public inbox for git-commits@fedoraproject.org
help / color / mirror / Atom feed
* [rpms/selinux-policy] f44: * Fri Aug 14 2026 Zdenek Pytela <zpytela@redhat.com> - 44.6-1
@ 2026-08-14 20:43 Zdenek Pytela
0 siblings, 0 replies; only message in thread
From: Zdenek Pytela @ 2026-08-14 20:43 UTC (permalink / raw)
To: git-commits
A new commit has been pushed.
Repo : rpms/selinux-policy
Branch : f44
Commit : 2ae7499f4af78ea9cda7eaa6a626118c17255409
Author : Zdenek Pytela <zpytela@redhat.com>
Date : 2026-08-14T20:55:02+02:00
Stats : +19/-2 in 3 file(s)
URL : https://src.fedoraproject.org/rpms/selinux-policy/c/2ae7499f4af78ea9cda7eaa6a626118c17255409?branch=f44
Log:
* Fri Aug 14 2026 Zdenek Pytela <zpytela@redhat.com> - 44.6-1
- Update qatlib policy
- Allow rhsmcertd read the file_contexts files
- rhsmcertd: allow bootc/ostree transient package persistence detection
- Allow virtproxyd connect to systemd-homed over a unix stream socket
- Allow haveged (entropyd_t) create and use its private tmpfs files
- Remove permissive setting for sshd_auth_t and sshd_session_t
- Allow system_mail_t read procmail home content
- Add bcachefs as a SELinux capable filesystem
- Allow unconfined_service_t nnp_transition to container_runtime_t
- Allow bootupd read all passwd sources
- Allow mpd dbus chat with avahi
- Allow init_t nnp domain transition to mpd_t
- Update tuned-ppd policy
- Allow all domains to use inherited sshd-session pipes
- Dontaudit tlp_t dac_override (bsc#1272935)
---
diff --git a/changelog b/changelog
index fed2879..d34249f 100644
--- a/changelog
+++ b/changelog
@@ -1,3 +1,20 @@
+* Fri Aug 14 2026 Zdenek Pytela <zpytela@redhat.com> - 44.6-1
+- Update qatlib policy
+- Allow rhsmcertd read the file_contexts files
+- rhsmcertd: allow bootc/ostree transient package persistence detection
+- Allow virtproxyd connect to systemd-homed over a unix stream socket
+- Allow haveged (entropyd_t) create and use its private tmpfs files
+- Remove permissive setting for sshd_auth_t and sshd_session_t
+- Allow system_mail_t read procmail home content
+- Add bcachefs as a SELinux capable filesystem
+- Allow unconfined_service_t nnp_transition to container_runtime_t
+- Allow bootupd read all passwd sources
+- Allow mpd dbus chat with avahi
+- Allow init_t nnp domain transition to mpd_t
+- Update tuned-ppd policy
+- Allow all domains to use inherited sshd-session pipes
+- Dontaudit tlp_t dac_override (bsc#1272935)
+
* Fri Jul 24 2026 Zdenek Pytela <zpytela@redhat.com> - 44.5-1
- Allow wireguard read cgroup files
- Label /usr/local/share/man with man_t
diff --git a/selinux-policy.spec b/selinux-policy.spec
index 0be423d..7f50e88 100644
--- a/selinux-policy.spec
+++ b/selinux-policy.spec
@@ -19,7 +19,7 @@
%define STABLEVER 42.10
Summary: SELinux policy configuration
Name: selinux-policy
-Version: 44.5
+Version: 44.6
Release: 1%{?dist}
License: GPL-2.0-or-later
Source: %{giturl}/archive/%{commit}/%{name}-%{shortcommit}.tar.gz
diff --git a/sources b/sources
index dd6e018..b0f6053 100644
--- a/sources
+++ b/sources
@@ -1,3 +1,3 @@
SHA512 (selinux-policy-204e13c.tar.gz) = ddec55f27ad8b80d441a535b8d84f8f3174be706642579a78f5669ef8ccd3cb4855d586048a2869edd48021aa1829ac536021cc6678833e3e04a76f44cd062a0
-SHA512 (container-selinux.tgz) = f3cdb5a091856b838d6e5ad01fd56621f624753675d517b264c8182a5cf8cca9286923b8d03ddf79e028067951d604cdc6271960729468a6adc5668a1598fcc4
SHA512 (macro-expander) = 243ee49f1185b78ac47e56ca9a3f3592f8975fab1a2401c0fcc7f88217be614fe31805bacec602b728e7fcfc21dcc17d90e9a54ce87f3a0c97624d9ad885aea4
+SHA512 (container-selinux.tgz) = e605994fca5ac59125981ad59ba76a322a646a87304f69d094d701cee3a311a23863a4bdf1fd3e5a55edfbae8977460774a06e8b8c1930879b1a349d15529f96
^ permalink raw reply related [flat|nested] only message in thread
only message in thread, other threads:[~2026-08-14 20:43 UTC | newest]
Thread overview: (only message) (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2026-08-14 20:43 [rpms/selinux-policy] f44: * Fri Aug 14 2026 Zdenek Pytela <zpytela@redhat.com> - 44.6-1 Zdenek Pytela
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox