Summary
Policycoreutils contains the policy core utilities that are required for basic operation of a SELinux system. These utilities include load_policy to load policies, setfiles to label filesystems, newrole to switch roles, and run_init to run /etc/init.d scripts in the proper context. Gentoo-specific tools include rlpkg for relabeling packages by name, avc_toggle to toggle between enforcing and permissive modes, and avc_enforcing to query the current mode of the system, enforcing or permissive.
Versions
v9999 :: 0 :: gentoo
- Modified
- License
- GPL-2
- USE flags
- audit pam split-usr
v3.7 :: 0 :: gentoo
- Modified
- License
- GPL-2
- Keywords
- ~amd64 ~arm ~arm64 ~riscv ~x86
- USE flags
- audit pam split-usr
v3.6 :: 0 :: gentoo
- Modified
- License
- GPL-2
- Keywords
- amd64 arm arm64 x86
- USE flags
- audit pam split-usr
USE flags
General
- audit
- Enable support for sys-process/audit and use the audit_* functions (like audit_getuid instead of getuid())
- pam
- Add support for PAM (Pluggable Authentication Modules) - DANGEROUS to arbitrarily flip
- split-usr
- Enable behavior to support maintaining /bin, /lib*, /sbin and /usr/sbin separately from /usr/bin and /usr/lib*
python_targets
- python3_10
- Build with Python 3.10
- python3_11
- Build with Python 3.11
- python3_12
- Build with Python 3.12
Dependencies
app-admin / setools : Policy Analysis Tools for SELinux
dev-lang / python : Freethreading (no-GIL) version of Python programming language
sys-libs / libcap-ng : POSIX 1003.1e capabilities
sys-libs / libselinux : SELinux userland library
sys-libs / libsemanage : SELinux kernel and policy management library
sys-libs / libsepol : SELinux binary policy representation library
sys-libs / pam : Linux-PAM (Pluggable Authentication Modules)
sys-process / audit : Userspace utilities for storing and processing auditing records
Runtime Dependencies
app-admin / setools : Policy Analysis Tools for SELinux
app-misc / pax-utils : ELF utils that can check files for security relevant properties
dev-lang / python : Freethreading (no-GIL) version of Python programming language
sys-libs / libcap-ng : POSIX 1003.1e capabilities
sys-libs / libselinux : SELinux userland library
sys-libs / libsemanage : SELinux kernel and policy management library
sys-libs / libsepol : SELinux binary policy representation library
sys-libs / pam : Linux-PAM (Pluggable Authentication Modules)
sys-process / audit : Userspace utilities for storing and processing auditing records
Depending packages
sec-policy / selinux-accountsd : SELinux policy for accountsd
sec-policy / selinux-acct : SELinux policy for acct
sec-policy / selinux-afs : SELinux policy for afs
sec-policy / selinux-aide : SELinux policy for aide
sec-policy / selinux-alsa : SELinux policy for alsa
sec-policy / selinux-amanda : SELinux policy for amanda
sec-policy / selinux-amavis : SELinux policy for amavis
sec-policy / selinux-android : SELinux policy for android
sec-policy / selinux-apache : SELinux policy for apache
sec-policy / selinux-apcupsd : SELinux policy for apcupsd
sec-policy / selinux-apm : SELinux policy for acpi
sec-policy / selinux-arpwatch : SELinux policy for arpwatch
sec-policy / selinux-asterisk : SELinux policy for asterisk
sec-policy / selinux-at : SELinux policy for at
sec-policy / selinux-automount : SELinux policy for automount
sec-policy / selinux-avahi : SELinux policy for avahi
sec-policy / selinux-awstats : SELinux policy for awstats
sec-policy / selinux-backup : SELinux policy for generic backup apps
sec-policy / selinux-bacula : SELinux policy for bacula
sec-policy / selinux-base : Gentoo base policy for SELinux
sec-policy / selinux-bind : SELinux policy for bind
sec-policy / selinux-bitcoin : SELinux policy for bitcoin
sec-policy / selinux-bitlbee : SELinux policy for bitlbee
sec-policy / selinux-bluetooth : SELinux policy for bluetooth
sec-policy / selinux-brctl : SELinux policy for brctl
sec-policy / selinux-cachefilesd : SELinux policy for cachefilesd
sec-policy / selinux-calamaris : SELinux policy for calamaris
sec-policy / selinux-canna : SELinux policy for canna
sec-policy / selinux-cdrecord : SELinux policy for cdrecord
sec-policy / selinux-ceph : SELinux policy for ceph
sec-policy / selinux-certbot : SELinux policy for certbot
sec-policy / selinux-cgmanager : SELinux policy for cgmanager
sec-policy / selinux-cgroup : SELinux policy for cgroup
sec-policy / selinux-chromium : SELinux policy for chromium
sec-policy / selinux-chronyd : SELinux policy for chronyd
sec-policy / selinux-clamav : SELinux policy for clamav
sec-policy / selinux-cloudinit : SELinux policy for cloudinit
sec-policy / selinux-collectd : SELinux policy for collectd
sec-policy / selinux-colord : SELinux policy for colord
sec-policy / selinux-container : SELinux policy for container
sec-policy / selinux-corosync : SELinux policy for corosync
sec-policy / selinux-couchdb : SELinux policy for couchdb
sec-policy / selinux-courier : SELinux policy for courier
sec-policy / selinux-cpucontrol : SELinux policy for cpucontrol
sec-policy / selinux-cpufreqselector : SELinux policy for cpufreqselector
sec-policy / selinux-crio : SELinux policy for cri-o
sec-policy / selinux-cups : SELinux policy for cups
sec-policy / selinux-cvs : SELinux policy for cvs
sec-policy / selinux-cyphesis : SELinux policy for cyphesis
sec-policy / selinux-daemontools : SELinux policy for daemontools
sec-policy / selinux-dante : SELinux policy for dante
sec-policy / selinux-dbadm : SELinux policy for dbadm
sec-policy / selinux-dbskk : SELinux policy for dbskk
sec-policy / selinux-dbus : SELinux policy for dbus
sec-policy / selinux-ddclient : SELinux policy for ddclient
sec-policy / selinux-devicekit : SELinux policy for devicekit
sec-policy / selinux-dhcp : SELinux policy for dhcp
sec-policy / selinux-dictd : SELinux policy for dictd
sec-policy / selinux-dirmngr : SELinux policy for dirmngr
sec-policy / selinux-dirsrv : SELinux policy for dirsrv
sec-policy / selinux-distcc : SELinux policy for distcc
sec-policy / selinux-djbdns : SELinux policy for djbdns
sec-policy / selinux-dkim : SELinux policy for dkim
sec-policy / selinux-dmidecode : SELinux policy for dmidecode
sec-policy / selinux-dnsmasq : SELinux policy for dnsmasq
sec-policy / selinux-docker : SELinux policy for docker
sec-policy / selinux-dovecot : SELinux policy for dovecot
sec-policy / selinux-dpkg : SELinux policy for dpkg
sec-policy / selinux-dracut : SELinux policy for dracut
sec-policy / selinux-dropbox : SELinux policy for dropbox
sec-policy / selinux-entropyd : SELinux policy for entropyd
sec-policy / selinux-evolution : SELinux policy for evolution
sec-policy / selinux-exim : SELinux policy for exim
sec-policy / selinux-fail2ban : SELinux policy for fail2ban
sec-policy / selinux-fetchmail : SELinux policy for fetchmail
sec-policy / selinux-finger : SELinux policy for finger
sec-policy / selinux-firewalld : SELinux policy for firewalld
sec-policy / selinux-flash : SELinux policy for flash
sec-policy / selinux-fprintd : SELinux policy for fprintd
sec-policy / selinux-ftp : SELinux policy for ftp
sec-policy / selinux-games : SELinux policy for games
sec-policy / selinux-gatekeeper : SELinux policy for gatekeeper
sec-policy / selinux-git : SELinux policy for git
sec-policy / selinux-gitosis : SELinux policy for gitosis
sec-policy / selinux-glusterfs : SELinux policy for glusterfs
sec-policy / selinux-gnome : SELinux policy for gnome
sec-policy / selinux-googletalk : SELinux policy for googletalk
sec-policy / selinux-gorg : SELinux policy for gorg
sec-policy / selinux-gpg : SELinux policy for gpg
sec-policy / selinux-gpm : SELinux policy for gpm
sec-policy / selinux-gpsd : SELinux policy for gpsd
sec-policy / selinux-gssproxy : SELinux policy for gssproxy
sec-policy / selinux-hddtemp : SELinux policy for hddtemp
sec-policy / selinux-hostapd : SELinux policy for hostapd
sec-policy / selinux-icecast : SELinux policy for icecast
sec-policy / selinux-ifplugd : SELinux policy for ifplugd
sec-policy / selinux-inetd : SELinux policy for inetd
sec-policy / selinux-inn : SELinux policy for inn
sec-policy / selinux-ipsec : SELinux policy for ipsec
sec-policy / selinux-irc : SELinux policy for irc
sec-policy / selinux-ircd : SELinux policy for ircd
sec-policy / selinux-irqbalance : SELinux policy for irqbalance
sec-policy / selinux-jabber : SELinux policy for jabber
sec-policy / selinux-java : SELinux policy for java
sec-policy / selinux-kdeconnect : SELinux policy for kdeconnect
sec-policy / selinux-kdump : SELinux policy for kdump
sec-policy / selinux-kerberos : SELinux policy for kerberos
sec-policy / selinux-kerneloops : SELinux policy for kerneloops
sec-policy / selinux-kismet : SELinux policy for kismet
sec-policy / selinux-ksmtuned : SELinux policy for ksmtuned
sec-policy / selinux-kubernetes : SELinux policy for kubernetes
sec-policy / selinux-ldap : SELinux policy for ldap
sec-policy / selinux-links : SELinux policy for links
sec-policy / selinux-lircd : SELinux policy for lircd
sec-policy / selinux-loadkeys : SELinux policy for loadkeys
sec-policy / selinux-logrotate : SELinux policy for logrotate
sec-policy / selinux-logsentry : SELinux policy for logsentry
sec-policy / selinux-logwatch : SELinux policy for logwatch
sec-policy / selinux-lpd : SELinux policy for lpd
sec-policy / selinux-makewhatis : SELinux policy for makewhatis
sec-policy / selinux-mandb : SELinux policy for mandb
sec-policy / selinux-matrixd : SELinux policy for matrixd
sec-policy / selinux-mcelog : SELinux policy for mcelog
sec-policy / selinux-memcached : SELinux policy for memcached
sec-policy / selinux-milter : SELinux policy for milter
sec-policy / selinux-modemmanager : SELinux policy for modemmanager
sec-policy / selinux-mono : SELinux policy for mono
sec-policy / selinux-mozilla : SELinux policy for mozilla
sec-policy / selinux-mpd : SELinux policy for mpd
sec-policy / selinux-mplayer : SELinux policy for mplayer
sec-policy / selinux-mrtg : SELinux policy for mrtg
sec-policy / selinux-munin : SELinux policy for munin
sec-policy / selinux-mutt : SELinux policy for mutt
sec-policy / selinux-mysql : SELinux policy for mysql
sec-policy / selinux-nagios : SELinux policy for nagios
sec-policy / selinux-ncftool : SELinux policy for ncftool
sec-policy / selinux-networkmanager : SELinux policy for networkmanager
sec-policy / selinux-nginx : SELinux policy for nginx
sec-policy / selinux-node_exporter : SELinux policy for node_exporter
sec-policy / selinux-nslcd : SELinux policy for nslcd
sec-policy / selinux-ntop : SELinux policy for ntop
sec-policy / selinux-ntp : SELinux policy for ntp
sec-policy / selinux-nut : SELinux policy for nut
sec-policy / selinux-nx : SELinux policy for nx
sec-policy / selinux-obfs4proxy : SELinux policy for obfs4proxy
sec-policy / selinux-oddjob : SELinux policy for oddjob
sec-policy / selinux-oident : SELinux policy for oident
sec-policy / selinux-openct : SELinux policy for openct
sec-policy / selinux-openrc : SELinux policy for openrc
sec-policy / selinux-opensm : SELinux policy for opensm
sec-policy / selinux-openvpn : SELinux policy for openvpn
sec-policy / selinux-pan : SELinux policy for pan
sec-policy / selinux-pcscd : SELinux policy for pcscd
sec-policy / selinux-phpfpm : SELinux policy for phpfpm
sec-policy / selinux-plymouthd : SELinux policy for plymouthd
sec-policy / selinux-podman : SELinux policy for podman
sec-policy / selinux-policykit : SELinux policy for policykit
sec-policy / selinux-portmap : SELinux policy for portmap
sec-policy / selinux-postfix : SELinux policy for postfix
sec-policy / selinux-postgresql : SELinux policy for postgresql
sec-policy / selinux-postgrey : SELinux policy for postgrey
sec-policy / selinux-powerprofiles : SELinux policy for powerprofiles
sec-policy / selinux-ppp : SELinux policy for ppp
sec-policy / selinux-privoxy : SELinux policy for privoxy
sec-policy / selinux-procmail : SELinux policy for procmail
sec-policy / selinux-psad : SELinux policy for psad
sec-policy / selinux-publicfile : SELinux policy for publicfile
sec-policy / selinux-pulseaudio : SELinux policy for pulseaudio
sec-policy / selinux-puppet : SELinux policy for puppet
sec-policy / selinux-pyzor : SELinux policy for pyzor
sec-policy / selinux-qemu : SELinux policy for qemu
sec-policy / selinux-qmail : SELinux policy for qmail
sec-policy / selinux-quota : SELinux policy for quota
sec-policy / selinux-radius : SELinux policy for radius
sec-policy / selinux-radvd : SELinux policy for radvd
sec-policy / selinux-rasdaemon : SELinux policy for rasdaemon
sec-policy / selinux-razor : SELinux policy for razor
sec-policy / selinux-redis : SELinux policy for redis
sec-policy / selinux-remotelogin : SELinux policy for remotelogin
sec-policy / selinux-resolvconf : SELinux policy for resolvconf
sec-policy / selinux-rngd : SELinux policy for rngd
sec-policy / selinux-rootlesskit : SELinux policy for rootlesskit
sec-policy / selinux-rpc : SELinux policy for rpc
sec-policy / selinux-rpcbind : SELinux policy for rpcbind
sec-policy / selinux-rpm : SELinux policy for rpm
sec-policy / selinux-rssh : SELinux policy for rssh
sec-policy / selinux-rtkit : SELinux policy for rtkit
sec-policy / selinux-rtorrent : SELinux policy for rtorrent
sec-policy / selinux-salt : SELinux policy for salt
sec-policy / selinux-samba : SELinux policy for samba
sec-policy / selinux-sasl : SELinux policy for sasl
sec-policy / selinux-screen : SELinux policy for screen
sec-policy / selinux-secadm : SELinux policy for secadm
sec-policy / selinux-sendmail : SELinux policy for sendmail
sec-policy / selinux-sensord : SELinux policy for sensord
sec-policy / selinux-shorewall : SELinux policy for shorewall
sec-policy / selinux-shutdown : SELinux policy for shutdown
sec-policy / selinux-skype : SELinux policy for skype
sec-policy / selinux-slocate : SELinux policy for slocate
sec-policy / selinux-slrnpull : SELinux policy for slrnpull
sec-policy / selinux-smartmon : SELinux policy for smartmon
sec-policy / selinux-smokeping : SELinux policy for smokeping
sec-policy / selinux-snmp : SELinux policy for snmp
sec-policy / selinux-snort : SELinux policy for snort
sec-policy / selinux-soundserver : SELinux policy for soundserver
sec-policy / selinux-spamassassin : SELinux policy for spamassassin
sec-policy / selinux-squid : SELinux policy for squid
sec-policy / selinux-sssd : SELinux policy for sssd
sec-policy / selinux-stunnel : SELinux policy for stunnel
sec-policy / selinux-subsonic : SELinux policy for subsonic
sec-policy / selinux-sudo : SELinux policy for sudo
sec-policy / selinux-switcheroo : SELinux policy for switcheroo
sec-policy / selinux-sxid : SELinux policy for sxid
sec-policy / selinux-syncthing : SELinux policy for syncthing
sec-policy / selinux-sysstat : SELinux policy for sysstat
sec-policy / selinux-tboot : SELinux policy for tboot
sec-policy / selinux-tcpd : SELinux policy for tcpd
sec-policy / selinux-tcsd : SELinux policy for tcsd
sec-policy / selinux-telnet : SELinux policy for telnet
sec-policy / selinux-tftp : SELinux policy for tftp
sec-policy / selinux-tgtd : SELinux policy for tgtd
sec-policy / selinux-thunderbird : SELinux policy for thunderbird
sec-policy / selinux-thunderbolt : SELinux policy for thunderbolt
sec-policy / selinux-timidity : SELinux policy for timidity
sec-policy / selinux-tmpreaper : SELinux policy for tmpreaper
sec-policy / selinux-tor : SELinux policy for tor
sec-policy / selinux-tripwire : SELinux policy for tripwire
sec-policy / selinux-ucspitcp : SELinux policy for ucspitcp
sec-policy / selinux-ulogd : SELinux policy for ulogd
sec-policy / selinux-uml : SELinux policy for uml
sec-policy / selinux-unconfined : SELinux policy for unconfined
sec-policy / selinux-uptime : SELinux policy for uptime
sec-policy / selinux-usbguard : SELinux policy for usbguard
sec-policy / selinux-usbmuxd : SELinux policy for usbmuxd
sec-policy / selinux-uucp : SELinux policy for uucp
sec-policy / selinux-uwimap : SELinux policy for uwimap
sec-policy / selinux-uwsgi : SELinux policy for uWSGI
sec-policy / selinux-varnishd : SELinux policy for varnishd
sec-policy / selinux-vbetool : SELinux policy for vbetool
sec-policy / selinux-vdagent : SELinux policy for vdagent
sec-policy / selinux-vde : SELinux policy for vde
sec-policy / selinux-virt : SELinux policy for virt
sec-policy / selinux-vlock : SELinux policy for vlock
sec-policy / selinux-vmware : SELinux policy for vmware
sec-policy / selinux-vnstatd : SELinux policy for vnstatd
sec-policy / selinux-vpn : SELinux policy for vpn
sec-policy / selinux-watchdog : SELinux policy for watchdog
sec-policy / selinux-webalizer : SELinux policy for webalizer
sec-policy / selinux-wine : SELinux policy for wine
sec-policy / selinux-wireguard : SELinux policy for wireguard
sec-policy / selinux-wireshark : SELinux policy for wireshark
sec-policy / selinux-wm : SELinux policy for wm
sec-policy / selinux-xen : SELinux policy for xen
sec-policy / selinux-xfs : SELinux policy for xfs
sec-policy / selinux-xscreensaver : SELinux policy for xscreensaver
sec-policy / selinux-xserver : SELinux policy for xserver
sec-policy / selinux-zabbix : SELinux policy for zabbix
sec-policy / selinux-zfs : SELinux policy for zfs
sys-apps / openrc : OpenRC manages the services, startup and shutdown of a host
sys-apps / openrc-navi : OpenRC fork with user services support
Bugs
Change logs
- Repository mirror & CI · gentoo
Merge updates from master - Arthur Zamarin · gentoo
sys-apps/policycoreutils: drop ~mips keywords
Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Jason Zaman · gentoo
sys-apps/policycoreutils: drop 3.5
Signed-off-by: Jason Zaman <perfinion@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Jakov Smolić · gentoo
sys-apps/policycoreutils: Keyword 3.7 riscv, #936297
Signed-off-by: Jakov Smolić <jsmolic@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Repository mirror & CI · gentoo
Merge updates from master - Jason Zaman · gentoo
sys-apps/policycoreutils: bump to 3.7
Signed-off-by: Jason Zaman <perfinion@gentoo.org> - Jason Zaman · gentoo
sys-apps/policycoreutils: update EAPI 7 -> 8
Signed-off-by: Jason Zaman <perfinion@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Kenton Groombridge · gentoo
sys-apps/policycoreutils: enable py3.12
Closes: https://bugs.gentoo.org/932011 Signed-off-by: Kenton Groombridge <concord@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Ben Kohler · gentoo
Revert "sys-apps/policycoreutils: enable py3.12"
This reverts commit 0ed838b7233abada1d8a51a5fe0002f43540d8f9. Signed-off-by: Ben Kohler <bkohler@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Ben Kohler · gentoo
sys-apps/policycoreutils: enable py3.12
Signed-off-by: Ben Kohler <bkohler@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Kenton Groombridge · gentoo
sys-apps/policycoreutils: stabilize 3.6 for amd64, arm, arm64, x86
Signed-off-by: Kenton Groombridge <concord@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Kenton Groombridge · gentoo
sys-apps/policycoreutils: bump to 3.6
Signed-off-by: Kenton Groombridge <concord@gentoo.org> - Kenton Groombridge · gentoo
sys-apps/policycoreutils: update live ebuild
Signed-off-by: Kenton Groombridge <concord@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Kenton Groombridge · gentoo
sys-apps/policycoreutils: drop 3.4
Signed-off-by: Kenton Groombridge <concord@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Kenton Groombridge · gentoo
sys-apps/policycoreutils: Stabilize SELinux userspace 3.5
Signed-off-by: Kenton Groombridge <concord@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Kenton Groombridge · gentoo
sys-apps/policycoreutils: drop 3.3
Signed-off-by: Kenton Groombridge <concord@gentoo.org> - Kenton Groombridge · gentoo
sys-apps/policycoreutils: bump to 3.5
Signed-off-by: Kenton Groombridge <concord@gentoo.org> - Kenton Groombridge · gentoo
sys-apps/policycoreutils: enable py3.11
Closes: https://bugs.gentoo.org/897260 Signed-off-by: Kenton Groombridge <concord@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - David Seifert · gentoo
*/*: remove py3.8 from PYTHON_COMPAT
Signed-off-by: David Seifert <soap@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Kenton Groombridge · gentoo
sys-apps/policycoreutils: fix install on merged-usr
Upstream sestatus Makefile installs a compatibility symlink for the sestatus binary. Remove this symlink when USE=merged-usr to fix an internal file collision. Closes: https://bugs.gentoo.org/871501 Signed-off-by: Kenton Groombridge <concord@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Michał Górny · gentoo
sys-apps/policycoreutils: Update PYTHON_REQ_USE to xml(+)
Update PYTHON_REQ_USE to specify "xml(+)", as Python 3.11 no longer features the "xml" flag. Signed-off-by: Michał Górny <mgorny@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Sam James · gentoo
sys-apps/policycoreutils: Stabilize 3.4 arm64, #855968
Signed-off-by: Sam James <sam@gentoo.org> - Sam James · gentoo
sys-apps/policycoreutils: Stabilize 3.4 arm, #855968
Signed-off-by: Sam James <sam@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Kenton Groombridge · gentoo
sys-apps/policycoreutils: stabilize 3.4 for amd64, x86
Signed-off-by: Kenton Groombridge <concord@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Kenton Groombridge · gentoo
sys-apps/policycoreutils: drop 3.4_rc1
Signed-off-by: Kenton Groombridge <concord@gentoo.org> - Kenton Groombridge · gentoo
sys-apps/policycoreutils: bump to 3.4
Signed-off-by: Kenton Groombridge <concord@gentoo.org> - Kenton Groombridge · gentoo
sys-apps/policycoreutils: update live ebuild
Signed-off-by: Kenton Groombridge <concord@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Jason Zaman · gentoo
sys-apps/policycoreutils: bump to 3.4_rc1
Package-Manager: Portage-3.0.30, Repoman-3.0.3 Signed-off-by: Jason Zaman <perfinion@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Jason Zaman · gentoo
sys-apps/policycoreutils: update live ebuild
Package-Manager: Portage-3.0.30, Repoman-3.0.3 Signed-off-by: Jason Zaman <perfinion@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Jason Zaman · gentoo
sys-apps/policycoreutils: Drop old
Package-Manager: Portage-3.0.30, Repoman-3.0.3 Signed-off-by: Jason Zaman <perfinion@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Jason Zaman · gentoo
sys-apps/policycoreutils: Specify policy root path correctly
Commit df72ab351f482dea63d27e447b2a93549a742ecd added support for rebuilding the policy in a crossdev environment but the root needs to be specified with -p instead of -S. The policy dir (-S) defaults to (-p) + /var/lib/selinux/ + (-s). Thanks to Feandil for reporting this issue. Package-Manager: Portage-3.0.28, Repoman-3.0.3 Signed-off-by: Jason Zaman <perfinion@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Jason Zaman · gentoo
sys-apps/policycoreutils: stabilize SELinux userspace 3.3
Package-Manager: Portage-3.0.28, Repoman-3.0.3 Signed-off-by: Jason Zaman <perfinion@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Thilo Fromm · gentoo
sys-apps/policycoreutils: update the right ROOT store
The policycoreutils ebuild calls 'semodule' in postinst to update SELinux stores. It does not, however, tells semodule the correct ROOT to use, so installing policycoreutils in a crossdev environment will actually update the *host's* store. This patch adds '-S "${ROOT:-/}"' to the 'semodule' call so the correct environment is updated. First seen + fixed in Flatcar Container Linux: https://github.com/flatcar-linux/coreos-overlay/pull/1502 Signed-off-by: Thilo Fromm <thilo@kinvolk.io> Closes: https://github.com/gentoo/gentoo/pull/23332 Signed-off-by: Sam James <sam@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Sam James · gentoo
sys-apps/policycoreutils: Stabilize 3.2 arm64, #825314
Signed-off-by: Sam James <sam@gentoo.org> - Sam James · gentoo
sys-apps/policycoreutils: Stabilize 3.2 arm, #825314
Signed-off-by: Sam James <sam@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Jonathan Davies · gentoo
sys-apps/policycoreutils: Version updated to 3.3.
Signed-off-by: Jonathan Davies <jpds@protonmail.com> Signed-off-by: Sam James <sam@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Sam James · gentoo
sys-apps/policycoreutils: Stabilize 3.2 x86, #797616
Signed-off-by: Sam James <sam@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Jonathan Davies · gentoo
sys-apps/policycoreutils: Added ~arm to packages where missing
Package-Manager: Portage-3.0.20, Repoman-3.0.3 Signed-off-by: Sam James <sam@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Sam James · gentoo
sys-apps/policycoreutils: Stabilize 3.2 amd64, #797616
Signed-off-by: Sam James <sam@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Jonathan Davies · gentoo
sys-apps/policycoreutils: Sync live ebuild.
Signed-off-by: Jonathan Davies <jpds@protonmail.com> Signed-off-by: Jason Zaman <perfinion@gentoo.org> - Jonathan Davies · gentoo
sys-apps/policycoreutils: Version updated to 3.2.
Signed-off-by: Jonathan Davies <jpds@protonmail.com> Signed-off-by: Jason Zaman <perfinion@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Jason Zaman · gentoo
sys-apps/policycoreutils: drop old
Package-Manager: Portage-3.0.13, Repoman-3.0.2 Signed-off-by: Jason Zaman <perfinion@gentoo.org> - Jason Zaman · gentoo
sys-apps/policycoreutils: stable amd64 x86
Bug: https://bugs.gentoo.org/768258 Package-Manager: Portage-3.0.13, Repoman-3.0.2 Signed-off-by: Jason Zaman <perfinion@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Michał Górny · gentoo
*/*: Remove obsolete values from PYTHON_COMPAT
Signed-off-by: Michał Górny <mgorny@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - David Michael · gentoo
sys-apps/policycoreutils: drop obsolete deps
There are no references to ipy, libcap, libcgroup, inotify, or dbus in the code. This drops the unused dbus USE flag. Also add python3_9 Package-Manager: Portage-3.0.9, Repoman-3.0.2 Signed-off-by: David Michael <fedora.dm0@gmail.com> Signed-off-by: Jason Zaman <perfinion@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Jason Zaman · gentoo
sys-apps/policycoreutils: Drop old
Package-Manager: Portage-3.0.9, Repoman-3.0.2 Signed-off-by: Jason Zaman <perfinion@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Sam James · gentoo
sys-apps/policycoreutils: Add Python 3.8 to live too
Package-Manager: Portage-3.0.9, Repoman-3.0.2 Signed-off-by: Sam James <sam@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Jason Zaman · gentoo
sys-apps/policycoreutils: Add python3_8 support
Package-Manager: Portage-3.0.9, Repoman-3.0.2 Signed-off-by: Jason Zaman <perfinion@gentoo.org> - Jason Zaman · gentoo
sys-apps/policycoreutils: stabilize SELinux userspace 3.1
Package-Manager: Portage-3.0.9, Repoman-3.0.2 Signed-off-by: Jason Zaman <perfinion@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Sam James · gentoo
sys-apps/policycoreutils: sync live
Package-Manager: Portage-3.0.9, Repoman-3.0.2 Signed-off-by: Sam James <sam@gentoo.org> - Sam James · gentoo
sys-apps/policycoreutils: update comment
Package-Manager: Portage-3.0.9, Repoman-3.0.2 Signed-off-by: Sam James <sam@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Sam James · gentoo
sys-apps/policycoreutils: shift gettext to BDEPEND in 3.1
perfinion is going to review 9999 later for any other possible fixes, so not closing the bug yet. Acked-by: Jason Zaman <perfinion@gentoo.org> Bug: https://bugs.gentoo.org/755173 Package-Manager: Portage-3.0.9, Repoman-3.0.2 Signed-off-by: Sam James <sam@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Jonathan Davies · gentoo
sys-apps/policycoreutils: Version bump to 3.1.
Signed-off-by: Jonathan Davies <jpds@protonmail.com> Signed-off-by: Jason Zaman <perfinion@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Ben Kohler · gentoo
sys-apps/policycoreutils: adjust dep to allow new libsemanage
Python support is non-optional on this newer libsemanage Package-Manager: Portage-2.3.103, Repoman-2.3.23 Signed-off-by: Ben Kohler <bkohler@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Agostino Sarubbo · gentoo
sys-apps/policycoreutils: x86 stable wrt bug #706146
Package-Manager: Portage-2.3.84, Repoman-2.3.20 RepoMan-Options: --include-arches="x86" Signed-off-by: Agostino Sarubbo <ago@gentoo.org> - Agostino Sarubbo · gentoo
sys-apps/policycoreutils: amd64 stable wrt bug #706146
Package-Manager: Portage-2.3.84, Repoman-2.3.20 RepoMan-Options: --include-arches="amd64" Signed-off-by: Agostino Sarubbo <ago@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Michał Górny · gentoo
*/*: Clean PYTHON_COMPAT of obsolete impls
Closes: https://github.com/gentoo/gentoo/pull/14246 Signed-off-by: Michał Górny <mgorny@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Jason Zaman · gentoo
sys-apps/policycoreutils: Add support for /usr-merge
Also fix absolute symlink QA warning. Closes: https://bugs.gentoo.org/690364 Package-Manager: Portage-2.3.79, Repoman-2.3.16 Signed-off-by: Jason Zaman <perfinion@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Repository mirror & CI · gentoo
Merge updates from master - Jason Zaman · gentoo
sys-apps/policycoreutils: drop old
Package-Manager: Portage-2.3.79, Repoman-2.3.16 Signed-off-by: Jason Zaman <perfinion@gentoo.org> - Jason Zaman · gentoo
sys-apps/policycoreutils: bump to 3.0
Package-Manager: Portage-2.3.79, Repoman-2.3.16 Signed-off-by: Jason Zaman <perfinion@gentoo.org> - Jason Zaman · gentoo
sys-apps/policycoreutils: update live ebuild
Package-Manager: Portage-2.3.79, Repoman-2.3.16 Signed-off-by: Jason Zaman <perfinion@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Jason Zaman · gentoo
sys-apps/policycoreutils: bump to 3.0_rc2
Package-Manager: Portage-2.3.79, Repoman-2.3.16 Signed-off-by: Jason Zaman <perfinion@gentoo.org> - Jason Zaman · gentoo
sys-apps/policycoreutils: update live ebuild
Package-Manager: Portage-2.3.79, Repoman-2.3.16 Signed-off-by: Jason Zaman <perfinion@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Jason Zaman · gentoo
sys-apps/policycoreutils: drop old
Package-Manager: Portage-2.3.69, Repoman-2.3.16 Signed-off-by: Jason Zaman <perfinion@gentoo.org> - Jason Zaman · gentoo
sys-apps/policycoreutils: stable
Package-Manager: Portage-2.3.69, Repoman-2.3.16 Signed-off-by: Jason Zaman <perfinion@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Michał Górny · gentoo
*/*: Remove python3_4 PYTHON_COMPAT correctly
Signed-off-by: Michał Górny <mgorny@gentoo.org> - Repository mirror & CI · gentoo
Merge updates from master - Jason Zaman · gentoo
sys-apps/policycoreutils: bump to 2.9
Signed-off-by: Jason Zaman <perfinion@gentoo.org> Package-Manager: Portage-2.3.62, Repoman-2.3.11 - Jason Zaman · gentoo
sys-apps/policycoreutils: update live ebuild
Signed-off-by: Jason Zaman <perfinion@gentoo.org> Package-Manager: Portage-2.3.62, Repoman-2.3.11 - Repository mirror & CI · gentoo
Merge updates from master - Jason Zaman · gentoo
sys-apps/policycoreutils: bump to 2.9_rc1
Signed-off-by: Jason Zaman <perfinion@gentoo.org> Package-Manager: Portage-2.3.51, Repoman-2.3.11 - Jason Zaman · gentoo
sys-apps/policycoreutils: update live ebuild
Signed-off-by: Jason Zaman <perfinion@gentoo.org> Package-Manager: Portage-2.3.51, Repoman-2.3.11 - Repository mirror & CI · gentoo
Merge updates from master - Jason Zaman · gentoo
sys-apps/policycoreutils: drop <python3.5 support
Signed-off-by: Jason Zaman <perfinion@gentoo.org> Package-Manager: Portage-2.3.51, Repoman-2.3.11 - Repository mirror & CI · gentoo
Merge updates from master - Jason Zaman · gentoo
sys-apps/policycoreutils: stable 2.8
Package-Manager: Portage-2.3.40, Repoman-2.3.9 - Jason Zaman · gentoo
sys-apps/policycoreutils: drop old
Package-Manager: Portage-2.3.39, Repoman-2.3.9 - Jason Zaman · gentoo
sys-apps/policycoreutils: bump to 2.8
Package-Manager: Portage-2.3.39, Repoman-2.3.9 - Jason Zaman · gentoo
sys-apps/policycoreutils: update live ebuild
Package-Manager: Portage-2.3.39, Repoman-2.3.9 - Jason Zaman · gentoo
sys-apps/policycoreutils: supports musl now, drop dep on glibc
Package-Manager: Portage-2.3.24, Repoman-2.3.6 - Jason Zaman · gentoo
sys-apps/policycoreutils: bump to 2.8_rc3
Package-Manager: Portage-2.3.24, Repoman-2.3.6 - Jason Zaman · gentoo
sys-apps/policycoreutils: update live ebuild
Package-Manager: Portage-2.3.24, Repoman-2.3.6 - Jason Zaman · gentoo
sys-apps/policycoreutils: bump to 2.8_rc2
Package-Manager: Portage-2.3.24, Repoman-2.3.6 - Jason Zaman · gentoo
sys-apps/policycoreutils: update live ebuild
Package-Manager: Portage-2.3.24, Repoman-2.3.6 - Jason Zaman · gentoo
sys-apps/policycoreutils: bump to 2.8_rc1
Package-Manager: Portage-2.3.24, Repoman-2.3.6 - Jason Zaman · gentoo
sys-apps/policycoreutils: update live ebuild
Package-Manager: Portage-2.3.24, Repoman-2.3.6 - Jason Zaman · gentoo
sys-apps/policycoreutils: add python3_6 compat
Package-Manager: Portage-2.3.19, Repoman-2.3.6 - Jason Zaman · gentoo
sys-apps/policycoreutils: drop 2.6
Package-Manager: Portage-2.3.19, Repoman-2.3.6 - Jason Zaman · gentoo
sys-apps/policycoreutils: drop old
Package-Manager: Portage-2.3.8, Repoman-2.3.1 - Jason Zaman · gentoo
sys-apps/policycoreutils: stablize 2.7
Package-Manager: Portage-2.3.8, Repoman-2.3.1 - Jason Zaman · gentoo
sys-apps/policycoreutils: bump to 2.7
Package-Manager: Portage-2.3.6, Repoman-2.3.1 - Jason Zaman · gentoo
sys-apps/policycoreutils: update live ebuild
Package-Manager: Portage-2.3.6, Repoman-2.3.1 - Jason Zaman · gentoo
sys-apps/policycoreutils: bump to 2.7_rc5
Package-Manager: Portage-2.3.6, Repoman-2.3.1 - Jason Zaman · gentoo
sys-apps/policycoreutils: update live ebuild
Package-Manager: Portage-2.3.6, Repoman-2.3.1 - Jason Zaman · gentoo
sys-apps/policycoreutils: update suid patch
Package-Manager: Portage-2.3.6, Repoman-2.3.1 - Jason Zaman · gentoo
sys-apps/policycoreutils: bump to 2.7_rc4
Package-Manager: Portage-2.3.6, Repoman-2.3.1 - Jason Zaman · gentoo
sys-apps/policycoreutils: update live ebuild
Package-Manager: Portage-2.3.6, Repoman-2.3.1 - Jason Zaman · gentoo
sys-apps/policycoreutils: update live ebuild
Package-Manager: Portage-2.3.5, Repoman-2.3.1 - Jason Zaman · gentoo
sys-apps/policycoreutils: bump to 2.7_rc1
Package-Manager: Portage-2.3.5, Repoman-2.3.1 - Jason Zaman · gentoo
sys-apps/policycoreutils: patches merge upstream
Package-Manager: Portage-2.3.3, Repoman-2.3.1 - Jason Zaman · gentoo
sys-apps/policycoreutils: Add missing PYTHON_USEDEP
Package-Manager: Portage-2.3.3, Repoman-2.3.1 - David Seifert · gentoo
sys-apps/policycoreutils: [QA] Add missing python metadata variables
Package-Manager: Portage-2.3.5, Repoman-2.3.2 - Sven Vermeulen · gentoo
sys-apps/policycoreutils-2.6-r1: Stabilize
Package-Manager: Portage-2.3.3, Repoman-2.3.1 - Robin H. Johnson · gentoo
Drop $Id$ per council decision in bug #611234.
Signed-off-by: Robin H. Johnson <robbat2@gentoo.org> - Jason Zaman · gentoo
sys-apps/policycoreutils: update live ebuild
dont dep on sepolgen, its part of selinux-python now python libs and include dir are now properly detected so dont need to pass in several python scripts have also moved to selinux-python Package-Manager: portage-2.3.3 - Sven Vermeulen · gentoo
sys-apps/policycoreutils: Properly depend on audit[python] and fix selocal attribute resolving
The first bug this release fixes is bug 597978. Previous policycoreutils versions provided a selocal application which can't deal with the new setools. The previous setools had seinfo return a non-zero return code if an attribute (or role, or ... depending on what was asked) was not found. The newer setools gives this in the output, but keeps the zero return code. selocal depended on the return code previously. The second bug this release fixes is bug 605692. Well, partially, because the bug has two issues mentioned. The first one is the (wrong) dependency on audit. If the policycoreutils package is build with USE="audit" then it should depend on audit[python] rather than just audit. This is the issue that is fixed in this release. The second issue (not being able to use a number of semanage commands when USE="-audit") is not resolved yet. Package-Manager: portage-2.3.3 - T. Malfatti · gentoo
media-libs/portaudio: Version bump - Sven Vermeulen · gentoo
sys-apps/policycoreutils: Use dev.g.o location for extras for now
Package-Manager: portage-2.3.0 - Sven Vermeulen · gentoo
sys-apps/policycoreutils: Depend on audit[python], fix selocal and fix build instructions for 2.6 and higher
The live ebuild reflects the latest state of the user space project of SELinux. In the release of 2.6, a number of changes to the 2.6 ebuild were made but not pushed to the live ebuild, so we did that. Alongside, we also fixed the following bugs: - Bug 605692 fixes the audit dependency - we already depended on audit if USE=audit was set, but we did not force the use of the python USE flag if we did, which is a requirement (note that this bug is partially fixed by this, another change is still pending). - Bug 597978 fixes the selocal command, which failed to obtain attribute and other information since the setools 4 release Package-Manager: portage-2.3.0 - Jason Zaman · gentoo
sys-apps/policycoreutils: stabilize userland 2.6
Package-Manager: portage-2.3.0 - Jason Zaman · gentoo
sys-apps/policycoreutils: some utils have been split out into separate packages
Package-Manager: portage-2.3.0 - Michał Górny · gentoo
global: Drop dead implementations from PYTHON_COMPAT - Jason Zaman · gentoo
sys-apps/policycoreutils: bump to 2.6 final release
Package-Manager: portage-2.3.0 - Jason Zaman · gentoo
sys-apps/policycoreutils: bump to 2.6_rc2
Package-Manager: portage-2.3.0 - Jason Zaman · gentoo
sys-apps/policycoreutils: Add blocker for policy before 2.20151208-r6
Package-Manager: portage-2.3.0 - Jason Zaman · gentoo
sys-apps/policycoreutils: bump to 2.6-rc1
Package-Manager: portage-2.3.0 - Jason Zaman · gentoo
sys-apps/policycoreutils: update dep for setools 4
Package-Manager: portage-2.2.28 - Jason Zaman · gentoo
sys-apps/policycoreutils: Drop old
Package-Manager: portage-2.2.28 - Jason Zaman · gentoo
sys-apps/policycoreutils: update to eapi6
Package-Manager: portage-2.2.28 - Jason Zaman · gentoo
sys-apps/policycoreutils: stabilize userland 2.5
Package-Manager: portage-2.2.28 - Sven Vermeulen · gentoo
sys-apps/policycoreutils: Bump to 2.5 release
Package-Manager: portage-2.2.26 - Mike Frysinger · gentoo
selinux: initial arm/arm64/mips support - Jason Zaman · gentoo
sys-apps/policycoreutils: Stabilize for amd64 and x86
Package-Manager: portage-2.2.20.1 - Jason Zaman · gentoo
sys-apps/policycoreutils: 2.4-r2 does not have python3 support yet
Package-Manager: portage-2.2.20.1 - Sven Vermeulen · gentoo
sys-apps/policycoreutils: Release 2.4-r2 with fixes for bugs 557370 and 534682
This releases policycoreutils-2.4-r2 with fixes for - modifying user definitions (bug 557370) - building policies using sepolgen generate (bug 534682) Gentoo-Bug: 557370 Gentoo-Bug: 534682 Package-Manager: portage-2.2.20.1 - Sven Vermeulen · gentoo
sys-apps/policycoreutils: Support policy generation and don't fail on user modification
Two bugs have been reported where (1.) generating policies using "sepolgen generate" failed and (2.) changing user definitions failed. Both have been fixed upstream, and are now taken part of our patchset. Gentoo-Bug: 557370 Gentoo-Bug: 534682 Package-Manager: portage-2.2.20.1 - Justin Lecher · gentoo
Use https by default
Convert all URLs for sites supporting encrypted connections from http to https Signed-off-by: Justin Lecher <jlec@gentoo.org> - Robin H. Johnson · gentoo
proj/gentoo: Initial commit
This commit represents a new era for Gentoo: Storing the gentoo-x86 tree in Git, as converted from CVS. This commit is the start of the NEW history. Any historical data is intended to be grafted onto this point. Creation process: 1. Take final CVS checkout snapshot 2. Remove ALL ChangeLog* files 3. Transform all Manifests to thin 4. Remove empty Manifests 5. Convert all stale $Header$/$Id$ CVS keywords to non-expanded Git $Id$ 5.1. Do not touch files with -kb/-ko keyword flags. Signed-off-by: Robin H. Johnson <robbat2@gentoo.org> X-Thanks: Alec Warner <antarus@gentoo.org> - did the GSoC 2006 migration tests X-Thanks: Robin H. Johnson <robbat2@gentoo.org> - infra guy, herding this project X-Thanks: Nguyen Thai Ngoc Duy <pclouds@gentoo.org> - Former Gentoo developer, wrote Git features for the migration X-Thanks: Brian Harring <ferringb@gentoo.org> - wrote much python to improve cvs2svn X-Thanks: Rich Freeman <rich0@gentoo.org> - validation scripts X-Thanks: Patrick Lauer <patrick@gentoo.org> - Gentoo dev, running new 2014 work in migration X-Thanks: Michał Górny <mgorny@gentoo.org> - scripts, QA, nagging X-Thanks: All of other Gentoo developers - many ideas and lots of paint on the bikeshed