blob: d2756bcb1c685e17744e91fc8c404b61f7edd407 [file] [log] [blame]
Stephen Smalley3057bcf2015-03-18 08:33:45 -04001 * Add device tree ocontext nodes to Xen policy, from Daniel De Graaf.
2
Steve Lawrencef0c99662015-02-02 09:38:10 -050031.2.2 2015-02-02
Steve Lawrenceff5bbe62014-10-01 14:47:16 -04004 * Fix bugs found by hardened gcc flags, from Nicolas Iooss.
Steve Lawrence79fd2d02014-08-26 09:48:54 -04005 * Remove unnecessary grammar in interface call param list to fix poor
Steve Lawrence8f9d3a72014-08-26 13:58:44 -04006 interface vectors, from Steve Lawrence
Steve Lawrence79fd2d02014-08-26 09:48:54 -04007
Stephen Smalley75fdea92013-10-31 10:13:10 -040081.2.1 2013-10-31
9 * Add back attributes flag to fix exception crash from Dan Walsh.
10
Stephen Smalley7c4bb772013-10-30 12:45:19 -0400111.2 2013-10-30
Stephen Smalley8e5d4652013-10-30 12:42:05 -040012 * Return additional constraint information.
Stephen Smalleya0801002013-10-25 15:14:23 -040013 * Fix bug in calls to attributes from Dan Walsh.
14 * Add support for filename transitions from Dan Walsh.
15 * Fix sepolgen tests from Dan Walsh.
16
Eric Parise9410c92013-02-01 16:57:55 -0500171.1.9 2013-02-01
18 * audit.py: Handle times in foreign locals for audit2allow -b
19 * Use refpolicy_makefile() instead of hardcoding Makefile path
20 * understand role attributes
21
Eric Paris86381972012-09-13 10:33:58 -0400221.1.8 2012-09-13
23 * Allow returning of bastard matches
24 * sepolgen: return and output constraint violation information
25 * audit2allow: one role/type pair per line
26
Eric Parisf05a71b2012-06-28 14:02:29 -0400271.1.7 2012-06-28
28 * Make use of setools optional within sepolgen
29 * We need to support files that have a + in them
30
Eric Paris7a86fe12012-03-28 15:44:05 -0400311.1.6 2012-03-28
32 * Fix dead links to www.nsa.gov/selinux
33 * audit.py Dont crash if empty data is passed to sepolgen
34 * do not use md5 when calculating hash signatures
35 * fix detection of policy loads
36
Eric Paris339f8072011-12-21 12:46:04 -0500371.1.5 2011-12-21
38 * better analysis of why things broke
39
Eric Parisd65c02f2011-12-05 16:20:45 -0500401.1.4 2011-12-05
41 * Allow ~ as a file identifier
42
Eric Paris14e4b702011-11-03 15:26:36 -0400431.1.3 2011-11-03
44 * Ignore permissive qualifier if found in an interface
45 * Return name field in avc data
46
Eric Paris418dbc72011-09-16 15:34:36 -0400471.1.2 2011-09-15
48 * src: sepolgen: add attribute storing infrastructure
49 * Change perm-map and add open to try to get better results on
50 * look for booleans that might solve problems
51 * sepolgen: audit2allow is mistakakenly not allowing valid module names
52 * tree: default make target to all not install
53
Eric Paris1f8cf402011-08-26 15:11:58 -0400541.1.1 2011-08-26
55 * refparser: include open among valid permissions
56 * refparser: add support for filename_trans rules
57
Steve Lawrence44121f62011-07-26 09:39:09 -0400581.1.0 2011-07-27
59 * Release, minor version bump
60
Joshua Brindle4bbaeeb2010-03-24 13:47:39 -0400611.0.23 2010-03-24
62 * Fix unit tests from Dan Walsh.
63
641.0.22 2010-03-23
65 * improve parser error recovery from Karl MacMillan.
66
Joshua Brindlee796cee2010-03-18 16:52:16 -0400671.0.21 2010-03-18
68 * Add since-last-boot option to audit2allow from Dan Walsh.
69 * Fix sepolgen output to match what Chris expects for upstream
70 refpolicy from Dan Walsh.
71
Joshua Brindleb5b2c2c2010-03-12 08:32:38 -0500721.0.20 2010-03-12
73 * Add dontaudit flag to audit2allow from Dan Walsh.
74
Joshua Brindle32cf5d52009-11-27 15:03:02 -0500751.0.19 2009-11-27
76 * fix sepolgen to read a "type 1403" msg as a policy load by Stephen
77 Smalley <sds@tycho.nsa.gov>
78
Joshua Brindlef3c3bbd2009-10-14 15:54:16 -0400791.0.18 2009-10-14
80 * Add support for Xen ocontexts from Paul Nuzzi.
81
Joshua Brindle4fabd7d2009-05-05 20:20:36 -0400821.0.17 2009-05-15
83 * Fix typo in RoleTypeSet from Marshall Miller.
84
Joshua Brindle6ed00ee2009-02-17 12:19:32 -0500851.0.16 2009-02-18
86 * Convert sepolgen to using hashlib instead of the deprecated md5
87 module from Dan Walsh.
88
Joshua Brindlea5dfb3a2009-01-12 10:49:36 -0500891.0.15 2009-01-12
90 * fix to return length of role dict for len(roles) from Dan Walsh.
91
Joshua Brindle5214ee32008-09-07 18:57:50 -0400921.0.14 2008-09-12
93 * fix multiple gen_requires block generation from Dan Walsh.
94
Joshua Brindle13cd4c82008-08-19 15:30:36 -0400951.0.13 2008-07-29
96 * Only append s0 suffix if MLS is enabled from Karl MacMillan.
97
981.0.12 2008-06-30
99 * Fix generation of role-type and role allow rules from Karl MacMillan.
100
1011.0.11 2008-01-23
102 * Merged sepolgen fixes from Dan Walsh.
103
1041.0.10 2007-09-10
105 * Expand the sepolgen parser to parse all current refpolicy modules from Karl MacMillan.
106 * Suppress generation of rules for non-denials from Karl MacMillan (take 3).
107
1081.0.9 2007-08-16
109 * Supress generation of rules for non-denials from Karl MacMillan.
110
1111.0.8 2007-04-10
112 * Merged updates to sepolgen parser and tools from Karl MacMillan.
113 This includes improved debugging support, handling of interface
114 calls with list parameters, support for role transition rules,
115 updated range transition rule support, and looser matching.
116
1171.0.7 2007-03-26
118 * Merged patch to discard self from types when generating requires from Karl MacMillan.
119
1201.0.6 2007-03-21
121 * Merged patch to move the sepolgen runtime data from /usr/share to /var/lib to facilitate a read-only /usr from Karl MacMillan.
122
1231.0.5 2007-03-21
124 * Merged patch to fix type_transition style and unit tests from Karl MacMillan.
125
1261.0.4 2007-03-01
127 * Merged better matching for refpolicy style from Karl MacMillan
128 * Merged support for extracting interface paramaters from interface calls from Karl MacMillan
129 * Merged support for parsing USER_AVC audit messages from Karl MacMillan.
130
1311.0.3 2007-02-27
132 * Merged support for enabling parser debugging from Karl MacMillan.
133
1341.0.2 2007-02-22
135 * Merged patch to leave generated files (e.g. local.te) in current directory from Karl MacMillan.
136 * Merged patch to make run-tests.py use unittest.main from Karl MacMillan.
137 * Merged patch to update PLY from Karl MacMillan.
138 * Merged patch to update the sepolgen parser to handle the latest reference policy from Karl MacMillan.
139
1401.0.1 2007-02-21
141 * Merged Makefile and refparser.py patch from Dan Walsh.
142 Fixes PYTHONLIBDIR definition and error handling on interface files.
143
1441.0.0 2007-02-05
145 * Initial merge from Karl MacMillan.
146