Skip to content
Fedora Policy Contributions
Branch: rawhide
Clone or download
Permalink
Type Name Latest commit message Commit time
Sorry, we had to truncate this directory to 1,000 files. 372 entries were omitted from the list.
Failed to load latest commit information.
.gitignore Added TAGS to gitignore Nov 27, 2014
.travis.yml
Changelog Update Changelog for release. Apr 24, 2013
abrt.fc Add missing labeling for /usr/libexec/abrt-hook-ccpp as a part of #12… Oct 5, 2015
abrt.if Add interface abrt_map_cache() Mar 6, 2018
abrt.te Allow abrt_dump_oops_t domain to create udp sockets BZ(1778030) Dec 3, 2019
accountsd.fc Merge http://oss.tresys.com/git/refpolicy-contrib into master_contrib… Jan 7, 2013
accountsd.if Update to have all _systemctl() interface also init_reload_services(). Nov 28, 2014
accountsd.te
acct.fc
acct.if Fix interface tags errors Jan 8, 2013
acct.te Merge http://oss.tresys.com/git/refpolicy-contrib into master_contrib… Oct 31, 2013
ada.fc Changes to the ada policy module Sep 15, 2012
ada.if Changes to the ada policy module Sep 15, 2012
ada.te
afs.fc Add labels for afs binaries: dafileserver, davolserver, salvageserver… Sep 17, 2015
afs.if
afs.te Remove all unnecessary dac_override capability in SELinux modules. Sep 22, 2017
aiccu.fc
aiccu.if Merge http://oss.tresys.com/git/refpolicy-contrib into master_contrib… Jan 7, 2013
aiccu.te Merge insmod_t, depmod_t and update_modules_t do kmod_t Feb 25, 2019
aide.fc
aide.if
aide.te Update aide_t domain to allow this tool to analyze also /dev filesystem Oct 4, 2019
aisexec.fc Changes to the aisexec policy module Sep 17, 2012
aisexec.if
aisexec.te Merge http://oss.tresys.com/git/refpolicy-contrib into master_contrib… Oct 31, 2013
ajaxterm.fc
ajaxterm.if Remove files which are not part of refpolicy-contrib Jun 4, 2012
ajaxterm.te
alsa.fc Allow alsa to create lock file to see if it fixes #1123423. Jul 31, 2014
alsa.if Update to have all _systemctl() interface also init_reload_services(). Nov 28, 2014
alsa.te
amanda.fc Label /var/lib/xfsdump/inventory as amanda_var_lib_t Oct 24, 2019
amanda.if
amanda.te
amavis.fc Fix duplicate context declarations (merge issue) Jan 9, 2013
amavis.if Merge http://oss.tresys.com/git/refpolicy-contrib into master_contrib… Jan 7, 2013
amavis.te Allow nnp transition for amavis and tmpreaper SELinux domains Oct 23, 2017
amtu.fc various: revert regex fixes: fcsort does not want this now Sep 27, 2013
amtu.if
amtu.te Merge http://oss.tresys.com/git/refpolicy-contrib into master_contrib… Oct 31, 2013
anaconda.fc
anaconda.if Add httpd_run_preupgrade boolean Apr 9, 2014
anaconda.te Merge insmod_t, depmod_t and update_modules_t do kmod_t Feb 25, 2019
antivirus.fc Allow spamd_update_t access antivirus_unit_file_t BZ(1774092) Dec 2, 2019
antivirus.if
antivirus.te
apache.fc Label /var/cache/nginx as httpd_cache_t Nov 1, 2019
apache.if
apache.te Make httpd_var_lib_t label system mountdir attribute Oct 22, 2019
apcupsd.fc
apcupsd.if
apcupsd.te Allow apcupsd_t domain to execute itself Aug 27, 2018
apm.fc
apm.if
apm.te Merge insmod_t, depmod_t and update_modules_t do kmod_t Feb 25, 2019
apt.fc
apt.if
apt.te
arpwatch.fc
arpwatch.if
arpwatch.te
asterisk.fc
asterisk.if
asterisk.te
authbind.fc Changes to the authbind policy module Sep 19, 2012
authbind.if Changes to the authbind policy module Sep 19, 2012
authbind.te Bump module versions for release. Apr 24, 2013
authconfig.fc Fix authconfig.py labeling Feb 23, 2013
authconfig.if Add interfaces fixes from Lukas Vrabec Jul 31, 2013
authconfig.te Fix typo in authconfig policy Jun 6, 2018
automount.fc Merge http://oss.tresys.com/git/refpolicy-contrib into master_contrib… Jan 7, 2013
automount.if
automount.te Allow automount_t domain to execute ping in own SELinux domain (ping_t) Oct 31, 2019
avahi.fc
avahi.if Update to have all _systemctl() interface also init_reload_services(). Nov 28, 2014
avahi.te Allow dac_override capability to avahi_t domain BZ(1502139) Oct 17, 2017
awstats.fc
awstats.if
awstats.te Fix fixes after apache content patch Nov 14, 2013
backup.fc backup: in Debian /etc/cron.daily/passwd backs-up shadow, passwd etc to Sep 27, 2013
backup.if
backup.te
bacula.fc Label /var/bacula/ as bacula_store_t Sep 2, 2014
bacula.if
bacula.te Remove all unnecessary dac_override capability in SELinux modules. Sep 22, 2017
bcfg2.fc Merge http://oss.tresys.com/git/refpolicy-contrib into master_contrib… Jan 7, 2013
bcfg2.if Update to have all _systemctl() interface also init_reload_services(). Nov 28, 2014
bcfg2.te
bind.fc Label /etc/named direcotory as named_conf_t BZ(1759495) Oct 8, 2019
bind.if Add new interface bind_rw_cache() Aug 26, 2019
bind.te
bird.fc Initial BIRD Internet Routing Daemon policy Aug 8, 2012
bird.if Bird module clean up Sep 20, 2012
bird.te
bitlbee.fc
bitlbee.if
bitlbee.te
blkmapd.fc
blkmapd.if
blkmapd.te Allow blkmapd_t domain to read nvme devices Jul 11, 2019
blueman.fc Merge http://oss.tresys.com/git/refpolicy-contrib into master_contrib… Jan 7, 2013
blueman.if Add interface to blueman_t dbus_chat to allow it to read remote proce… Jan 23, 2013
blueman.te Dontaudit blueman to read state of all domains on system BZ(1722696) Jul 1, 2019
bluetooth.fc /usr/libexec/bluetooth/obexd should have only obexd_exec_t instead of… Jun 11, 2018
bluetooth.if Introduce deny_bluetooth boolean Apr 25, 2019
bluetooth.te Introduce deny_bluetooth boolean Apr 25, 2019
boinc.fc
boinc.if
boinc.te Make boinc_var_lib_t label system mountdir attribute Dec 3, 2019
boltd.fc
boltd.if
boltd.te
brctl.fc Changes to the brctl policy module Sep 20, 2012
brctl.if Changes to the brctl policy module Sep 20, 2012
brctl.te
brltty.fc Add label for brltty log file Resolves: rhbz#1328818 Jun 28, 2016
brltty.if
brltty.te
bugzilla.fc
bugzilla.if
bugzilla.te Allow bugzilla_script_t domain to create netlink route sockets and ud… Dec 11, 2017
bumblebee.fc
bumblebee.if
bumblebee.te Merge insmod_t, depmod_t and update_modules_t do kmod_t Feb 25, 2019
cachefilesd.fc Remove setting label for /dev/cachefilesd char device from cachefilesd Sep 12, 2019
cachefilesd.if Remove files which are not part of refpolicy-contrib Jun 4, 2012
cachefilesd.te Fix typo in cachefilesd module Sep 12, 2019
calamaris.fc Changes to the calamaris policy module Sep 20, 2012
calamaris.if
calamaris.te
callweaver.fc
callweaver.if Changes to the logrotate policy module and relevant dependencies Oct 10, 2012
callweaver.te
canna.fc
canna.if
canna.te
ccs.fc Changes to the ccs policy module Sep 21, 2012
ccs.if
ccs.te
cdrecord.fc Changes to the cdrecord policy module Sep 21, 2012
cdrecord.if
cdrecord.te Remove all unnecessary dac_override capability in SELinux modules. Sep 22, 2017
certmaster.fc Changes to the certmaster policy module and various role attribute fixes Sep 21, 2012
certmaster.if Merge http://oss.tresys.com/git/refpolicy-contrib into master_contrib… Jan 7, 2013
certmaster.te Remove all unnecessary dac_override capability in SELinux modules. Sep 22, 2017
certmonger.fc Alow certmonger to create own systemd unit files. Apr 19, 2017
certmonger.if
certmonger.te Allow certmonger_t domain to manage named cache files/dirs May 30, 2019
certwatch.fc
certwatch.if Changes to the certwatch policy module Sep 22, 2012
certwatch.te
cfengine.fc cfengine: This location is now labeled with a cfengine private type Oct 2, 2012
cfengine.if Fix cfengine_domain_template() interface Jan 9, 2013
cfengine.te Fix calling usermodehelper to use _state in interface name Jan 19, 2014
cgdcbxd.fc
cgdcbxd.if Fix *_admin intefaces where body is not consistent with header. Jul 14, 2015
cgdcbxd.te Allow cgdcbxd_t domain to list cgroup dirs Aug 5, 2019
cgroup.fc The (usr/)? expression does not work consistently so better not use it Sep 17, 2012
cgroup.if
cgroup.te Add dac_override capability to cgconfig_t domain BZ(1574649) May 22, 2018
chrome.fc Label for /home/$USER/.config/chromium should be chrome_sandbox_home_t Dec 17, 2018
chrome.if Fix typo in chrome.if Jul 14, 2014
chrome.te Allow chrome_sandbox_t to mmap tmp files May 20, 2018
chronyd.fc Add SELinux support for chronyc Oct 23, 2017
chronyd.if
chronyd.te
cinder.fc Fix labeling for /usr/lib/systemd/system/openstack-cinder-backup Jun 27, 2014
cinder.if
cinder.te Allow cinder_volume_t domain to dbus chat with systemd_logind_t domain Oct 5, 2018
cipe.fc
cipe.if
cipe.te
clamav.fc Merge http://oss.tresys.com/git/refpolicy-contrib into master_contrib… Jan 7, 2013
clamav.if
clamav.te Remove all unnecessary dac_override capability in SELinux modules. Sep 22, 2017
clockspeed.fc Changes to the clockspeed policy module Sep 24, 2012
clockspeed.if Fix typo in clockspeed comment Nov 27, 2012
clockspeed.te
clogd.fc Changes to the clogd policy module Sep 24, 2012
clogd.if
clogd.te Merge http://oss.tresys.com/git/refpolicy-contrib into master_contrib… Oct 31, 2013
cloudform.fc
cloudform.if
cloudform.te Allow cloud-init to create content in /var/run/cloud-init Oct 6, 2017
cmirrord.fc Changes to the cmirrord policy module Sep 24, 2012
cmirrord.if Merge http://oss.tresys.com/git/refpolicy-contrib into master_contrib… Jan 7, 2013
cmirrord.te Allow cmirrord_t domain to create netlink_connector sockets Feb 16, 2017
cobbler.fc Add cobbler_var_lib_t to "/var/lib/tftpboot/boot(/.*)?" Jul 13, 2015
cobbler.if
cobbler.te Allow cobblerd_t domain search apache configuration dirs Sep 27, 2019
cockpit.fc cockpit: Drop cockpit-cert-session Nov 12, 2019
cockpit.if
cockpit.te
collectd.fc
collectd.if Add interface collectd_manage_rw_content() Jul 17, 2019
collectd.te Allow collectd_t domain to create netlink_generic_socket sockets Oct 30, 2019
colord.fc
colord.if
colord.te Allow colord_t domain to manage ecryptfs_t objects if use_ecryptfs_ho… Dec 17, 2018
comsat.fc Changes to the comsat policy module Sep 24, 2012
comsat.if
comsat.te
condor.fc Remove dup file context decl for /etc/condor Nov 13, 2013
condor.if
condor.te Allow condor domain to read sysctl_vm_t files BZ(1508712) Nov 3, 2017
conman.fc Label /var/log/conman.d as conman_log_t Jun 13, 2018
conman.if
conman.te
conntrackd.fc Fix typo in conntrackd.fc file May 25, 2018
conntrackd.if Add a policy for conntrackd Jul 7, 2017
conntrackd.te Conntrackd need to load kernel module to work Aug 29, 2018
consolekit.fc We still need to have consolekit policy Jun 20, 2013
consolekit.if Update to have all _systemctl() interface also init_reload_services(). Nov 28, 2014
consolekit.te
corosync.fc
corosync.if
corosync.te Remove all unnecessary dac_override capability in SELinux modules. Sep 22, 2017
couchdb.fc
couchdb.if Update to have all _systemctl() interface also init_reload_services(). Nov 28, 2014
couchdb.te
courier.fc
courier.if
courier.te Remove all unnecessary dac_override capability in SELinux modules. Sep 22, 2017
cpucontrol.fc Label /usr/libexec/microcode_ctl/reload_microcode as cpucontrol_exec_t Aug 16, 2019
cpucontrol.if Remove files which are not part of refpolicy-contrib Jun 4, 2012
cpucontrol.te
cpufreqselector.fc Remove files which are not part of refpolicy-contrib Jun 4, 2012
cpufreqselector.if
cpufreqselector.te Merge http://oss.tresys.com/git/refpolicy-contrib into master_contrib… Oct 31, 2013
cpuplug.fc Added support for cpuplug. BZ (#1077831) Oct 6, 2014
cpuplug.if Added support for cpuplug. BZ (#1077831) Oct 6, 2014
cpuplug.te Allow cpuplug rw virtual memory sysctl. BZ (1077831) Nov 13, 2014
cron.fc
cron.if Update cron_role, cron_admin_role and cron_unconfined_role to avoid *… Sep 10, 2019
cron.te Update cron_role, cron_admin_role and cron_unconfined_role to avoid *… Sep 10, 2019
ctdb.fc Label /etc/ctdb/events.d/* as ctdb_exec_t. Mar 10, 2016
ctdb.if Allow smbcontrol domain to send sigchld to ctdbd domain. Jan 12, 2016
ctdb.te
cups.fc
cups.if
cups.te Fix typo in cups SELinux policy Apr 18, 2019
cvs.fc
cvs.if Add label for ~/.cvsignore Dec 16, 2013
cvs.te
cyphesis.fc
cyphesis.if
cyphesis.te
cyrus.fc
cyrus.if
cyrus.te
daemontools.fc Changes to the daemontools policy module Sep 26, 2012
daemontools.if
daemontools.te Merge http://oss.tresys.com/git/refpolicy-contrib into master_contrib… Oct 31, 2013
dante.fc
dante.if Changes to the dante policy module Sep 26, 2012
dante.te Merge http://oss.tresys.com/git/refpolicy-contrib into master_contrib… Oct 31, 2013
dbadm.fc
dbadm.if
dbadm.te
dbskk.fc
dbskk.if
dbskk.te Merge http://oss.tresys.com/git/refpolicy-contrib into master_contrib… Oct 31, 2013
dbus.fc Introduce dbusd_unit_file_type Aug 29, 2019
dbus.if Introduce dbusd_unit_file_type Aug 29, 2019
dbus.te
dcc.fc Add label for /usr/libexec/dcc/start-dccifd and domtrans to dccifd_t Aug 19, 2013
dcc.if
dcc.te
ddclient.fc
ddclient.if
ddclient.te
ddcprobe.fc Changes to the ddcprobe policy module Sep 28, 2012
ddcprobe.if Changes to the ddcprobe policy module Sep 28, 2012
ddcprobe.te Merge http://oss.tresys.com/git/refpolicy-contrib into master_contrib… Oct 31, 2013
denyhosts.fc
denyhosts.if Merge http://oss.tresys.com/git/refpolicy-contrib into master_contrib… Jan 7, 2013
denyhosts.te Allow denyhosts execute iptables. BZ(1197371) Mar 1, 2015
devicekit.fc
devicekit.if Add interface devicekit_mounton_var_lib() Aug 28, 2018
devicekit.te Allow devicekit_var_lib_t dirs to be created by systemd during service Sep 5, 2019
dhcp.fc Label dhcpd6 unit file. Jul 29, 2014
dhcp.if
dhcp.te Allow dhcpd_t domain to read network sysctls. Jul 29, 2019
dictd.fc Changes tothe dictd policy module Sep 28, 2012
dictd.if
dictd.te Allow dictd_t domain to mmap dictd_var_lib_t files BZ(1634650) Oct 3, 2018
dirmngr.fc Initial dirmngr policy module Oct 9, 2012
dirmngr.if
dirmngr.te
dirsrv-admin.fc
dirsrv-admin.if
dirsrv-admin.te
dirsrv.fc
dirsrv.if Update dirsrv_read_share() interface to allow caller domain to mmap d… Aug 27, 2018
dirsrv.te
distcc.fc
distcc.if Add interface fixes Apr 10, 2013
distcc.te
djbdns.fc
djbdns.if Merge http://oss.tresys.com/git/refpolicy-contrib into master_contrib… Jan 7, 2013
djbdns.te Merge http://oss.tresys.com/git/refpolicy-contrib into master_contrib… Oct 31, 2013
dkim.fc Merge http://oss.tresys.com/git/refpolicy-contrib into master_contrib… Jan 7, 2013
dkim.if Changes to the dkim policy module Sep 28, 2012
dkim.te Allow dkim-milter to send e-mails BZ(1716937) Jul 16, 2019
dmidecode.fc
dmidecode.if
dmidecode.te Allow dmidecode to read rhsmcert_log_t files Oct 25, 2017
dnsmasq.fc Fix labeling on dnsmasq content Nov 13, 2013
dnsmasq.if dnsmasq: allow NetworkManager to control dnsmasq via D-Bus Apr 22, 2016
dnsmasq.te Created dnsmasq_use_ipset boolean Nov 1, 2019
dnssec.fc
dnssec.if
dnssec.te
dnssectrigger.fc Initial dnssectrigger policy module Sep 13, 2012
dnssectrigger.if Initial dnssectrigger policy module Sep 13, 2012
dnssectrigger.te
dovecot.fc Fix regex Aug 14, 2012
dovecot.if
dovecot.te Allow dovecot get filesystem quotas Oct 29, 2019
dpkg.fc dpkg: catch /etc/cron.daily/dpkg on Debian Sep 26, 2013
dpkg.if mandb: /etc/cron.daily/man-db executes dpkg, reads dpkg db on Debian Sep 26, 2013
dpkg.te
drbd.fc
drbd.if Fix desc for drdb_admin Apr 10, 2013
drbd.te Merge insmod_t, depmod_t and update_modules_t do kmod_t Feb 25, 2019
dspam.fc
dspam.if Remove files which are not part of refpolicy-contrib Jun 4, 2012
dspam.te
entropyd.fc
entropyd.if
entropyd.te Remove all unnecessary dac_override capability in SELinux modules. Sep 22, 2017
etcd.fc Add SELinux policy for highly-available key value store for shared co… Aug 20, 2014
etcd.if Fix *_admin intefaces where body is not consistent with header. Jul 14, 2015
etcd.te
evolution.fc
evolution.if Changes to the evolution policy module Oct 8, 2012
evolution.te Merge http://oss.tresys.com/git/refpolicy-contrib into master_contrib… Oct 31, 2013
exim.fc exim: exim owns directory /var/lib/exim4 Sep 24, 2013
exim.if Merge http://oss.tresys.com/git/refpolicy-contrib into master_contrib… Nov 12, 2013
exim.te Allow exim_t to read mysqld conf files if exim_can_connect_db is enab… Oct 2, 2019
fail2ban.fc
fail2ban.if Update fail2ban.if with additional interfaces from upstream Nov 13, 2013
fail2ban.te Update fail2ban policy Dec 2, 2019
fcoe.fc fcoemon sends to lldpad with a dgram socket Sep 11, 2012
fcoe.if
fcoe.te
fetchmail.fc
fetchmail.if
fetchmail.te
finger.fc revert regular expressions Sep 26, 2013
finger.if Changes to the fingerd policy module Oct 1, 2012
finger.te
firewalld.fc Merge http://oss.tresys.com/git/refpolicy-contrib into master_contrib… Jan 7, 2013
firewalld.if
firewalld.te
firewallgui.fc
firewallgui.if
firewallgui.te Merge http://oss.tresys.com/git/refpolicy-contrib into master_contrib… Oct 31, 2013
firstboot.fc
firstboot.if merge clean up for these policies (f-i) Jun 5, 2012
firstboot.te
fprintd.fc
fprintd.if
fprintd.te Allow fprintd_t domain creating own tmp files BZ(1590686) Jul 3, 2018
freeipmi.fc
freeipmi.if
freeipmi.te Allow freeipmi domains to mmap freeipmi_var_cache_t files Apr 23, 2019
freqset.fc New policy for bumblebee and freqset Nov 19, 2013
freqset.if New policy for bumblebee and freqset Nov 19, 2013
freqset.te
ftp.fc Add proper label for /var/log/proftpd.log Jun 20, 2016
ftp.if Update to have all _systemctl() interface also init_reload_services(). Nov 28, 2014
ftp.te Add dac_override capability to ftpd_t domain Oct 22, 2018
fwupd.fc
fwupd.if Allow boltd_t to read fwupd_t processes state BZ(1636538) Oct 12, 2018
fwupd.te
games.fc
games.if add games_manage_data_files() interface Jun 17, 2014
games.te
gatekeeper.fc
gatekeeper.if Add gatekeeper newline Oct 2, 2012
gatekeeper.te
gdomap.fc Initial gdomap policy module Sep 27, 2013
gdomap.if gdomap/minissdpd: create read_config interfaces for initrc_t Nov 9, 2013
gdomap.te
gear.fc More rules for gears and openshift May 7, 2014
gear.if
gear.te Remove all unnecessary dac_override capability in SELinux modules. Sep 22, 2017
geoclue.fc
geoclue.if Fix *_admin intefaces where body is not consistent with header. Jul 14, 2015
geoclue.te Allow geoclue_t domain to get attributes of fs_t filesystems Sep 16, 2018
gift.fc
gift.if Fixes to various policy modules Oct 18, 2012
gift.te
git.fc
git.if
git.te Allow git_script_t domain to read and mmap gitosis_var_lib_t files BZ… Jul 3, 2018
gitosis.fc
gitosis.if
gitosis.te Merge http://oss.tresys.com/git/refpolicy-contrib into master_contrib… Oct 31, 2013
glance.fc
glance.if Make all glance domain as nsswitch domains. Nov 18, 2014
glance.te Allow Glance Scrubber to connect to commplex_main port Jul 16, 2015
glusterd.fc Remove all ganesha bits from gluster and rpc policy Dec 6, 2018
glusterd.if Remove all ganesha bits from gluster and rpc policy Dec 6, 2018
glusterd.te Allow Gluster mount client to mount files_type Oct 17, 2019
gnome.fc Remove duplicate .fc entry for Grilo plugin bookmarks Jun 24, 2014
gnome.if Update gnome_dontaudit_read_config Sep 6, 2019
gnome.te
gnomeclock.fc
gnomeclock.if Merge for g-k Jan 7, 2013
gnomeclock.te Remove all unnecessary dac_override capability in SELinux modules. Sep 22, 2017
gpg.fc
gpg.if Update gpg policy to make ti working with confined users May 17, 2019
gpg.te
gpm.fc
gpm.if
gpm.te
gpsd.fc Changes to the gpsd policy module and relevant dependencies Oct 4, 2012
gpsd.if Allow chronyd_t domain to mmap own tmpfs files Aug 3, 2018
gpsd.te Allow gpsd_t domain to read udev db BZ(1709025) May 14, 2019
gssproxy.fc
gssproxy.if Add interface gssproxy_noatsecure() Apr 4, 2017
gssproxy.te
guest.fc Remove files which are not part of refpolicy-contrib Jun 4, 2012
guest.if Fix typo in guest interface file Dec 4, 2017
guest.te
hadoop.fc
hadoop.if Merge for g-k Jan 7, 2013
hadoop.te Merge http://oss.tresys.com/git/refpolicy-contrib into master_contrib… Oct 31, 2013
hal.fc Cleanups of various modules with regard to regular expressions and white Sep 25, 2013
hal.if Merge for g-k Jan 7, 2013
hal.te
hddtemp.fc Changes to the hddtemp policy module Oct 5, 2012
hddtemp.if
hddtemp.te Allow hddtemp_t domain to read nvme block devices BZ(1663579) Jan 9, 2019
hostapd.fc Add new policy for hostapd Jan 3, 2015
hostapd.if Fix *_admin intefaces where body is not consistent with header. Jul 14, 2015
hostapd.te
howl.fc Changes to the howl policy module Oct 5, 2012
howl.if
howl.te
hsqldb.fc Hsqldb policy upgrade Aug 17, 2015
hsqldb.if
hsqldb.te
hwloc.fc Add hwloc-dump-hwdata SELinux policy Jun 9, 2016
hwloc.if Hide all allow rules with ptrace inside deny_ptrace boolean Oct 26, 2017
hwloc.te
hypervkvp.fc
hypervkvp.if Update to have all _systemctl() interface also init_reload_services(). Nov 28, 2014
hypervkvp.te
i18n_input.fc
i18n_input.if
i18n_input.te
ibacm.fc
ibacm.if
ibacm.te
icecast.fc
icecast.if
icecast.te Remove all unnecessary dac_override capability in SELinux modules. Sep 22, 2017
ifplugd.fc
ifplugd.if
ifplugd.te
imaze.fc Merge for g-k Jan 7, 2013
imaze.if
imaze.te Merge http://oss.tresys.com/git/refpolicy-contrib into master_contrib… Oct 31, 2013
inetd.fc revert regular expressions Sep 26, 2013
inetd.if
inetd.te
inn.fc
inn.if Allow sendmail_t to write to inherited files from a news server Jan 28, 2013
inn.te Allow innd_t domain to mmap own var_lib_t files Aug 3, 2018
iodine.fc Fix /usr/sbin/iodined spec decl Jul 9, 2013
iodine.if Update to have all _systemctl() interface also init_reload_services(). Nov 28, 2014
iodine.te Update iodine policy Jan 6, 2014
iotop.fc
iotop.if
iotop.te Add rules for netlink_socket in iotop. Apr 17, 2015
ipa.fc
ipa.if Fix typo in ipa_cert_filetrans_named_content() interface Oct 19, 2017
ipa.te Allow ipa_helper_t to read kr5_keytab_t files Nov 12, 2019
ipa_custodia.fc
ipa_custodia.if Fix ipa_custodia_stream_connect interface Sep 20, 2019
ipa_custodia.te
ipmievd.fc Create new type ipmievd_helper_t domain for loading kernel modules. Sep 10, 2019
ipmievd.if
ipmievd.te Allow ipmievd_t to RW watchdog devices Oct 11, 2019
irc.fc
irc.if Fix deny_ptrace boolean, certain ptrace leaked into the system Apr 12, 2013
irc.te
ircd.fc various: revert regex fixes: fcsort does not want this now Sep 27, 2013
ircd.if Add interface fixes Jul 30, 2013
ircd.te
irqbalance.fc Changes to the irqbalance policy module Oct 7, 2012
irqbalance.if
irqbalance.te Fix irqbalance.te merge issue Nov 12, 2013
iscsi.fc
iscsi.if Fix description for iscsid_run() interface which expects two paramete… May 15, 2015
iscsi.te Allow iscsid_t domain to mmap modules_dep_t files May 2, 2019
isns.fc Initial isns policy module Sep 12, 2012
isns.if Initial isns policy module Sep 12, 2012
isns.te
jabber.fc
jabber.if
jabber.te
java.fc
java.if Changes to the mozilla policy module and relevant dependencies Oct 12, 2012
java.te Merge http://oss.tresys.com/git/refpolicy-contrib into master_contrib… Oct 31, 2013
jetty.fc
jetty.if Jetty policy fix - remove write access to /etc/ and /usr/share Aug 26, 2015
jetty.te
jockey.fc Merge for g-k Jan 7, 2013
jockey.if Merge for g-k Jan 7, 2013
jockey.te
journalctl.fc
journalctl.if
journalctl.te
kde.fc Remove files which are not part of refpolicy-contrib Jun 4, 2012
kde.if
kde.te
kdump.fc
kdump.if
kdump.te
kdumpgui.fc Remove files which are not part of refpolicy-contrib Jun 4, 2012
kdumpgui.if Merge for g-k Jan 7, 2013
kdumpgui.te Allow kdumpgui_t domain to allow execute and mmap all binaries labele… Jun 28, 2018
keepalived.fc
keepalived.if
keepalived.te Dontaudit and disallow sys_admin capability for keepalived_t domain Oct 16, 2019
kerberos.fc
kerberos.if Allow search krb5_keytab_t dirs for interfaces kerberos_read_keytab() Jul 30, 2019
kerberos.te Allow kadmind_t domain to read home config data Jun 3, 2019
kerneloops.fc
kerneloops.if
kerneloops.te Merge http://oss.tresys.com/git/refpolicy-contrib into master_contrib… Oct 31, 2013
keyboardd.fc Merge for g-k Jan 7, 2013
keyboardd.if Merge for g-k Jan 7, 2013
keyboardd.te
keystone.fc Fix labeling for keystone CGI scripts. Apr 8, 2015
keystone.if Update to have all _systemctl() interface also init_reload_services(). Nov 28, 2014
keystone.te
kismet.fc Changes to the kismet policy module Oct 9, 2012
kismet.if Add interface fixes Apr 10, 2013
kismet.te
kmscon.fc re-arrange kmscon policy Jun 12, 2014
kmscon.if Update to have all _systemctl() interface also init_reload_services(). Nov 28, 2014
kmscon.te Allow kmscon to read system state. BZ (1206871) Mar 30, 2015
kpatch.fc
kpatch.if