summaryrefslogtreecommitdiff
path: root/data/selinux
AgeCommit message (Expand)Author
2019-09-18data/selinux: allow snapd/snap to do statfs() on the cgroup mountpointMaciej Borzecki
2019-09-18data/selinux: allow snapd to issue sigkill to journalctlMaciej Borzecki
2019-08-13data/selinux: tweak formatting of gen_require() blocksMaciej Borzecki
2019-08-13data/selinux: allow mandb_t to search /var/lib/snapdMaciej Borzecki
2019-08-01data/selinux: compatibility with older policy revisionsMaciej Borzecki
2019-07-31Merge remote-tracking branch 'upstream/master' into bboozzoo/selinux-nsfs-readMaciej Borzecki
2019-07-31data/selinux: update snapd and snap-mount-ns/snap-discard-ns profiles for nsfsMaciej Borzecki
2019-07-29data/selinux: allow read on sysfsMaciej Borzecki
2019-07-29data/selinux: allow snap-confine to read entries on nsfsMaciej Borzecki
2019-07-15selinux: add rules for bind mounting /lib/firmware/Michael Vogt
2019-07-02Merge branch 'master' of github.com:snapcore/snapd into fix/base-migration-v2Zygmunt Krynicki
2019-06-25data/selinux: allow snap-confine to read symlinks on tmpfs_tMaciej Borzecki
2019-06-24data/selinux: allow snapd to cleanup socket files under $XDG_RUNTIME_DIRMaciej Borzecki
2019-06-10data/selinux: bump SELinux policy module versionMaciej Borzecki
2019-06-07data/selinux: allow running hooks and services from classic snapsMaciej Borzecki
2019-06-04data/selinux: permit init_t to remount snappy_snap_t (#6946)Maciej Borzecki
2019-05-21data/selinux: allow snap-confine to do search on snappy_var_t directoriesMaciej Borzecki
2019-04-26data/selinux: allow snap-confine to mount on top of bin_tMaciej Borzecki
2019-04-26data/selinux: auto transition /var/snap to snappy_var_tMaciej Borzecki
2019-04-18data/selinux: allow runuser keyring access, allow searching devptsMaciej Borzecki
2019-04-16data/selinux: remove unnecessary semicolonsMaciej Borzecki
2019-04-16data/selinux: allow snapd to execute runuserMaciej Borzecki
2019-04-11data/selinux: account for improved cwd handling in snap-confineMaciej Borzecki
2019-04-02data/selinux: final tweak to the policyMaciej Borzecki
2019-04-02data/selinux: more policy tweaksMaciej Borzecki
2019-04-02data/selinux: update the policyMaciej Borzecki
2019-03-28data/selinux: tune SELinux policyMaciej Borzecki
2019-03-28data/selinux: allow sys_admin for snap-confineMaciej Borzecki
2018-12-18data/selinux: update policyMaciej Borzecki
2018-12-13Merge remote-tracking branch 'origin/master' into bboozzoo/selinux-policy-ref...Maciej Borzecki
2018-12-12data/selinux: fix syntax error in definition of snappy_admin interfaceMaciej Borzecki
2018-12-10data/selinux: improve compatibiliy with older versions of core policyMaciej Borzecki
2018-12-06data/selinux: add transitions for unconfined_tMaciej Borzecki
2018-12-06data/selinux: overhaul SELinux targeted policyMaciej Borzecki
2018-06-24Update SELinux policyKevin Anderson
2018-06-10Update SELinux PolicyKevin Anderson
2018-04-08data/selinux: Give snapd access to more aspects of the systemNeal Gompa
2017-12-18data/selinux: add policykit_dbus_chat()Maciej Borzecki
2017-12-18data/selinux: bump policy version to 0.0.13Maciej Borzecki
2017-12-15data/selinux: allow messages from policykitMaciej Borzecki
2017-03-24data/selinux: Add context definition for snapctlNeal Gompa
2017-02-23data/selinux: merge SELinux policy module (#2878)Neal Gompa (ニール・ゴンパ)