public inbox for git-commits@fedoraproject.org
help / color / mirror / Atom feed
* [rpms/selinux-policy] rawhide: * Fri Jul 17 2026 Zdenek Pytela <zpytela@redhat.com>
@ 2026-07-17 18:50 Zdenek Pytela
  0 siblings, 0 replies; only message in thread
From: Zdenek Pytela @ 2026-07-17 18:50 UTC (permalink / raw)
  To: git-commits

            A new commit has been pushed.

            Repo   : rpms/selinux-policy
            Branch : rawhide
            Commit : c79fcf42b0f104daccf1732671c57b923b82aeeb
            Author : Zdenek Pytela <zpytela@redhat.com>
            Date   : 2026-07-17T18:09:18+02:00
            Stats  : +22/-8 in 3 file(s)
            URL    : https://src.fedoraproject.org/rpms/selinux-policy/c/c79fcf42b0f104daccf1732671c57b923b82aeeb?branch=rawhide

            Log:
            * Fri Jul 17 2026 Zdenek Pytela <zpytela@redhat.com>

- Allow init_t nnp domain transition to postgresql_t
- Move bootupd systemd interface to 2 optional blocks
- Allow net_admin to the nfsd_t domain
- Allow kernel write to unconfined and sysadm users' keys
- Allow staff user ioctl cockpit-session stream sockets
- Allow the staff user mount on tmpfs directories
- Allow staff user the dac_override capability in the user namespace
- Allow aide get attributes of all filesystems
- Make insights_client_t accessible from the system cronjob
- Support systemtap on a UEFI+SecureBoot system
- Allow systemd-coredump signull spc container
- Allow dhcpcd hook scripts read generic files in /proc

---
diff --git a/changelog b/changelog
index f62b68a..2774361 100644
--- a/changelog
+++ b/changelog
@@ -1,3 +1,20 @@
+* Fri Jul 17 2026 Zdenek Pytela <zpytela@redhat.com>
+- Allow init_t nnp domain transition to postgresql_t
+- Move bootupd systemd interface to 2 optional blocks
+- Allow net_admin to the nfsd_t domain
+- Allow kernel write to unconfined and sysadm users' keys
+- Allow staff user ioctl cockpit-session stream sockets
+- Allow the staff user mount on tmpfs directories
+- Allow staff user the dac_override capability in the user namespace
+- Allow aide get attributes of all filesystems
+- Make insights_client_t accessible from the system cronjob
+- Support systemtap on a UEFI+SecureBoot system
+- Allow systemd-coredump signull spc container
+- Allow dhcpcd hook scripts read generic files in /proc
+
+* Fri Jul 17 2026 Fedora Release Engineering <releng@fedoraproject.org>
+- Rebuilt for https://fedoraproject.org/wiki/Fedora_45_Mass_Rebuild
+
 * Tue Jun 30 2026 Zdenek Pytela <zpytela@redhat.com> - 45.8-1
 - Include key_socket in socket_class_set
 - Remove 14 permissive domains

diff --git a/selinux-policy.spec b/selinux-policy.spec
index 2ba25a7..8b94fbf 100644
--- a/selinux-policy.spec
+++ b/selinux-policy.spec
@@ -5,7 +5,7 @@
 
 # github repo with selinux-policy sources
 %global giturl https://github.com/fedora-selinux/selinux-policy
-%global commit 3cf2aa66a844ba5e87fb2a8f04be08c62cf5538a
+%global commit efc77f3bce1776a959735a2955e4d7f8cabc3b83
 %global shortcommit %(c=%{commit}; echo ${c:0:7})
 
 %define distro redhat
@@ -19,8 +19,8 @@
 %define STABLEVER 42.10
 Summary: SELinux policy configuration
 Name: selinux-policy
-Version: 45.8
-Release: 2%{?dist}
+Version: 45.9
+Release: 1%{?dist}
 License: GPL-2.0-or-later
 Source: %{giturl}/archive/%{commit}/%{name}-%{shortcommit}.tar.gz
 Source1: Makefile.devel
@@ -794,7 +794,4 @@ exit 0
 %endif
 
 %changelog
-* Fri Jul 17 2026 Fedora Release Engineering <releng@fedoraproject.org>
-- Rebuilt for https://fedoraproject.org/wiki/Fedora_45_Mass_Rebuild
-
 %add_changelog %SOURCE6

diff --git a/sources b/sources
index 33ebc70..f3d4512 100644
--- a/sources
+++ b/sources
@@ -1,3 +1,3 @@
-SHA512 (selinux-policy-3cf2aa6.tar.gz) = 5670fdbdfcd6a0cfef2f5c39e9c365c46a74533b1d3c50d2259633a9be79762a13e35d7ec7ff5989bb2bcdad15bc94a8f6f364963c8923e6a81cbb9214dddb85
+SHA512 (selinux-policy-efc77f3.tar.gz) = a98c0ee4dd0b479318d0ba07c9927a685cbcfee1270636aa91b59035b200c88152e7eb18c967b83be98a416f5a0005b2da97791d959b371af29e249a192e20e3
+SHA512 (container-selinux.tgz) = 5cb4357e04444726ab2e1c33e7e73982521fdfd5885f49ca520d32f7d579df7cb758afe5824061651630410187368b39e02c14971f324ac948700fc53f76e623
 SHA512 (macro-expander) = 243ee49f1185b78ac47e56ca9a3f3592f8975fab1a2401c0fcc7f88217be614fe31805bacec602b728e7fcfc21dcc17d90e9a54ce87f3a0c97624d9ad885aea4
-SHA512 (container-selinux.tgz) = 9e5b229fa87c2cb106bc87095ee286b49fa956baf3ff5b6296baaeb9e98ddaa2d0c65a68dc79b305964dcd580f885a76fdeb24aa0c2542fafa262753be9129b1

^ permalink raw reply related	[flat|nested] only message in thread

only message in thread, other threads:[~2026-07-17 18:50 UTC | newest]

Thread overview: (only message) (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2026-07-17 18:50 [rpms/selinux-policy] rawhide: * Fri Jul 17 2026 Zdenek Pytela <zpytela@redhat.com> Zdenek Pytela

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox