5c6f5b2bdd- bsc#1208492 - do not store empty values in CFA login.defs empty value to avoid crash when parsing according to login.defs lens - 4.5.6
YaST Team Bot
2023-02-23 10:34:55 +00:00
41bfe4f2ef- AutoYaST: export security policy settings (related to jsc#SLE-24764). - Always write the ssg-apply configuration if a security policy is enabled, even if the action is 'none' (related to jsc#SLE-24764). - 4.5.5
YaST Team Bot
2023-01-12 11:31:43 +00:00
145ef18baa- Add support for DISA STIG security policy validation (jsc#SLE-24764). - Disable the ssg-apply service if the selected SCAP action is "do nothing" (related to jsc#SLE-24764). - 4.5.3
YaST Team Bot
2022-11-16 09:04:14 +00:00
1b10523eb8Updated to git ref 362eec8
YaST Team Bot
2022-11-04 14:33:37 +00:00
609c40487a- Fix hash vs keyword arguments in RSpec expectations (bsc#1204871) - 4.5.2
YaST Team Bot
2022-11-04 10:27:25 +00:00
ad3811e6c8- Always check for the package in the underlying system when trying to detect if running on systemd (bsc#1196963). - 4.4.13
YaST Team Bot
2022-03-11 15:44:05 +00:00
7b84d971ee- Stop using 'lsm' kernel boot parameter even for the "None" Major Linux Security Module (bsc#1194332, bsc#1196274). - 4.4.12
YaST Team Bot
2022-02-22 09:00:50 +00:00
c01ecbb3ceRelated to jsc#SLE-22069: - AutoYaST LSM: only allow to select the desired LSM and the SELinux mode. - 4.4.10
YaST Team Bot
2022-01-26 23:13:07 +00:00
5da2ecb24d- Use Package module instead of PackageSystem (bsc#1194886). - 4.4.9
YaST Team Bot
2022-01-26 07:13:43 +00:00
38da14f0ff- Related to jsc#SLE-22069: - Fix import of 'none' and 'apparmor' options from the profile when declared - 4.4.8
YaST Team Bot
2022-01-24 10:05:11 +00:00
61a89adc1dUpdated to git ref c870c67
YaST Team Bot
2022-01-13 15:43:24 +00:00
fda3ed37c9Updated to git ref 97dd177
YaST Team Bot
2022-01-12 16:05:36 +00:00
5b2c5b639eRelated to jsc#SLE-22069: - Autoyast LSM section: added "none" section in order to mark it as not selectable during the installation. - 4.4.7
YaST Team Bot
2022-01-11 08:46:35 +00:00
fd2c95b65b- Do not use the 'lsm' kernel boot parameter by now as it could need other modules to be pecified like the integrity one (bsc#1194332). - 4.4.5
YaST Team Bot
2022-01-10 09:48:55 +00:00
1a3e1d0c9f- Related to jsc#SLE-22069: - Autoyast LSM section: added "selectable" option to the section - Do not propose a default LSM configuration when it is declared as not configurable in the control file or AutoYaST - 4.4.4
YaST Team Bot
2022-01-05 06:45:55 +00:00
2ce7d82bd9- Added back the selinux boot parameter when selinux is selected and not disabled in order to switch on SELinux (jsc#SLE-22069) - 4.4.3
YaST Team Bot
2021-12-29 15:01:04 +00:00
936ee4d330- Add support for selecting and configuring the desired Linux Security Module (jsc#SLE-22069) - 4.4.2
YaST Team Bot
2021-12-27 10:22:23 +00:00
3fec1b5213Updated to git ref 4633b08
YaST Team Bot
2021-11-03 18:04:19 +00:00
5076eba9afUpdated to git ref 6da6785
YaST Team Bot
2021-10-01 12:41:50 +00:00
42ce49589f- Add Security#SafeRead to allow detecting read errors when calling it from perl modules (related to bsc#1177183).
YaST Team Bot
2021-07-15 14:27:16 +00:00
77edeb8515- Add Security#SafeRead to allow to detect read errors when calling it from perl modules (releated to bsc#1177183). - 4.4.1
YaST Team Bot
2021-07-15 11:02:48 +00:00
02315c00af- Make SELinux not configurable when running on WSL (bsc#1182940) - 4.3.15
YaST Team Bot
2021-03-04 15:08:23 +00:00
c4367d0703Accepting request 876431 from YaST:Head
Richard Brown
2021-03-03 17:33:19 +00:00
0deaff0edf- Ensure defined SELinux patterns are set (bsc#1182543). - 4.3.14
YaST Team Bot
2021-03-03 09:25:34 +00:00
472771ae7f- Do not write bootloader in insts-sys (bsc#1182894). - 4.3.13
YaST Team Bot
2021-03-02 16:40:40 +00:00
ba05731856- Change the SELinux resolvable unique id used in auto-installation to be consistent with the one used by normal installation (related to jsc#SLE-17342). - 4.3.12
YaST Team Bot
2021-03-02 13:33:21 +00:00
79cb4fb7ccAccepting request 875967 from YaST:Head
Richard Brown
2021-03-01 11:48:57 +00:00
a05d006430- Move security_finish client to yast2-installation (bsc#1182821) - 4.3.11
YaST Team Bot
2021-03-01 11:36:46 +00:00
7272b56ef4- Move SELinux .autorelabel file from / to /etc/selinux if root filesystem will be mounted as read only (jsc#SLE-17307). - 4.3.10
YaST Team Bot
2021-02-23 23:14:27 +00:00
1f94707ab2Tue Feb 16 13:36:34 UTC 2021 - David Diaz <dgonzalez@suse.com>
YaST Team Bot
2021-02-18 15:01:06 +00:00
e04bcc8ad2- Adapted unit test to recent changes in Yast::Report (related to bsc#1179893). - 4.3.8
YaST Team Bot
2021-02-15 14:52:56 +00:00
f3d8d8cca1Updated to git ref af7b471
YaST Team Bot
2021-01-19 22:22:09 +00:00
f63a9e5248- AY-Import: Translate <enable_sysrq> setting to <kernel.sysrq> with the correct value format (bsc#1177720). - 4.3.4
YaST Team Bot
2020-10-28 12:23:08 +00:00
7d3b29bb71- Fixed randomly failing unit tests, do not query the installed PAM modules in the testing system (related to bsc#1171318) - 4.3.3
YaST Team Bot
2020-08-13 11:14:04 +00:00
21d617220d- AutoYaST: Added supplements: autoyast(security) into the spec file in order to install this packages if the section has been defined in the AY configuration file (bsc#1146494). - 4.3.2
YaST Team Bot
2020-08-12 10:22:42 +00:00
ddabcd70da- Use pam_pwquality instead of pam_cracklib depending on availability (bsc#1171318) - Fix setting dictpath for pam_pwquality (bsc#1174619) - 4.3.1
YaST Team Bot
2020-07-29 09:07:15 +00:00
775360ae15- Apply sysctl changes to the running system when the YaST sysctl configuration file is modified (bsc#1167234) - 4.2.12
YaST Team Bot
2020-04-02 14:39:48 +00:00