_manage_db.- ntpd using a gps has to be able to read/w
  5342. 2940: rite generic tty_device_t.- If you disable unconfined and unconf
  5343. 2980: ineduser, rpm needs more privs to manage /dev.- fix spec file.-
  5344. 29c0: Remove qemu_domtrans_unconfined() interface.- Make passenger wor
  5345. 2a00: king together with puppet.- Add init_dontaudit_rw_stream_socket
  5346. 2a40: interface.- Fixes for wordpress.- Turn on allow_domain_fd_use bo
  5347. 2a80: olean on F16.- Allow syslog to manage all log files.- Add use_fu
  5348. 2ac0: sefs_home_dirs boolean for chrome.- Make vdagent working with co
  5349. 2b00: nfined users.- Add abrt_handle_event_t domain for ABRT event scr
  5350. 2b40: ipts.- Labeled /usr/sbin/rhnreg_ks as rpm_exec_t and added chang
  5351. 2b80: es related to this change.- Allow httpd_git_script_t to read pas
  5352. 2bc0: swd data.- Allow openvpn to set its process priority when the ni
  5353. 2c00: ce parameter is used.- livecd fixes.- spec file fixes.- fetchmai
  5354. 2c40: l can use kerberos.- ksmtuned reads in shell programs.- gnome_sy
  5355. 2c80: stemctl_t reads the process state of ntp.- dnsmasq_t asks the ke
  5356. 2cc0: rnel to load multiple kernel modules.- Add rules for domains exe
  5357. 2d00: cuting systemctl.- Bogus text within fc file.- Add cfengine poli
  5358. 2d40: cy.- Add abrt_domain attribute.- Allow corosync to manage cluste
  5359. 2d80: r lib files.- Allow corosync to connect to the system DBUS.- Add
  5360. 2dc0: sblim, uuidd policies.- Allow kernel_t dyntrasition to init_t.-
  5361. 2e00: init_t need setexec.- More fixes of rules which cause an explos
  5362. 2e40: ion in rules by Dan Walsh.- Allow rcsmcertd to perform DNS name
  5363. 2e80: resolution.- Add dirsrvadmin_unconfined_script_t domain type for
  5364. 2ec0: 389-ds admin scripts.- Allow tmux to run as screen.- New policy
  5365. 2f00: for collectd.- Allow gkeyring_t to interact with all user apps.
  5366. 2f40: - Add rules to allow firstboot to run on machines with the uncon
  5367. 2f80: fined.pp module removed.- Allow systemd_logind to send dbus mess
  5368. 2fc0: ages with users.- allow accountsd to read wtmp file.- Allow dhcp
  5369. 3000: d to get and set capabilities.- Fix oracledb_port definition.- A
  5370. 3040: llow mount to mounton the selinux file system.- Allow users to l
  5371. 3080: ist /var directories.- systemd fixes.- Add initial policy for ab
  5372. 30c0: rt_dump_oops_t.- xtables-multi wants to getattr of the proc fs.-
  5373. 3100: Smoltclient is connecting to abrt.- Dontaudit leaked file descr
  5374. 3140: iptors to postdrop.- Allow abrt_dump_oops to look at kernel sysc
  5375. 3180: tls.- Abrt_dump_oops_t reads kernel ring buffer.- Allow mysqld t
  5376. 31c0: o request the kernel to load modules.- systemd-login needs fowne
  5377. 3200: r.- Allow postfix_cleanup_t to searh maildrop.- Initial systemd_
  5378. 3240: logind policy.- Add policy for systemd_logger and additional pro
  5379. 3280: ivs for systemd_logind.- More fixes for systemd policies.- Allow
  5380. 32c0: setsched for virsh.- Systemd needs to impersonate cups, which m
  5381. 3300: eans it needs to create tcp_sockets in cups_t domain, as well as
  5382. 3340: manage spool directories.- iptables: the various /sbin/ip6?tabl
  5383. 3380: es.* are now symlinks for./sbin/xtables-multi.- A lot of users a
  5384. 33c0: re running yum -y update while in /root which is causing ldconfi
  5385. 3400: g to list the contents, adding dontaudit.- Allow colord to inter
  5386. 3440: act with the users through the tmpfs file system.- Since we chan
  5387. 3480: ged the label on deferred, we need to allow postfix_qmgr_t to be
  5388. 34c0: able to create maildrop_t files.- Add label for /var/log/mcelog
  5389. 3500: .- Allow asterisk to read /dev/random if it uses TLS.- Allow col
  5390. 3540: ord to read ini files which are labeled as bin_t.- Allow dirsrva
  5391. 3580: dmin sys_resource and setrlimit to use ulimit.- Systemd needs to
  5392. 35c0: be able to create sock_files for every label in /var/run direct
  5393. 3600: ory, cupsd being the first. .- Also lists /var and /var/spool d
  5394. 3640: irectories.- Add openl2tpd to l2tpd policy.- qpidd is reading th
  5395. 3680: e sysfs file.- Change usbmuxd_t to dontaudit attempts to read ch
  5396. 36c0: r_file.- Add mysld_safe_exec_t for libra domains to be able to s
  5397. 3700: tart private mysql domains.- Allow pppd to search /var/lock dir.
  5398. 3740: - Add rhsmcertd policy.- Update to upstream.- More fixes. * htt
  5399. 3780: p://git.fedorahosted.org/git/?p=selinux-policy.git.- Fix spec fi
  5400. 37c0: le to not report Verify errors.- Add dspam policy.- Add lldpad p
  5401. 3800: olicy.- dovecot auth wants to search statfs #713555.- Allow syst
  5402. 3840: emd passwd apps to read init fifo_file.- Allow prelink to use in
  5403. 3880: herited terminals.- Run cherokee in the httpd_t domain.- Allow m
  5404. 38c0: cs constraints on node connections.- Implement pyicqt policy.- F
  5405. 3900: ixes for zarafa policy.- Allow cobblerd to send syslog messages.
  5406. 3940: - Add policy.26 to the payload.- Remove olpc stuff.- Remove poli
  5407. 3980: cygentool.- Fixes for zabbix.- init script needs to be able to m
  5408. 39c0: anage sanlock_var_run_....- Allow sandlock and wdmd to create /v
  5409. 3a00: ar/run directories... .- mixclip.so has been compiled correctly.
  5410. 3a40: - Fix passenger policy module name.- Add mailscanner policy from
  5411. 3a80: dgrift.- Allow chrome to optionally be transitioned to.- Zabbix
  5412. 3ac0: needs these rules when starting the zabbix_server_mysql.- Imple
  5413. 3b00: ment a type for freedesktop openicc standard (~/.local/share/icc
  5414. 3b40: ).- Allow system_dbusd_t to read inherited icc_data_home_t files
  5415. 3b80: ..- Allow colord_t to read icc_data_home_t content. #706975.- La
  5416. 3bc0: bel stuff under /usr/lib/debug as if it was labeled under /.- Fi
  5417. 3c00: xes for sanlock policy.- Fixes for colord policy.- Other fixes..
  5418. 3c40: * http://git.fedorahosted.org/git/?p=selinux-policy.git;a=log.-
  5419. 3c80: Add rhev policy module to modules-targeted.conf.- Lot of fixes..
  5420. 3cc0: * http://git.fedorahosted.org/git/?p=selinux-policy.git;a=log.-
  5421. 3d00: Allow logrotate to execute systemctl.- Allow nsplugin_t to getat
  5422. 3d40: tr on gpmctl.- Fix dev_getattr_all_chr_files() interface.- Allow
  5423. 3d80: shorewall to use inherited terms.- Allow userhelper to getattr
  5424. 3dc0: all chr_file devices.- sandbox domains should be able to getattr
  5425. 3e00: and dontaudit search of sysctl_kernel_t.- Fix labeling for ABRT
  5426. 3e40: Retrace Server.- Dontaudit sys_module for ifconfig.- Make telep
  5427. 3e80: athy and gkeyringd daemon working with confined users.- colord w
  5428. 3ec0: ants to read files in users homedir.- Remote login should be cre
  5429. 3f00: ating user_tmp_t not its own tmp files.- Fix label for /usr/shar
  5430. 3f40: e/munin/plugins/munin_* plugins.- Add support for zarafa-indexer
  5431. 3f80: .- Fix boolean description.- Allow colord to getattr on /proc/sc
  5432. 3fc0: si/scsi.- Add label for /lib/upstart/init.- Colord needs to list
  5433. 13:00:16.918015 <= Recv data, 12520 bytes (0x30e8)
  5434. 0000: /mnt.- Forard port changes from F15 for telepathy.- NetworkMana
  5435. 0040: ger should be allowed to use /dev/rfkill.- Fix dontaudit message
  5436. 0080: s to say Domain to not audit.- Allow telepathy domains to read/w
  5437. 00c0: rite gnome_cache files.- Allow telepathy domains to call getpw.-
  5438. 0100: Fixes for colord and vnstatd policy.- Allow init_t getcap and s
  5439. 0140: etcap.- Allow namespace_init_t to use nsswitch.- aisexec will ex
  5440. 0180: ecute corosync.- colord tries to read files off noxattr file sys
  5441. 01c0: tems.- Allow init_t getcap and setcap.- Add support for ABRT ret
  5442. 0200: race server.- Allow user_t and staff_t access to generic scsi to
  5443. 0240: handle locally plugged in scanners.- Allow telepath_msn_t to re
  5444. 0280: ad /proc/PARENT/cmdline.- ftpd needs kill capability.- Allow tel
  5445. 02c0: epath_msn_t to connect to sip port.- keyring daemon does not wor
  5446. 0300: k on nfs homedirs.- Allow $1_sudo_t to read default SELinux cont
  5447. 0340: ext.- Add label for tgtd sock file in /var/run/.- Add apache_exe
  5448. 0380: c_rotatelogs interface.- allow all zaraha domains to signal them
  5449. 03c0: selves, server writes to /tmp.- Allow syslog to read the process
  5450. 0400: state.- Add label for /usr/lib/chromium-browser/chrome.- Remove
  5451. 0440: the telepathy transition from unconfined_t.- Dontaudit sandbox
  5452. 0480: domains trying to mounton sandbox_file_t, this is caused by fuse
  5453. 04c0: mounts.- Allow initrc_t domain to manage abrt pid files.- Add s
  5454. 0500: upport for AEOLUS project.- Virt_admin should be allowed to mana
  5455. 0540: ge images and processes.- Allow plymountd to send signals to ini
  5456. 0580: t.- Change labeling of fping6.- Add filename transitions.- Fixes
  5457. 05c0: for zarafa policy.- Add support for AEOLUS project.- Change lab
  5458. 0600: eling of fping6.- Allow plymountd to send signals to init.- Allo
  5459. 0640: w initrc_t domain to manage abrt pid files.- Virt_admin should b
  5460. 0680: e allowed to manage images and processes.- xdm_t needs getsessio
  5461. 06c0: n for switch user .- Every app that used to exec init is now exe
  5462. 0700: cing systemdctl .- Allow squid to manage krb5_host_rcache_t file
  5463. 0740: s .- Allow foghorn to connect to agentx port - Fixes for colord
  5464. 0780: policy.- Add Dan's patch to remove 64 bit variants.- Allow color
  5465. 07c0: d to use unix_dgram_socket .- Allow apps that search pids to rea
  5466. 0800: d /var/run if it is a lnk_file .- iscsid_t creates its own direc
  5467. 0840: tory .- Allow init to list var_lock_t dir .- apm needs to verify
  5468. 0880: user accounts auth_use_nsswitch.- Add labeling for systemd unit
  5469. 08c0: files.- Allow gnomeclok to enable ntpd service using systemctl
  5470. 0900: - systemd_systemctl_t domain was added.- Add label for matahari-
  5471. 0940: broker.pid file.- We want to remove untrustedmcsprocess from abi
  5472. 0980: lity to read /proc/pid.- Fixes for matahari policy.- Allow syste
  5473. 09c0: m_tmpfiles_t to delete user_home_t files in the /tmp dir.- Allow
  5474. 0a00: sshd to transition to sysadm_t if ssh_sysadm_login is turned on
  5475. 0a40: .- Fix typo.- Add /var/run/lock /var/lock definition to file_con
  5476. 0a80: texts.subs.- nslcd_t is looking for kerberos cc files.- SSH_USE_
  5477. 0ac0: STRONG_RNG is 1 which requires /dev/random.- Fix auth_rw_faillog
  5478. 0b00: definition.- Allow sysadm_t to set attributes on fixed disks.-
  5479. 0b40: allow user domains to execute lsof and look at application socke
  5480. 0b80: ts.- prelink_cron job calls telinit -u if init is rewritten.- Fi
  5481. 0bc0: xes to run qemu_t from staff_t.- Fix label for /var/run/udev to
  5482. 0c00: udev_var_run_t.- Mock needs to be able to read network state.- A
  5483. 0c40: dd file_contexts.subs to handle /run and /run/lock.- Add other f
  5484. 0c80: ixes relating to /run changes from F15 policy.- Allow $1_sudo_t
  5485. 0cc0: and $1_su_t open access to user terminals.- Allow initrc_t to us
  5486. 0d00: e generic terminals.- Make Makefile/Rules.modular run sepolgen-i
  5487. 0d40: fgen during build to check if files for bugs.-systemd is going t
  5488. 0d80: o be useing /run and /run/lock for early bootup files..- Fix som
  5489. 0dc0: e comments in rlogin.if.- Add policy for KDE backlighthelper.- s
  5490. 0e00: ssd needs to read ~/.k5login in nfs, cifs or fusefs file systems
  5491. 0e40: .- sssd wants to read .k5login file in users homedir.- setrouble
  5492. 0e80: shoot reads executables to see if they have TEXTREL.- Add /var/s
  5493. 0ec0: pool/audit support for new version of audit.- Remove kerberos_co
  5494. 0f00: nnect_524() interface calling.- Combine kerberos_master_port_t a
  5495. 0f40: nd kerberos_port_t.- systemd has setup /dev/kmsg as stderr for a
  5496. 0f80: pps it executes.- Need these access so that init can impersonate
  5497. 0fc0: sockets on unix_dgram_socket.- Remove some unconfined domains.-
  5498. 1000: Remove permissive domains.- Add policy-term.patch from Dan.- Fi
  5499. 1040: x multiple specification for boot.log.- devicekit leaks file des
  5500. 1080: criptors to setfiles_t.- Change all all_nodes to generic_node an
  5501. 10c0: d all_if to generic_if.- Should not use deprecated interface.- S
  5502. 1100: witch from using all_nodes to generic_node and from all_if to ge
  5503. 1140: neric_if.- Add support for xfce4-notifyd.- Fix file context to s
  5504. 1180: how several labels as SystemHigh.- seunshare needs to be able to
  5505. 11c0: mounton nfs/cifs/fusefs homedirs.- Add etc_runtime_t label for
  5506. 1200: /etc/securetty.- Fixes to allow xdm_t to start gkeyringd_USERTYP
  5507. 1240: E_t directly.- login.krb needs to be able to write user_tmp_t.-
  5508. 1280: dirsrv needs to bind to port 7390 for dogtag.- Fix a bug in gpg
  5509. 12c0: policy.- gpg sends audit messages.- Allow qpid to manage matahar
  5510. 1300: i files.- Initial policy for matahari.- Add dev_read_watchdog.-
  5511. 1340: Allow clamd to connect clamd port.- Add support for kcmdatetimeh
  5512. 1380: elper.- Allow shutdown to setrlimit and sys_nice.- Allow systemd
  5513. 13c0: _passwd to talk to /dev/log before udev or syslog is running.- P
  5514. 1400: urge chr_file and blk files on /tmp.- Fixes for pads.- Fixes for
  5515. 1440: piranha-pulse.- gpg_t needs to be able to encyprt anything owne
  5516. 1480: d by the user.- mozilla_plugin_tmp_t needs to be treated as user
  5517. 14c0: tmp files.- More dontaudits of writes from readahead.- Dontaudi
  5518. 1500: t readahead_t file_type:dir write, to cover up kernel bug.- syst
  5519. 1540: emd_tmpfiles needs to relabel faillog directory as well as the f
  5520. 1580: ile.- Allow hostname and consoletype to r/w inherited initrc_tmp
  5521. 15c0: _t files handline hostname >> /tmp/myhost.- Add policykit fixes
  5522. 1600: from Tim Waugh.- dontaudit sandbox domains sandbox_file_t:dir mo
  5523. 1640: unton.- Add new dontaudit rules for sysadm_dbusd_t.- Change labe
  5524. 1680: l for /var/run/faillock..* other fixes which relate with this ch
  5525. 16c0: ange.- Update to upstream.- Fixes for telepathy.- Add port defit
  5526. 1700: ion for ssdp port.- add policy for /bin/systemd-notify from Dan.
  5527. 1740: - Mount command requires users read mount_var_run_t.- colord nee
  5528. 1780: ds to read konject_uevent_socket.- User domains connect to the g
  5529. 17c0: keyring socket.- Add colord policy and allow user_t and staff_t
  5530. 1800: to dbus chat with it.- Add lvm_exec_t label for kpartx.- Dontaud
  5531. 1840: it reading the mail_spool_t link from sandbox -X.- systemd is cr
  5532. 1880: eating sockets in avahi_var_run and system_dbusd_var_run.- gpg_t
  5533. 18c0: needs to talk to gnome-keyring.- nscd wants to read /usr/tmp->/
  5534. 1900: var/tmp to generate randomziation in unixchkpwd.- enforce MCS la
  5535. 1940: beling on nodes.- Allow arpwatch to read meminfo.- Allow gnomecl
  5536. 1980: ock to send itself signals.- init relabels /dev/.udev files on b
  5537. 19c0: oot.- gkeyringd has to transition back to staff_t when it runs c
  5538. 1a00: ommands in bin_t or shell_exec_t.- nautilus checks access on /me
  5539. 1a40: dia directory before mounting usb sticks, dontaudit access_check
  5540. 1a80: on mnt_t.- dnsmasq can run as a dbus service, needs acquire ser
  5541. 1ac0: vice.- mysql_admin should be allowed to connect to mysql servic
  5542. 1b00: e.- virt creates monitor sockets in the users home dir.- Allow u
  5543. 1b40: sbhid-ups to read hardware state information.- systemd-tmpfiles
  5544. 1b80: has moved.- Allo cgroup to sys_tty_config.- For some reason prel
  5545. 1bc0: ink is attempting to read gconf settings.- Add allow_daemons_use
  5546. 1c00: _tcp_wrapper boolean.- Add label for ~/.cache/wocky to make tele
  5547. 1c40: pathy work in enforcing mode.- Add label for char devices /dev/d
  5548. 1c80: asd*.- Fix for apache_role.- Allow amavis to talk to nslcd.- all
  5549. 1cc0: ow all sandbox to read selinux poilcy config files.- Allow clust
  5550. 1d00: er domains to use the system bus and send each other dbus messag
  5551. 1d40: es.- Update to upstream.- Rebuilt for https://fedoraproject.org/
  5552. 1d80: wiki/Fedora_15_Mass_Rebuild.- Update to ref policy.- cgred needs
  5553. 1dc0: chown capability.- Add /dev/crash crash_dev_t.- systemd-readahe
  5554. 1e00: ad wants to use fanotify which means readahead_t needs sys_admin
  5555. 1e40: capability.- New labeling for postfmulti #675654.- dontaudit xd
  5556. 1e80: m_t listing noxattr file systems.- dovecot-auth needs to be able
  5557. 1ec0: to connect to mysqld via the network as well as locally.- shutd
  5558. 1f00: own is passed stdout to a xdm_log_t file.- smartd creates a fixe
  5559. 1f40: d disk device.- dovecot_etc_t contains a lnk_file that domains n
  5560. 1f80: eed to read.- mount needs to be able to read etc_runtim_t:lnk_fi
  5561. 1fc0: le since in rawhide this is a link created at boot.- syslog_t ne
  5562. 2000: eds syslog capability.- dirsrv needs to be able to create /var/l
  5563. 2040: ib/snmp.- Fix labeling for dirsrv.- Fix for dirsrv policy missin
  5564. 2080: g manage_dirs_pattern.- corosync needs to delete clvm_tmpfs_t fi
  5565. 20c0: les.- qdiskd needs to list hugetlbfs.- Move setsched to sandbox_
  5566. 2100: x_domain, so firefox can run without network access.- Allow hddt
  5567. 2140: emp to read removable devices.- Adding syslog and read_policy pe
  5568. 2180: rmissions to policy..* syslog...Allow unconfined, sysadm_t, seca
  5569. 21c0: dm_t, logadm_t..* read_policy...allow unconfined, sysadm_t, seca
  5570. 2200: dm_t, staff_t on Targeted...allow sysadm_t (optionally), secadm_
  5571. 2240: t on MLS.- mdadm application will write into /sys/.../uevent whe
  5572. 2280: never arrays are.assembled or disassembled..- Add tcsd policy.-
  5573. 22c0: ricci_modclusterd_t needs to bind to rpc ports 500-1023.- Allow
  5574. 2300: dbus to use setrlimit to increase resoueces.- Mozilla_plugin is
  5575. 2340: leaking to sandbox.- Allow confined users to connect to lircd o
  5576. 2380: ver unix domain stream socket which allow to use remote control.
  5577. 23c0: - Allow awstats to read squid logs.- seunshare needs to manage t
  5578. 2400: mp_t.- apcupsd cgi scripts have a new directory.- Fix xserver_do
  5579. 2440: ntaudit_read_xdm_pid.- Change oracle_port_t to oracledb_port_t t
  5580. 2480: o prevent conflict with satellite.- Allow dovecot_deliver_t to r
  5581. 24c0: ead/write postfix_master_t:fifo_file. ..* These fifo_file is pas
  5582. 2500: sed from postfix_master_t to postfix_local_t to dovecot_deliver_
  5583. 2540: t.- Allow readahead to manage readahead pid dirs.- Allow readahe
  5584. 2580: ad to read all mcs levels.- Allow mozilla_plugin_t to use nfs or
  5585. 25c0: samba homedirs.- Allow nagios plugin to read /proc/meminfo.- Fi
  5586. 2600: x for mozilla_plugin.- Allow samba_net_t to create /etc/keytab.-
  5587. 2640: pppd_t setting up vpns needs to run unix_chkpwd, setsched its p
  5588. 2680: rocess and write wtmp_t.- nslcd can read user credentials.- Allo
  5589. 26c0: w nsplugin to delete mozilla_plugin_tmpfs_t.- abrt tries to crea
  5590. 2700: te dir in rpm_var_lib_t.- virt relabels fifo_files.- sshd needs
  5591. 2740: to manage content in fusefs homedir.- mock manages link files in
  5592. 2780: cache dir.- nslcd needs setsched and to read /usr/tmp.- Invalid
  5593. 27c0: call in likewise policy ends up creating a bogus role.- Cannon
  5594. 2800: puts content into /var/lib/bjlib that cups needs to be able to w
  5595. 2840: rite.- Allow screen to create screen_home_t in /root.- dirsrv se
  5596. 2880: nds syslog messages.- pinentry reads stuff in .kde directory.- A
  5597. 28c0: dd labels for .kde directory in homedir.- Treat irpinit, iprupda
  5598. 2900: te, iprdump services with raid policy.- NetworkManager wants to
  5599. 2940: read consolekit_var_run_t.- Allow readahead to create /dev/.syst
  5600. 2980: emd/readahead.- Remove permissive domains.- Allow newrole to run
  5601. 29c0: namespace_init.- Add sepgsql_contexts file.- Update to upstream
  5602. 2a00: .- Add oracle ports and allow apache to connect to them if the c
  5603. 2a40: onnect_db boolean is turned on.- Add puppetmaster_use_db boolean
  5604. 2a80: .- Fixes for zarafa policy.- Fixes for gnomeclock poliy.- Fix sy
  5605. 2ac0: stemd-tmpfiles to use auth_use_nsswitch.- gnomeclock executes a
  5606. 2b00: shell.- Update for screen policy to handle pipe in homedir.- Fix
  5607. 2b40: es for polyinstatiated homedir.- Fixes for namespace policy and
  5608. 2b80: other fixes related to polyinstantiation.- Add namespace policy.
  5609. 2bc0: - Allow dovecot-deliver transition to sendmail which is needed b
  5610. 2c00: y sieve scripts.- Fixes for init, psad policy which relate with
  5611. 2c40: confined users.- Do not audit bootloader attempts to read device
  5612. 2c80: kit pid files.- Allow nagios service plugins to read /proc.- Add
  5613. 2cc0: firewalld policy.- Allow vmware_host to read samba config.- Ker
  5614. 2d00: nel wants to read /proc Fix duplicate grub def in cobbler.- Chro
  5615. 2d40: ny sends mail, executes shell, uses fifo_file and reads /proc.-
  5616. 2d80: devicekitdisk getattr all file systems.- sambd daemon writes wtm
  5617. 2dc0: p file.- libvirt transitions to dmidecode.- Add initial policy f
  5618. 2e00: or system-setup-keyboard which is now daemon.- Label /var/lock/s
  5619. 2e40: ubsys/shorewall as shorewall_lock_t.- Allow users to communicate
  5620. 2e80: with the gpg_agent_t.- Dontaudit mozilla_plugin_t using the inh
  5621. 2ec0: erited terminal.- Allow sambagui to read files in /usr.- webaliz
  5622. 2f00: er manages squid log files.- Allow unconfined domains to bind po
  5623. 2f40: rts to raw_ip_sockets.- Allow abrt to manage rpm logs when runni
  5624. 2f80: ng yum.- Need labels for /var/run/bittlebee.- Label .ssh under a
  5625. 2fc0: manda.- Remove unused genrequires for virt_domain_template.- All
  5626. 3000: ow virt_domain to use fd inherited from virtd_t.- Allow iptables
  5627. 3040: to read shorewall config.- Gnome apps list config_home_t.- mpd
  5628. 3080: creates lnk files in homedir.- apache leaks write to mail apps o
  5629. 30c0: n tmp files.- /var/stockmaniac/templates
  5630. 84 413k 84 347k 0 0 34580 0 0:00:12 0:00:10 0:00:02 0^C
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement