John Johansen
|
39f20fd3b1
|
move old profile parsing library into deprecated
|
2008-05-19 22:54:06 +00:00 |
|
John Johansen
|
02235cc3cb
|
move old log parsing library into deprecated
|
2008-05-19 22:53:08 +00:00 |
|
John Johansen
|
7d30be5087
|
move libapparmor into the libraries directory
|
2008-05-19 22:48:31 +00:00 |
|
John Johansen
|
332c5f908a
|
make a libraries dir
|
2008-05-19 22:47:36 +00:00 |
|
John Johansen
|
4c3f1268aa
|
move yastui to deprecated as the YaST ui is now being maintained and developed in the YaST svn
|
2008-05-19 22:46:34 +00:00 |
|
John Johansen
|
ddf2704a42
|
default owner_toggle to off it is not in the config file
|
2008-05-19 22:43:24 +00:00 |
|
John Johansen
|
f6824704c5
|
fix profile variables with no value to have empty string, as the parser doesn't support having no value yet
|
2008-05-07 18:38:53 +00:00 |
|
John Johansen
|
5eb6218708
|
add missing tunables file
|
2008-05-07 12:07:28 +00:00 |
|
John Johansen
|
10a2b621f4
|
fix initscript removal of profiles without attachment specification
|
2008-04-24 18:34:21 +00:00 |
|
John Johansen
|
51558b0b19
|
add missing ; to complain and enforce. copy fix over to audit
|
2008-04-24 18:24:02 +00:00 |
|
John Johansen
|
fe9ae3968b
|
- d_path path fix
- remove use of fgetattr
- fix named transitions
|
2008-04-24 17:31:08 +00:00 |
|
John Johansen
|
cbdea9c7c2
|
Add new exec modes and many bug fixes
|
2008-04-24 16:05:33 +00:00 |
|
John Johansen
|
d4856f9680
|
latest version of the patches, updated off of 2.6.25 dev
|
2008-04-19 23:08:39 +00:00 |
|
John Johansen
|
8c5f77c4bd
|
Add AppArmor 2.3 kernel patches for 2.6.25
|
2008-04-19 17:49:10 +00:00 |
|
John Johansen
|
d85344df63
|
add support for user rules
|
2008-04-18 21:16:15 +00:00 |
|
John Johansen
|
3db6bd6c54
|
more audit support. file rules this time
|
2008-04-18 21:10:25 +00:00 |
|
John Johansen
|
fe5a2b35ee
|
remap includes to do {}{} link the profiles use {profile}{profile}
|
2008-04-18 21:09:53 +00:00 |
|
John Johansen
|
e06d1bf84b
|
add support for audit keyword
|
2008-04-18 21:09:05 +00:00 |
|
John Johansen
|
ad996cec9c
|
add support for set capability
|
2008-04-18 21:08:34 +00:00 |
|
John Johansen
|
94c795aa52
|
Hrmm. Actually add support for deny rules
|
2008-04-18 21:08:05 +00:00 |
|
John Johansen
|
ac273b33f8
|
Add support for deny rules
|
2008-04-18 21:07:37 +00:00 |
|
John Johansen
|
9b7912c39f
|
add an extra hash level to distiguish between allow and deny - only use allow
|
2008-04-18 21:07:16 +00:00 |
|
John Johansen
|
36e0d38fc4
|
rename global vartable to the filetable
|
2008-04-18 21:06:24 +00:00 |
|
John Johansen
|
8d715ce9d6
|
make it so just reading an embedded hat doesn't cause the profile to be rewritten
|
2008-04-18 21:04:54 +00:00 |
|
John Johansen
|
6e87b3f004
|
add enough support for cx modes that parsing can succeed
|
2008-04-18 21:04:16 +00:00 |
|
John Johansen
|
bc652326a7
|
refactor to pass the profile down, as a step to making routines more generic and independant
|
2008-04-18 21:03:28 +00:00 |
|
John Johansen
|
1c8b9a51e4
|
make modes be stored as a bit set and use bit operations
|
2008-04-18 21:02:47 +00:00 |
|
John Johansen
|
83a35b57c2
|
give paths a sub hash to store mode into
|
2008-04-18 21:02:07 +00:00 |
|
John Johansen
|
e43a4769be
|
retain the filename the profile was loaded from and use that when writting it back out
|
2008-04-18 21:01:10 +00:00 |
|
John Johansen
|
f213706f17
|
support retaining variables in the head of the file
|
2008-04-18 21:00:35 +00:00 |
|
John Johansen
|
5a088a1a47
|
change order that rules are output in
|
2008-04-18 20:59:42 +00:00 |
|
John Johansen
|
0cbaee9902
|
support parsing retaining of subset on link rules
|
2008-04-18 20:59:00 +00:00 |
|
John Johansen
|
a67cfbbb30
|
keep variables
|
2008-04-18 20:58:07 +00:00 |
|
John Johansen
|
2a0dc5aae9
|
keep change_hat rules
|
2008-04-18 20:57:51 +00:00 |
|
John Johansen
|
d07689e2a7
|
support and keep profiles using the profile keyword
|
2008-04-18 20:57:33 +00:00 |
|
John Johansen
|
5d1d6d31c3
|
keep set capability rules
|
2008-04-18 20:57:01 +00:00 |
|
John Johansen
|
03728a0155
|
keep rlimit rules
|
2008-04-18 20:56:41 +00:00 |
|
John Johansen
|
715952ce0d
|
keep alias rules
|
2008-04-18 20:56:26 +00:00 |
|
John Johansen
|
de95e8b6ef
|
keep change_profile rules
|
2008-04-18 20:56:08 +00:00 |
|
John Johansen
|
cda1e94f8a
|
basic patch to link rules
|
2008-04-18 20:55:43 +00:00 |
|
John Johansen
|
7ec531f4e8
|
try to make some general writer routines
|
2008-04-18 20:55:11 +00:00 |
|
John Johansen
|
e48fccb6d0
|
simple patch to map u::g modes into old style
|
2008-04-18 20:50:18 +00:00 |
|
John Johansen
|
e25c4dad06
|
fix bug where task was getting dropped
|
2008-04-18 20:49:48 +00:00 |
|
John Johansen
|
89b9ef516a
|
don't change locale if yast has already set them
|
2008-04-18 20:49:00 +00:00 |
|
John Johansen
|
3efb4ea353
|
allow bare x in named transitions
|
2008-04-18 00:40:40 +00:00 |
|
Steve Beattie
|
7a751a53f6
|
Not sure why the close of stdout and redirection of the pipe was here,
given that the following write was to the specific file descriptor in
the pipe.
|
2008-04-17 22:09:05 +00:00 |
|
Steve Beattie
|
c0275d06eb
|
Fix up some dependencies in parser_misc.c's unit test build.
|
2008-04-16 16:27:23 +00:00 |
|
Steve Beattie
|
e41a326ef5
|
Add a flag so that 'make check V=1' will turn on verbose output.
|
2008-04-16 16:09:36 +00:00 |
|
John Johansen
|
ee03760c1d
|
disable named transition conversion to cx. Needs to be reworked
|
2008-04-16 08:48:06 +00:00 |
|
John Johansen
|
11f925abba
|
fix named transition, enable cx to imply transition to local profile, without having to specify name
|
2008-04-16 06:54:51 +00:00 |
|