| selinux-policy-3.7.19-307.el6_9.3.noarch
              [893 KiB] | Changelog
              by Lukas Vrabec (2017-12-06): - Allow sysadm_t to run puppet_exec_t binaries as puppet_t
Resolves: rhbz#1522765 | 
            | selinux-policy-3.7.19-307.el6.noarch
              [893 KiB] | Changelog
              by Lukas Vrabec (2016-12-14): - Allow glusterd_t send signals to userdomain. Label new glusterd binaries as glusterd_exec_t
Resolves: rhbz#1404152
- Label /usr/bin/puppet* binaries as puppet_exec_t
Resolves: rhbz#1386181 | 
            | selinux-policy-3.7.19-292.el6_8.3.noarch
              [888 KiB] | Changelog
              by Lukas Vrabec (2017-01-04): - Allow glusterd_t send signals to userdomain. Label new glusterd binaries as glusterd_exec_t
Resolves: rhbz#1409482 | 
            | selinux-policy-3.7.19-279.el6_7.9.noarch
              [881 KiB] | Changelog
              by Lukas Vrabec (2016-04-12): - Allow smbcontrol to create a socket in /var/samba which uses for a communication with smbd, nmbd and winbind.
Related: #1322688 | 
            | selinux-policy-3.7.19-279.el6_7.8.noarch
              [881 KiB] | Changelog
              by Miroslav Grepl (2015-12-07): - Allow ipsec_mgmt_t to access netlink route socket and set attributes for /var/run/pluto directories.
Resolves:#1289019 | 
            | selinux-policy-3.7.19-279.el6_7.7.noarch
              [881 KiB] | Changelog
              by Miroslav Grepl (2015-09-16): - Backport ipsec-mgmt fixes to have libreswan working correctly on RHEL-6.7.
Resolves:#1272437 | 
            | selinux-policy-3.7.19-279.el6_7.4.noarch
              [880 KiB] | Changelog
              by Miroslav Grepl (2015-08-04): - Allow nsswitch domain to search samba pid dirs to allow to connect to nmbd_t
Resolves:#1248520 | 
            | selinux-policy-3.7.19-279.el6.noarch
              [879 KiB] | Changelog
              by Miroslav Grepl (2015-06-23): - Allow logrotate get attributes of all unallocated tty device nodes.
- Add logging_syslogd_run_nagios_plugins boolean for rsyslog to allow transition to nagios unconfined plugins.
- Allow glusterd to connect to init.
Resolves:#1230371
- Allow gluster do dbus chat with domain running as initrc_t. | 
            | selinux-policy-3.7.19-260.el6_6.3.noarch
              [862 KiB] | Changelog
              by Miroslav Grepl (2015-04-29): - Allow passenger to accept connection.
- Update passenger rules from RHEL7.
Resolves:#1211706
- Allow mysqld_t to use pam
- Allow mysqld_t to send audit messages
Resolves:#1214023
- Back port labeling for /etc/my.cnf.d dir.
Resolves:#1212976
- Add labeling for mariadb log/pid files/dirs.
Resolves:#1212846
- Add support for mogos service.
Resolves:#1212972 | 
            | selinux-policy-3.7.19-231.el6_5.1.noarch
              [823 KiB] | Changelog
              by Miroslav Grepl (2014-03-19): - Allow snmpd to getattr on removeable and fixed disks
Resolves:#1078275 | 
            | selinux-policy-3.7.19-231.el6.noarch
              [823 KiB] | Changelog
              by Miroslav Grepl (2013-10-29): - Add named_cache_t label for /var/lib/unbound
- Fix puppet_domtrans_master() interface to make passenger working correctly if it wants to read puppet config files
- Allow anitvirus domains to manage own log dirs | 
            | selinux-policy-3.7.19-195.el6_4.18.noarch
              [1.8 MiB] | Changelog
              by Miroslav Grepl (2013-10-31): - Allow all daemons to manage cluster lib files if daemons_enable_cluster_mode boolean is enabled
Resolves:#985442 | 
            | selinux-policy-3.7.19-195.el6_4.13.noarch
              [1.8 MiB] | Changelog
              by Miroslav Grepl (2013-10-04): - Remove transition from virtd_t to qemu_t to stay in virtd_t if selinux_driver is None in qemu.conf
Resolves:#1015117
- Allow virt_domain to read virt_var_run_t symlinks
Resolves:#1015068 | 
            | selinux-policy-3.7.19-195.el6_4.12.noarch
              [1.8 MiB] | Changelog
              by Miroslav Grepl (2013-06-24): - Back port openvswitch policy
Resolves:#976000 | 
            | selinux-policy-3.7.19-195.el6_4.10.noarch
              [1.8 MiB] | Changelog
              by Miroslav Grepl (2013-06-06): - Remove all transitions for quantum
Resolves:#969043 | 
            | selinux-policy-3.7.19-195.el6_4.6.noarch
              [1.8 MiB] | Changelog
              by Miroslav Grepl (2013-05-27): - Allow myslqd-safe to execute shell_exec_t
Resolves:#966997
- Allow openshift-cron to read openshift link files in /var/lib | 
            | selinux-policy-3.7.19-195.el6_4.5.noarch
              [1.7 MiB] | Changelog
              by Miroslav Grepl (2013-05-09): - Allow dirsrv-admin server to be restarted from console
Resolves:#955703 | 
            | selinux-policy-3.7.19-195.el6_4.3.noarch
              [1.7 MiB] | Changelog
              by Miroslav Grepl (2013-03-06): - Backport openshfit fixes
Resolves:#917966 | 
            | selinux-policy-3.7.19-195.el6_4.1.noarch
              [1.7 MiB] | Changelog
              by Miroslav Grepl (2013-02-20): - Additional fix for tuned
- Backport openshift changes
Resolves:#912392 | 
            | selinux-policy-3.7.19-195.el6.noarch
              [1.7 MiB] | Changelog
              by Miroslav Grepl (2013-01-22): - Make matahari domains as unconfined
- Allow nscd to connect to nmbd
Resolves:#901565
- Allow setcap/getcap for syslogd | 
            | selinux-policy-3.7.19-155.el6_3.14.noarch
              [1.3 MiB] | Changelog
              by Miroslav Grepl (2012-12-19): - Apache is sending sinal to openshift_initrc_t now
- Dontaudit attempts by openshift to read apache logs
- Change oddjob to transition to a ranged openshift_initr_exec_t when run from oddjob
- Allow quota to manage openshift_var_lib_t directories
Resolves:#888381 | 
            | selinux-policy-3.7.19-155.el6_3.13.noarch
              [1.3 MiB] | Changelog
              by Miroslav Grepl (2012-12-14): - Allow consolehelper-gtk to connect to xserver port
- Make rhev_agentd_consolehelper_t also as permissive domain
- Allow rhev-agentd to connect to xserver
Resolves:#886210 | 
            | selinux-policy-3.7.19-155.el6_3.8.noarch
              [1.3 MiB] | Changelog
              by Miroslav Grepl (2012-11-15): - Fix passenger labeling
Resolves:#876075 | 
            | selinux-policy-3.7.19-155.el6_3.6.noarch
              [1.3 MiB] | Changelog
              by Miroslav Grepl (2012-10-18): - Allow virt domains to read/write inherited files on NFS/CIFS filesystems
Resolves:#867395 | 
            | selinux-policy-3.7.19-155.el6_3.4.noarch
              [1.3 MiB] | Changelog
              by Miroslav Grepl (2012-09-03): - Make condor_startd_ssh domain as unconfined
- Allow condor_startd_ssh to connect to kerberos_master port
Resolves:#852456 | 
            | selinux-policy-3.7.19-155.el6_3.noarch
              [1.3 MiB] | Changelog
              by Miroslav Grepl (2012-06-18): - Allow setroubleshootd to execute rpm
Resolves:#833053
- Add labeling for /usr/lib/flash-plugin/libflashplayer.so | 
            | selinux-policy-3.7.19-126.el6_2.10.noarch
              [772 KiB] | Changelog
              by Miroslav Grepl (2012-02-27): - Add MRG patch
Resolves:#796585 | 
            | selinux-policy-3.7.19-126.el6_2.9.noarch
              [771 KiB] | Changelog
              by Miroslav Grepl (2012-02-23): - More fixes for FIPS
Resolves:#796423 | 
            | selinux-policy-3.7.19-126.el6_2.6.noarch
              [771 KiB] | Changelog
              by Miroslav Grepl (2012-01-31): - qpidd needs to create tmpfs
- qpidd needs to read sysfs_t
Resolves:#786088 | 
            | selinux-policy-3.7.19-126.el6_2.4.noarch
              [771 KiB] | Changelog
              by Miroslav Grepl (2011-12-08): - Allow rhev_agentd_consolehelper to dbus chat with session bus
Resolves:#761065 | 
            | selinux-policy-3.7.19-126.el6_2.3.noarch
              [771 KiB] | Changelog
              by Miroslav Grepl (2011-11-23): - Update config.tgz to make cronjob working also for user_t
Resolves:#754112 |