committing changes in /etc made by "-bash"
Package changes:
This commit is contained in:
@@ -42,14 +42,16 @@ module-store = direct
|
||||
expand-check=0
|
||||
|
||||
# usepasswd check tells semanage to scan all pass word records for home directories
|
||||
# and setup the labeling correctly. If this is turned off, SELinux will label /home
|
||||
# correctly only. You will need to use semanage fcontext command.
|
||||
# and setup the labeling correctly. If this is turned off, SELinux will label only /home
|
||||
# and home directories of users with SELinux login mappings defined, see
|
||||
# semanage login -l for the list of such users.
|
||||
# If you want to use a different home directory, you will need to use semanage fcontext command.
|
||||
# For example, if you had home dirs in /althome directory you would have to execute
|
||||
# semanage fcontext -a -e /home /althome
|
||||
usepasswd=False
|
||||
bzip-small=true
|
||||
bzip-blocksize=5
|
||||
ignoredirs=/root
|
||||
ignoredirs=/root;/bin;/boot;/dev;/etc;/lib;/lib64;/proc;/run;/sbin;/sys;/tmp;/usr;/var
|
||||
|
||||
[sefcontext_compile]
|
||||
path = /usr/sbin/sefcontext_compile
|
||||
|
||||
@@ -1 +1 @@
|
||||
a22e33fcbb09d3c1722d49f584d554e7c9a887c3b1da8dc15f90e9d72884fd73191d410f6d4dbf9f0c7c99e8362393b218002ba9644eecb0d1e509bbc9132d04
|
||||
a3901cc0dc86321934577ebddea6d769230a49a9899939b0c78d693b1b1dd8bbf53fba876ba3c8c08bf7fe910a1a8d760bcf812026b8edac95389f7e9a13b4bb
|
||||
|
||||
@@ -530,6 +530,7 @@
|
||||
/dev/usbmon.+ -c system_u:object_r:usbmon_device_t:s0
|
||||
/dev/mmcblk.* -b system_u:object_r:removable_device_t:s0
|
||||
/dev/mspblk.* -b system_u:object_r:removable_device_t:s0
|
||||
/etc/httpd/.* -l system_u:object_r:etc_t:s0
|
||||
/initrd\.img.* -l system_u:object_r:boot_t:s0
|
||||
/etc/bacula.* system_u:object_r:bacula_etc_t:s0
|
||||
/etc/drupal.* system_u:object_r:httpd_sys_rw_content_t:s0
|
||||
@@ -1532,6 +1533,7 @@
|
||||
/boot/System\.map(-.*)? -- system_u:object_r:system_map_t:s0
|
||||
/usr/sbin/crack_[a-z]* -- system_u:object_r:crack_exec_t:s0
|
||||
/var/cache/swift(/.*)? -- system_u:object_r:swift_var_cache_t:s0
|
||||
/dev/vhost-vdpa-[0-9]+ -c system_u:object_r:vhost_device_t:s0
|
||||
/etc/MailScanner(/.*)? system_u:object_r:mscan_etc_t:s0
|
||||
/etc/WebCalendar(/.*)? system_u:object_r:httpd_sys_rw_content_t:s0
|
||||
/etc/dirsrv/dsgw(/.*)? system_u:object_r:dirsrvadmin_config_t:s0
|
||||
@@ -2068,6 +2070,7 @@
|
||||
/opt/google-earth/.*\.so.* -- system_u:object_r:textrel_shlib_t:s0
|
||||
/usr/google-earth/.*\.so.* -- system_u:object_r:textrel_shlib_t:s0
|
||||
/var/run/nm-xl2tpd.conf.* -- system_u:object_r:NetworkManager_var_run_t:s0
|
||||
/var/run/pcsd-ruby.socket -s system_u:object_r:cluster_var_run_t:s0
|
||||
/etc/resolv-secure.conf.* system_u:object_r:net_conf_t:s0
|
||||
/var/cache/tomcat6?(/.*)? system_u:object_r:tomcat_cache_t:s0
|
||||
/var/lib/syslog-ng.persist -- system_u:object_r:syslogd_var_lib_t:s0
|
||||
@@ -2213,6 +2216,7 @@
|
||||
/var/run/postgresql(/.*)? system_u:object_r:postgresql_var_run_t:s0
|
||||
/var/run/samba/nmbd(/.*)? system_u:object_r:nmbd_var_run_t:s0
|
||||
/var/run/stickshift(/.*)? system_u:object_r:openshift_var_run_t:s0
|
||||
/var/run/strongswan(/.*)? system_u:object_r:ipsec_var_run_t:s0
|
||||
/var/run/timemaster(/.*)? system_u:object_r:timemaster_var_run_t:s0
|
||||
/var/spool/asterisk(/.*)? system_u:object_r:asterisk_spool_t:s0
|
||||
/var/spool/cups-pdf(/.*)? system_u:object_r:print_spool_t:s0
|
||||
@@ -2746,6 +2750,7 @@
|
||||
/var/spool/cron/crontabs/.* -- <<none>>
|
||||
/etc/rc\.d/init\.d/dhcrelay(6)? -- system_u:object_r:dhcpd_initrc_exec_t:s0
|
||||
/usr/share/awstats/tools/.+\.pl -- system_u:object_r:awstats_exec_t:s0
|
||||
/var/run/systemd/machines.lock -- system_u:object_r:systemd_machined_var_run_t:s0
|
||||
/etc/security/namespace\.d(/.*)? -- system_u:object_r:namespace_init_exec_t:s0
|
||||
/usr/share/turboprint/lib(/.*)? -- system_u:object_r:bin_t:s0
|
||||
/etc/pki/pki-tomcat/alias(/.*)? system_u:object_r:pki_tomcat_cert_t:s0
|
||||
@@ -4023,7 +4028,6 @@
|
||||
/var/run/\.zebra -s system_u:object_r:zebra_var_run_t:s0
|
||||
/var/run/\.zserv -s system_u:object_r:zebra_var_run_t:s0
|
||||
/var/run/zarafa -s system_u:object_r:zarafa_server_var_run_t:s0
|
||||
/etc/httpd/logs system_u:object_r:httpd_log_t:s0
|
||||
/bin/dbus-daemon -- system_u:object_r:dbusd_exec_t:s0
|
||||
/etc/fetchmailrc -- system_u:object_r:fetchmail_etc_t:s0
|
||||
/etc/ld\.so\.cache -- system_u:object_r:ld_so_cache_t:s0
|
||||
@@ -4560,7 +4564,6 @@
|
||||
/dev/device-mapper -c system_u:object_r:fixed_disk_device_t:s0
|
||||
/dev/xen/hypercall -c system_u:object_r:xen_device_t:s0
|
||||
/var/run/gpsd\.sock -s system_u:object_r:gpsd_var_run_t:s0
|
||||
/etc/httpd/modules system_u:object_r:httpd_modules_t:s0
|
||||
/usr/bin/pkidaemon system_u:object_r:pki_tomcat_exec_t:s0
|
||||
/\.ismount-test-file -- system_u:object_r:sosreport_tmp_t:s0
|
||||
/bin/systemd-notify -- system_u:object_r:systemd_notify_exec_t:s0
|
||||
@@ -4710,6 +4713,7 @@
|
||||
/var/log/lost\+found -d system_u:object_r:lost_found_t:s0
|
||||
/var/tmp/lost\+found -d system_u:object_r:lost_found_t:s0
|
||||
/var/tmp/vi\.recover -d system_u:object_r:tmp_t:s0
|
||||
/dev/isst_interface -c system_u:object_r:cpu_device_t:s0
|
||||
/dev/mapper/control -c system_u:object_r:lvm_control_t:s0
|
||||
/var/run/charon\.ctl -s system_u:object_r:ipsec_var_run_t:s0
|
||||
/var/run/dcc/dccifd -s system_u:object_r:dccifd_var_run_t:s0
|
||||
@@ -5404,6 +5408,7 @@
|
||||
/usr/sbin/audisp-prelude -- system_u:object_r:prelude_audisp_exec_t:s0
|
||||
/usr/sbin/avahi-dnsconfd -- system_u:object_r:avahi_exec_t:s0
|
||||
/usr/sbin/cgconfigparser -- system_u:object_r:cgconfig_exec_t:s0
|
||||
/usr/sbin/charon-systemd -- system_u:object_r:ipsec_exec_t:s0
|
||||
/usr/sbin/condor_starter -- system_u:object_r:condor_startd_exec_t:s0
|
||||
/usr/sbin/condor_vm-gahp -- system_u:object_r:virtd_exec_t:s0
|
||||
/usr/sbin/dmsetup\.static -- system_u:object_r:lvm_exec_t:s0
|
||||
@@ -5525,6 +5530,8 @@
|
||||
/usr/libexec/news/nntpget -- system_u:object_r:innd_exec_t:s0
|
||||
/usr/libexec/pcp/bin/pmcd -- system_u:object_r:pcp_pmcd_exec_t:s0
|
||||
/usr/libexec/pcp/bin/pmie -- system_u:object_r:pcp_pmie_exec_t:s0
|
||||
/usr/libexec/pcp/lib/pmcd -- system_u:object_r:pcp_pmcd_initrc_exec_t:s0
|
||||
/usr/libexec/pcp/lib/pmie -- system_u:object_r:pcp_pmie_initrc_exec_t:s0
|
||||
/usr/libexec/postfix/lmtp -- system_u:object_r:postfix_smtp_exec_t:s0
|
||||
/usr/libexec/postfix/pipe -- system_u:object_r:postfix_pipe_exec_t:s0
|
||||
/usr/libexec/postfix/smtp -- system_u:object_r:postfix_smtp_exec_t:s0
|
||||
@@ -5816,6 +5823,7 @@
|
||||
/usr/libexec/ntpdate-wrapper -- system_u:object_r:ntpdate_exec_t:s0
|
||||
/usr/libexec/openipmi-helper -- system_u:object_r:ipmievd_helper_exec_t:s0
|
||||
/usr/libexec/pcp/bin/pmproxy -- system_u:object_r:pcp_pmproxy_exec_t:s0
|
||||
/usr/libexec/pcp/lib/pmproxy -- system_u:object_r:pcp_pmproxy_initrc_exec_t:s0
|
||||
/usr/libexec/postfix/cleanup -- system_u:object_r:postfix_cleanup_exec_t:s0
|
||||
/usr/libexec/postfix/virtual -- system_u:object_r:postfix_virtual_exec_t:s0
|
||||
/usr/libexec/telepathy-rakia -- system_u:object_r:telepathy_sofiasip_exec_t:s0
|
||||
@@ -5870,6 +5878,7 @@
|
||||
/usr/lib/libstdc\+\+\.so\.2\.7\.2\.8 -- system_u:object_r:textrel_shlib_t:s0
|
||||
/usr/lib/mediawiki/math/texvc -- system_u:object_r:mediawiki_script_exec_t:s0
|
||||
/usr/lib/systemd/systemd-fsck -- system_u:object_r:fsadm_exec_t:s0
|
||||
/usr/lib/systemd/systemd-pull -- system_u:object_r:systemd_importd_exec_t:s0
|
||||
/usr/lib/udisks/udisks-daemon -- system_u:object_r:devicekit_disk_exec_t:s0
|
||||
/usr/lib/vmware/bin/vmware-ui -- system_u:object_r:vmware_exec_t:s0
|
||||
/usr/lib/vte/gnome-pty-helper -- system_u:object_r:bin_t:s0
|
||||
@@ -5886,6 +5895,7 @@
|
||||
/usr/libexec/openafs/salvager -- system_u:object_r:afs_fsserver_exec_t:s0
|
||||
/usr/libexec/openafs/vlserver -- system_u:object_r:afs_vlserver_exec_t:s0
|
||||
/usr/libexec/pcp/bin/pmlogger -- system_u:object_r:pcp_pmlogger_exec_t:s0
|
||||
/usr/libexec/pcp/lib/pmlogger -- system_u:object_r:pcp_pmlogger_initrc_exec_t:s0
|
||||
/usr/libexec/ricci-modservice -- system_u:object_r:ricci_modservice_exec_t:s0
|
||||
/usr/libexec/ricci-modstorage -- system_u:object_r:ricci_modstorage_exec_t:s0
|
||||
/usr/libexec/sssd/sssd_autofs -- system_u:object_r:sssd_exec_t:s0
|
||||
@@ -5971,6 +5981,7 @@
|
||||
/var/run/pluto/ipsec_setup\.pid -- system_u:object_r:ipsec_mgmt_var_run_t:s0
|
||||
/var/run/portmap\.upgrade-state -- system_u:object_r:portmap_var_run_t:s0
|
||||
/var/run/samba/connections\.tdb -- system_u:object_r:smbd_var_run_t:s0
|
||||
/var/spool/mail/\.fetchmail\.pid -- system_u:object_r:fetchmail_uidl_cache_t:s0
|
||||
/var/www/apcupsd/upsfstats\.cgi -- system_u:object_r:apcupsd_cgi_script_exec_t:s0
|
||||
/var/named/chroot_sdb/dev/null -c system_u:object_r:null_device_t:s0
|
||||
/var/named/chroot_sdb/dev/zero -c system_u:object_r:zero_device_t:s0
|
||||
@@ -6016,7 +6027,6 @@
|
||||
/usr/share/texmf/web2c/mktexupd -- system_u:object_r:bin_t:s0
|
||||
/usr/share/vdsm/supervdsmServer -- system_u:object_r:virtd_exec_t:s0
|
||||
/var/lib/likewise/krb5ccr_lsass -- system_u:object_r:lsassd_var_lib_t:s0
|
||||
/var/mail/\.fetchmail-UIDL-cache -- system_u:object_r:fetchmail_uidl_cache_t:s0
|
||||
/var/named/chroot/etc/localtime -- system_u:object_r:locale_t:s0
|
||||
/var/run/console-kit-daemon\.pid -- system_u:object_r:consolekit_var_run_t:s0
|
||||
/var/www/nut-cgi-bin/upsset\.cgi -- system_u:object_r:nutups_cgi_script_exec_t:s0
|
||||
@@ -6220,6 +6230,7 @@
|
||||
/var/lib/likewise-open/db/registry\.db -- system_u:object_r:lwregd_var_lib_t:s0
|
||||
/var/lib/likewise-open/run/rpcdep\.dat -- system_u:object_r:dcerpcd_var_lib_t:s0
|
||||
/var/lib/likewise/db/lsass-adcache\.db -- system_u:object_r:lsassd_var_lib_t:s0
|
||||
/var/spool/mail/\.fetchmail-UIDL-cache -- system_u:object_r:fetchmail_uidl_cache_t:s0
|
||||
/usr/Zend/lib/ZendExtensionManager\.so system_u:object_r:textrel_shlib_t:s0
|
||||
/etc/rc\.d/init\.d/mountall-bootclean\.sh -- system_u:object_r:tmpreaper_exec_t:s0
|
||||
/etc/rc\.d/init\.d/mountnfs-bootclean\.sh -- system_u:object_r:tmpreaper_exec_t:s0
|
||||
|
||||
Binary file not shown.
Binary file not shown.
Reference in New Issue
Block a user