Index index by Group index by Distribution index by Vendor index by creation date index by Name Mirrors Help Search

selinux-policy-sandbox-44.6-1.fc44 RPM for noarch

From Fedora 44 testing updates for ppc64le / Packages / s

Name: selinux-policy-sandbox Distribution: Fedora Project
Version: 44.6 Vendor: Fedora Project
Release: 1.fc44 Build date: Fri Aug 14 22:48:15 2026
Group: Unspecified Build host: buildhw-x86-03.rdu3.fedoraproject.org
Size: 87613 Source RPM: selinux-policy-44.6-1.fc44.src.rpm
Packager: Fedora Project
Url: https://github.com/fedora-selinux/selinux-policy
Summary: SELinux sandbox policy
SELinux sandbox policy for use with the sandbox utility.

Provides

Requires

License

GPL-2.0-or-later

Changelog

* Fri Aug 14 2026 Zdenek Pytela <zpytela@redhat.com> - 44.6-1
  - Update qatlib policy
  - Allow rhsmcertd read the file_contexts files
  - rhsmcertd: allow bootc/ostree transient package persistence detection
  - Allow virtproxyd connect to systemd-homed over a unix stream socket
  - Allow haveged (entropyd_t)  create and use its private tmpfs files
  - Remove permissive setting for sshd_auth_t and sshd_session_t
  - Allow system_mail_t read procmail home content
  - Add bcachefs as a SELinux capable filesystem
  - Allow unconfined_service_t nnp_transition to container_runtime_t
  - Allow bootupd read all passwd sources
  - Allow mpd dbus chat with avahi
  - Allow init_t nnp domain transition to mpd_t
  - Update tuned-ppd policy
  - Allow all domains to use inherited sshd-session pipes
  - Dontaudit tlp_t dac_override (bsc#1272935)
* Fri Jul 24 2026 Zdenek Pytela <zpytela@redhat.com> - 44.5-1
  - Allow wireguard read cgroup files
  - Label /usr/local/share/man with man_t
  - Allow pcscd get attributes of a pty filesystem
  - Allow pcscd_t to search cgroup
* Fri Jul 03 2026 Zdenek Pytela <zpytela@redhat.com> - 44.4-1
  - Allow systemd-coredump signull spc container
  - Allow systemd-logind the sys_ptrace capability in the user namespace
  - Allow systemd-sleep the perfmon capability
  - Allow journald create and use netlink_tcpdiag_socket
  - Allow gpg_pinentry_t to write session dbus socket files
  - Allow aide connect to the GDM userdb provider socket
  - Allow nut/upsmon read nut_conf_t symlinks
  - Allow thumb_t mount proc filesystem
  - Update bootupd policy for running lsblk
* Fri Jun 12 2026 Zdenek Pytela <zpytela@redhat.com> - 44.3-1
  - Allow staff user mounton /var/lib dirs
  - Allow systemd-coredump signull container runtime
  - Allow blueman get the attributes of a tmpfs filesystem
  - Dontaudit virt_driver_domain execmem
* Fri Jun 05 2026 Zdenek Pytela <zpytela@redhat.com> - 44.2-3
  - Exclude linuxptp.if, nbdkit.if, passt.if from interfaces list
  - Replace "\_" (backslash underscore) with "_" (just underscore)
* Wed Apr 08 2026 Vit Mojzis <vmojzis@redhat.com> - 44.2-2
  - Advertise ownership of DPS-related file paths
  - Remove trigger{in|preun} triggers for binsbin and varrun
  - Rebuild policy before running {binsbin|varrun}-convert.sh
  - Use docdir for documentation data directory
  - Move the awk post-requires to the minimum subpackage
  - Fix disabling modules in "%post minimum"

Files

/usr/share/selinux/packages/sandbox.pp


Generated by rpm2html 1.8.1

Fabrice Bellet, Sun Aug 16 01:26:54 2026