forked from pool/selinux-policy
1fd70ac29b
- Update to version 20200219 Refreshed fix_hadoop.patch Updated * fix_dbus.patch * fix_hadoop.patch * fix_nscd.patch * fix_xserver.patch Renamed postfix_paths.patch to fix_postfix.patch Added * fix_init.patch * fix_locallogin.patch * fix_policykit.patch * fix_iptables.patch * fix_irqbalance.patch * fix_ntp.patch * fix_fwupd.patch * fix_firewalld.patch * fix_logrotate.patch * fix_selinuxutil.patch * fix_corecommand.patch * fix_snapper.patch * fix_systemd.patch * fix_unconfined.patch * fix_unconfineduser.patch * fix_chronyd.patch * fix_networkmanager.patch * xdm_entrypoint_pam.patch - Removed modules minimum_temp_fixes and targeted_temp_fixes from the corresponding policies - Reduced default module list of minimum policy by removing OBS-URL: https://build.opensuse.org/request/show/781805 OBS-URL: https://build.opensuse.org/package/show/security:SELinux/selinux-policy?expand=0&rev=74
24 lines
697 B
Plaintext
24 lines
697 B
Plaintext
gssd_read_tmp = true
|
|
httpd_builtin_scripting = true
|
|
httpd_enable_cgi = true
|
|
kerberos_enabled = true
|
|
mount_anyfile = true
|
|
nfs_export_all_ro = true
|
|
nfs_export_all_rw = true
|
|
nscd_use_shm = true
|
|
openvpn_enable_homedirs = true
|
|
postfix_local_write_mail_spool= true
|
|
pppd_can_insmod = false
|
|
privoxy_connect_any = true
|
|
selinuxuser_direct_dri_enabled = true
|
|
selinuxuser_rw_noexattrfile = true
|
|
selinuxuser_ping = true
|
|
squid_connect_any = true
|
|
telepathy_tcp_connect_generic_network_ports=true
|
|
unconfined_chrome_sandbox_transition=true
|
|
unconfined_mozilla_plugin_transition=true
|
|
xguest_exec_content = true
|
|
mozilla_plugin_can_network_connect = true
|
|
# Allow all domains to mmap files
|
|
domain_can_mmap_files = true
|