summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorChris PeBenito <pebenito@gentoo.org>2007-11-27 02:46:45 +0000
committerChris PeBenito <pebenito@gentoo.org>2007-11-27 02:46:45 +0000
commit024ff1a909124ad4db549e38252bfcdcfa716dba (patch)
tree3fdd05dd3da5cb3e43be606ffc36165ce899750a /sec-policy/selinux-base-policy
parentVersion bump. (diff)
downloadgentoo-2-024ff1a909124ad4db549e38252bfcdcfa716dba.tar.gz
gentoo-2-024ff1a909124ad4db549e38252bfcdcfa716dba.tar.bz2
gentoo-2-024ff1a909124ad4db549e38252bfcdcfa716dba.zip
update selinux policy to current refpolicy release
(Portage version: 2.1.4_rc3)
Diffstat (limited to 'sec-policy/selinux-base-policy')
-rw-r--r--sec-policy/selinux-base-policy/ChangeLog8
-rw-r--r--sec-policy/selinux-base-policy/files/digest-selinux-base-policy-200709283
-rw-r--r--sec-policy/selinux-base-policy/files/modules.conf.strict.2007092845
-rw-r--r--sec-policy/selinux-base-policy/files/modules.conf.targeted.2007092846
-rw-r--r--sec-policy/selinux-base-policy/selinux-base-policy-20070928.ebuild110
5 files changed, 211 insertions, 1 deletions
diff --git a/sec-policy/selinux-base-policy/ChangeLog b/sec-policy/selinux-base-policy/ChangeLog
index 756266902383..6b38e2af975f 100644
--- a/sec-policy/selinux-base-policy/ChangeLog
+++ b/sec-policy/selinux-base-policy/ChangeLog
@@ -1,6 +1,12 @@
# ChangeLog for sec-policy/selinux-base-policy
# Copyright 2000-2007 Gentoo Foundation; Distributed under the GPL v2
-# $Header: /var/cvsroot/gentoo-x86/sec-policy/selinux-base-policy/ChangeLog,v 1.58 2007/06/04 00:26:41 pebenito Exp $
+# $Header: /var/cvsroot/gentoo-x86/sec-policy/selinux-base-policy/ChangeLog,v 1.59 2007/11/27 02:45:51 pebenito Exp $
+
+*selinux-base-policy-20070928 (26 Nov 2007)
+
+ 26 Nov 2007; Chris PeBenito <pebenito@gentoo.org>
+ +selinux-base-policy-20070928.ebuild:
+ New SVN snapshot.
04 Jun 2007; Chris PeBenito <pebenito@gentoo.org>
selinux-base-policy-20070329.ebuild:
diff --git a/sec-policy/selinux-base-policy/files/digest-selinux-base-policy-20070928 b/sec-policy/selinux-base-policy/files/digest-selinux-base-policy-20070928
new file mode 100644
index 000000000000..4a082daf116f
--- /dev/null
+++ b/sec-policy/selinux-base-policy/files/digest-selinux-base-policy-20070928
@@ -0,0 +1,3 @@
+MD5 a74953fe5c25a2629855b52906fc9c69 refpolicy-20070928.tar.bz2 424987
+RMD160 e0ea91df7673cd5412abfa8a268c241049a44fd6 refpolicy-20070928.tar.bz2 424987
+SHA256 5d607e639d3ec86027e57fefa8f2795930e905843f7a6a971385e4d173474f49 refpolicy-20070928.tar.bz2 424987
diff --git a/sec-policy/selinux-base-policy/files/modules.conf.strict.20070928 b/sec-policy/selinux-base-policy/files/modules.conf.strict.20070928
new file mode 100644
index 000000000000..fb65e0077ca7
--- /dev/null
+++ b/sec-policy/selinux-base-policy/files/modules.conf.strict.20070928
@@ -0,0 +1,45 @@
+application = base
+authlogin = base
+bootloader = base
+clock = base
+consoletype = base
+corecommands = base
+corenetwork = base
+cron = base
+devices = base
+dmesg = base
+domain = base
+files = base
+filesystem = base
+fstools = base
+getty = base
+hostname = base
+hotplug = base
+init = base
+iptables = base
+kernel = base
+libraries = base
+locallogin = base
+logging = base
+lvm = base
+miscfiles = base
+mcs = base
+mls = base
+modutils = base
+mount = base
+mta = base
+netutils = base
+nscd = base
+portage = base
+raid = base
+rsync = base
+selinux = base
+selinuxutil = base
+ssh = base
+storage = base
+su = base
+sysnetwork = base
+terminal = base
+udev = base
+userdomain = base
+usermanage = base
diff --git a/sec-policy/selinux-base-policy/files/modules.conf.targeted.20070928 b/sec-policy/selinux-base-policy/files/modules.conf.targeted.20070928
new file mode 100644
index 000000000000..08ba1f782947
--- /dev/null
+++ b/sec-policy/selinux-base-policy/files/modules.conf.targeted.20070928
@@ -0,0 +1,46 @@
+application = base
+authlogin = base
+bootloader = base
+clock = base
+consoletype = base
+corecommands = base
+corenetwork = base
+cron = base
+devices = base
+dmesg = base
+domain = base
+files = base
+filesystem = base
+fstools = base
+getty = base
+hostname = base
+hotplug = base
+init = base
+iptables = base
+kernel = base
+libraries = base
+locallogin = base
+logging = base
+lvm = base
+miscfiles = base
+mcs = base
+mls = base
+modutils = base
+mount = base
+mta = base
+netutils = base
+nscd = base
+portage = base
+raid = base
+rsync = base
+selinux = base
+selinuxutil = base
+ssh = base
+storage = base
+su = base
+sysnetwork = base
+terminal = base
+udev = base
+unconfined = base
+userdomain = base
+usermanage = base
diff --git a/sec-policy/selinux-base-policy/selinux-base-policy-20070928.ebuild b/sec-policy/selinux-base-policy/selinux-base-policy-20070928.ebuild
new file mode 100644
index 000000000000..6ef61fade3c0
--- /dev/null
+++ b/sec-policy/selinux-base-policy/selinux-base-policy-20070928.ebuild
@@ -0,0 +1,110 @@
+# Copyright 1999-2007 Gentoo Foundation
+# Distributed under the terms of the GNU General Public License v2
+# $Header: /var/cvsroot/gentoo-x86/sec-policy/selinux-base-policy/selinux-base-policy-20070928.ebuild,v 1.1 2007/11/27 02:45:51 pebenito Exp $
+
+IUSE=""
+
+inherit eutils
+
+DESCRIPTION="Gentoo base policy for SELinux"
+HOMEPAGE="http://www.gentoo.org/proj/en/hardened/selinux/"
+SRC_URI="http://oss.tresys.com/files/refpolicy/refpolicy-${PV}.tar.bz2"
+LICENSE="GPL-2"
+SLOT="0"
+
+#KEYWORDS="~x86 ~ppc ~sparc ~amd64 ~mips ~alpha"
+KEYWORDS="~alpha ~amd64 ~mips ~ppc ~sparc ~x86"
+
+RDEPEND=">=sys-apps/policycoreutils-1.30.30"
+DEPEND="${RDEPEND}
+ sys-devel/m4
+ >=sys-apps/checkpolicy-1.30.12"
+
+S=${WORKDIR}/
+
+src_unpack() {
+ [ -z "${POLICY_TYPES}" ] && local POLICY_TYPES="strict targeted"
+ MOD_CONF_VER="20070928"
+
+ unpack ${A}
+
+ cd "${S}/refpolicy"
+# epatch ${FILESDIR}/${PN}-${PV}.diff
+
+ for i in ${POLICY_TYPES}; do
+ mkdir -p "${S}/${i}/policy"
+ cp "${FILESDIR}/modules.conf.${i}.${MOD_CONF_VER}" \
+ "${S}/${i}/policy/modules.conf"
+ done
+}
+
+src_compile() {
+ local OPTS="MONOLITHIC=n DISTRO=gentoo QUIET=y"
+ [ -z "${POLICY_TYPES}" ] && local POLICY_TYPES="strict targeted"
+
+ cd "${S}/refpolicy"
+
+ make ${OPTS} generate || die "Failed to create generated module files"
+
+ make ${OPTS} xml || die "XML generation failed."
+
+ for i in ${POLICY_TYPES}; do
+# make ${OPTS} TYPE=${i} NAME=${i} LOCAL_ROOT="${S}/${i}" conf \
+# || die "${i} modules.conf update failed"
+
+ make ${OPTS} TYPE=${i} NAME=${i} LOCAL_ROOT="${S}/${i}" base \
+ || die "${i} compile failed"
+ done
+}
+
+src_install() {
+ local OPTS="MONOLITHIC=n DISTRO=gentoo QUIET=y DESTDIR=${D}"
+ [ -z "${POLICY_TYPES}" ] && local POLICY_TYPES="strict targeted"
+
+ cd "${S}/refpolicy"
+
+ for i in ${POLICY_TYPES}; do
+ make ${OPTS} TYPE=${i} NAME=${i} LOCAL_ROOT="${S}/${i}" install \
+ || die "${i} install failed."
+
+ make ${OPTS} TYPE=${i} NAME=${i} install-headers \
+ || die "${i} headers install failed."
+
+ echo "run_init_t" > "${D}/etc/selinux/${i}/contexts/run_init_type"
+
+ echo "textrel_shlib_t" >> "${D}/etc/selinux/${i}/contexts/customizable_types"
+
+ # libsemanage won't make this on its own
+ keepdir "/etc/selinux/${i}/policy"
+ done
+
+ dodoc doc/Makefile.example doc/example.{te,fc,if}
+
+ insinto /etc/selinux
+ doins "${FILESDIR}/config"
+}
+
+pkg_postinst() {
+ [ -z "${POLICY_TYPES}" ] && local POLICY_TYPES="strict targeted"
+
+ if has "loadpolicy" $FEATURES ; then
+ for i in ${POLICY_TYPES}; do
+ einfo "Inserting base module into ${i} module store."
+
+ cd "/usr/share/selinux/${i}"
+ semodule -s "${i}" -b base.pp
+ done
+ else
+ echo
+ echo
+ eerror "Policy has not been loaded. It is strongly suggested"
+ eerror "that the policy be loaded before continuing!!"
+ echo
+ einfo "Automatic policy loading can be enabled by adding"
+ einfo "\"loadpolicy\" to the FEATURES in make.conf."
+ echo
+ echo
+ ebeep 4
+ epause 4
+ fi
+}