selinux-refpolicy/policy/modules/system
Chris PeBenito 2cd92db5cd systemd-nspawn again
This patch doesn't do everything that is needed to have systemd-nspawn work.
But it does everything that is needed and which I have written in a clear and
uncontroversial way.  I think it's best to get this upstream now and then
either have a separate discussion about the more difficult issues, or wait
until I devise a way of solving those problems that's not too hacky.

Who knows, maybe someone else will devise a brilliant solution to the remaining
issues after this is accepted upstream.

Also there's a tiny patch for systemd_machined_t that is required by
systemd_nspawn_t.

Description: systemd-nspawn
Author: Russell Coker <russell@coker.com.au>
Last-Update: 2017-03-29
2017-04-01 12:08:42 -04:00
..
application.fc
application.if
application.te
authlogin.fc Create / to /usr equivalence for bin, sbin, and lib, from Russell Coker. 2017-02-04 15:19:35 -05:00
authlogin.if auth: Move optional out of auth_use_pam_systemd() to callers. 2017-02-26 12:08:02 -05:00
authlogin.te authlogin: put interface properly inside optional 2017-02-28 19:55:27 -05:00
clock.fc Create / to /usr equivalence for bin, sbin, and lib, from Russell Coker. 2017-02-04 15:19:35 -05:00
clock.if
clock.te Create / to /usr equivalence for bin, sbin, and lib, from Russell Coker. 2017-02-04 15:19:35 -05:00
fstools.fc Create / to /usr equivalence for bin, sbin, and lib, from Russell Coker. 2017-02-04 15:19:35 -05:00
fstools.if
fstools.te Sort capabilities permissions from Russell Coker. 2017-02-15 18:47:33 -05:00
getty.fc getty: overlook module 2017-02-27 19:21:39 +01:00
getty.if getty: overlook module 2017-02-27 19:21:39 +01:00
getty.te Module version bump for getty patch from cgzones. 2017-03-02 20:25:04 -05:00
hostname.fc Create / to /usr equivalence for bin, sbin, and lib, from Russell Coker. 2017-02-04 15:19:35 -05:00
hostname.if
hostname.te Module version bump for hostname fix from cgzones. 2017-02-18 13:58:29 -05:00
hotplug.fc Create / to /usr equivalence for bin, sbin, and lib, from Russell Coker. 2017-02-04 15:19:35 -05:00
hotplug.if
hotplug.te Module version bumps for fixes from cgzones. 2017-03-05 10:48:42 -05:00
init.fc /var/run -> /run again 2017-03-25 12:56:03 -04:00
init.if systemd-nspawn again 2017-04-01 12:08:42 -04:00
init.te systemd-nspawn again 2017-04-01 12:08:42 -04:00
ipsec.fc Create / to /usr equivalence for bin, sbin, and lib, from Russell Coker. 2017-02-04 15:19:35 -05:00
ipsec.if
ipsec.te Module version bumps for fixes from cgzones. 2017-03-05 10:48:42 -05:00
iptables.fc Create / to /usr equivalence for bin, sbin, and lib, from Russell Coker. 2017-02-04 15:19:35 -05:00
iptables.if
iptables.te Module version bumps for fixes from cgzones. 2017-03-05 10:48:42 -05:00
libraries.fc Create / to /usr equivalence for bin, sbin, and lib, from Russell Coker. 2017-02-04 15:19:35 -05:00
libraries.if
libraries.te Create / to /usr equivalence for bin, sbin, and lib, from Russell Coker. 2017-02-04 15:19:35 -05:00
locallogin.fc Create / to /usr equivalence for bin, sbin, and lib, from Russell Coker. 2017-02-04 15:19:35 -05:00
locallogin.if
locallogin.te Module version bumps for fixes from cgzones. 2017-03-05 10:48:42 -05:00
logging.fc /var/run -> /run again 2017-03-25 12:56:03 -04:00
logging.if systemd-resolvd, sessions, and tmpfiles take2 2017-03-28 18:51:35 -04:00
logging.te systemd-resolvd, sessions, and tmpfiles take2 2017-03-28 18:51:35 -04:00
lvm.fc lvm: small adjustments 2017-03-12 10:32:02 +01:00
lvm.if lvm: small adjustments 2017-03-12 10:32:02 +01:00
lvm.te Module version bump for fixes from cgzones. 2017-03-12 16:36:49 -04:00
metadata.xml
miscfiles.fc
miscfiles.if systemd-resolvd, sessions, and tmpfiles take2 2017-03-28 18:51:35 -04:00
miscfiles.te systemd-resolvd, sessions, and tmpfiles take2 2017-03-28 18:51:35 -04:00
modutils.fc systemd-tmpfiles: refactor runtime configs 2017-02-27 19:32:20 +01:00
modutils.if modutils: adopt callers to new interfaces 2017-03-03 12:28:17 +01:00
modutils.te Module version bumps for fixes from cgzones. 2017-03-05 10:48:42 -05:00
mount.fc Create / to /usr equivalence for bin, sbin, and lib, from Russell Coker. 2017-02-04 15:19:35 -05:00
mount.if
mount.te Sort capabilities permissions from Russell Coker. 2017-02-15 18:47:33 -05:00
netlabel.fc Create / to /usr equivalence for bin, sbin, and lib, from Russell Coker. 2017-02-04 15:19:35 -05:00
netlabel.if
netlabel.te Create / to /usr equivalence for bin, sbin, and lib, from Russell Coker. 2017-02-04 15:19:35 -05:00
selinuxutil.fc selinuxutil: adjustments 2017-02-16 16:53:06 +01:00
selinuxutil.if
selinuxutil.te Module version bumps for fixes from cgzones. 2017-03-05 10:48:42 -05:00
setrans.fc Create / to /usr equivalence for bin, sbin, and lib, from Russell Coker. 2017-02-04 15:19:35 -05:00
setrans.if
setrans.te Create / to /usr equivalence for bin, sbin, and lib, from Russell Coker. 2017-02-04 15:19:35 -05:00
sysnetwork.fc /var/run -> /run again 2017-03-25 12:56:03 -04:00
sysnetwork.if
sysnetwork.te /var/run -> /run again 2017-03-25 12:56:03 -04:00
systemd.fc Merge branch 'var_run' of git://github.com/cgzones/refpolicy 2017-03-25 13:03:32 -04:00
systemd.if systemd-tmpfiles: refactor runtime configs 2017-02-27 19:32:20 +01:00
systemd.te systemd-nspawn again 2017-04-01 12:08:42 -04:00
udev.fc Create / to /usr equivalence for bin, sbin, and lib, from Russell Coker. 2017-02-04 15:19:35 -05:00
udev.if another version of systemd cgroups hostnamed and logind 2017-03-25 13:45:37 -04:00
udev.te another version of systemd cgroups hostnamed and logind 2017-03-25 13:45:37 -04:00
unconfined.fc Apache OpenOffice module (base policy part) 2016-12-06 20:08:06 -05:00
unconfined.if Systemd fixes from Russell Coker. 2017-02-23 20:03:23 -05:00
unconfined.te Module version bumps for fixes from cgzones. 2017-03-05 10:48:42 -05:00
userdomain.fc base: use new genhomedircon template for username 2016-12-27 10:34:04 -05:00
userdomain.if systemd-resolvd, sessions, and tmpfiles take2 2017-03-28 18:51:35 -04:00
userdomain.te systemd-resolvd, sessions, and tmpfiles take2 2017-03-28 18:51:35 -04:00