Hello community,
here is the log from the commit of package polkit-default-privs for
openSUSE:Factory checked in at 2016-09-21 18:30:23
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Comparing /work/SRC/openSUSE:Factory/polkit-default-privs (Old)
and /work/SRC/openSUSE:Factory/.polkit-default-privs.new (New)
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "polkit-default-privs"
Changes:
--------
---
/work/SRC/openSUSE:Factory/polkit-default-privs/polkit-default-privs.changes
2016-07-01 09:51:01.000000000 +0200
+++
/work/SRC/openSUSE:Factory/.polkit-default-privs.new/polkit-default-privs.changes
2016-09-21 18:30:24.000000000 +0200
@@ -1,0 +2,6 @@
+Mon Sep 12 14:04:47 UTC 2016 - [email protected]
+
+- polkit-default-privs: cleanups as per discussion with Ludwig
+- polkit-default-privs: adding rules for sysprof (bsc#996111) and
networkmanager (bsc#996110)
+
+-------------------------------------------------------------------
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Other differences:
------------------
++++++ polkit-default-privs-13.2.tar.bz2 ++++++
diff -urN '--exclude=CVS' '--exclude=.cvsignore' '--exclude=.svn'
'--exclude=.svnignore'
old/polkit-default-privs-13.2/polkit-default-privs.restrictive
new/polkit-default-privs-13.2/polkit-default-privs.restrictive
--- old/polkit-default-privs-13.2/polkit-default-privs.restrictive
2016-06-13 11:37:41.000000000 +0200
+++ new/polkit-default-privs-13.2/polkit-default-privs.restrictive
2016-09-12 12:02:22.000000000 +0200
@@ -28,6 +28,10 @@
org.freedesktop.NetworkManager.settings.modify.own auth_admin_keep
org.freedesktop.NetworkManager.settings.modify.system auth_admin_keep
org.freedesktop.NetworkManager.settings.modify.hostname auth_admin
+# bsc#996110
+org.freedesktop.NetworkManager.enable-disable-statistics auth_admin_keep
+
+#
#
org.libvirt.unix.monitor
auth_admin_keep_always
org.libvirt.unix.manage
auth_admin_keep_always
@@ -387,7 +391,7 @@
# (bnc#691896)
org.freedesktop.ModemManager.USSD auth_admin_keep
# (bsc#976945)
-org.freedesktop.ModemManager1.Voice
no:no:auth_self_keep
+org.freedesktop.ModemManager1.Voice auth_admin_keep
# urfkill (bnc#688328)
@@ -398,7 +402,7 @@
org.freedesktop.urfkill.enablekeycontrol auth_admin
# urfkill (bnc#926288)
-org.freedesktop.urfkill.flight_mode
auth_admin:auth_admin:yes
+org.freedesktop.urfkill.flight_mode auth_admin
# account services (bnc#676638)
@@ -520,12 +524,13 @@
org.selinux.config.pkexec.run no:no:auth_admin
org.selinux.relabel_on_boot auth_admin_keep
-org.selinux.customized yes:yes:yes
-org.selinux.semodule_list yes:yes:yes
+# policycoreutils (bnc#878631)
+org.selinux.customized auth_admin_keep
+org.selinux.semodule_list auth_admin_keep
# kwallet (bnc#849739)
-org.kde.kcontrol.kcmkwallet.save no:no:auth_self_keep
+org.kde.kcontrol.kcmkwallet.save auth_admin_keep
# baloo (bnc#866131)
org.kde.baloo.filewatch.raiselimit no:no:auth_admin_keep
@@ -534,10 +539,6 @@
org.debian.pcsc-lite.access_pcsc no:no:yes
org.debian.pcsc-lite.access_card no:no:yes
-# policycoreutils (bnc#878631)
-org.selinux.customized no:no:yes
-org.selinux.semodule_list no:no:yes
-
# firewalld (bnc#907625)
org.fedoraproject.FirewallD1.all auth_admin_keep
org.fedoraproject.FirewallD1.info auth_admin_keep
@@ -689,6 +690,9 @@
org.freedesktop.import1.pull
auth_admin:auth_admin:auth_admin_keep
# brltty (bsc#967436)
-org.brltty.write-display no:no:yes
+org.brltty.write-display auth_admin_keep
+
+# sysprof (bsc#996111)
+org.gnome.sysprof2.perf-event-open auth_admin_keep
###
diff -urN '--exclude=CVS' '--exclude=.cvsignore' '--exclude=.svn'
'--exclude=.svnignore'
old/polkit-default-privs-13.2/polkit-default-privs.standard
new/polkit-default-privs-13.2/polkit-default-privs.standard
--- old/polkit-default-privs-13.2/polkit-default-privs.standard 2016-06-13
11:37:41.000000000 +0200
+++ new/polkit-default-privs-13.2/polkit-default-privs.standard 2016-09-12
12:02:22.000000000 +0200
@@ -29,6 +29,8 @@
org.freedesktop.NetworkManager.settings.modify.own
auth_admin_keep:auth_admin_keep:yes
org.freedesktop.NetworkManager.settings.modify.system auth_admin_keep
org.freedesktop.NetworkManager.settings.modify.hostname auth_admin
+# bsc#996110
+org.freedesktop.NetworkManager.enable-disable-statistics no:no:yes
#
org.libvirt.unix.monitor yes
org.libvirt.unix.manage
auth_admin_keep_always
@@ -405,7 +407,7 @@
# (bnc#691896)
org.freedesktop.ModemManager.USSD auth_admin_keep
# (bsc#976945)
-org.freedesktop.ModemManager1.Voice
no:no:auth_self_keep
+org.freedesktop.ModemManager1.Voice no:no:yes
# urfkill (bnc#688328)
org.freedesktop.urfkill.block
auth_admin:auth_admin:yes
@@ -467,9 +469,9 @@
# ModemManager1 (bnc#798273, bsc#948728)
org.freedesktop.ModemManager1.Control
auth_admin:yes:yes
org.freedesktop.ModemManager1.Device.Control
auth_admin_keep:yes:yes
-org.freedesktop.ModemManager1.Contacts
auth_admin:auth_admin:auth_self_keep
-org.freedesktop.ModemManager1.Messaging
auth_admin:auth_admin:auth_self_keep
-org.freedesktop.ModemManager1.Location
auth_admin:auth_admin:auth_self_keep
+org.freedesktop.ModemManager1.Contacts
auth_admin:auth_admin:yes
+org.freedesktop.ModemManager1.Messaging
auth_admin:auth_admin:yes
+org.freedesktop.ModemManager1.Location
auth_admin:auth_admin:yes
org.freedesktop.ModemManager1.Firmware auth_admin
org.freedesktop.ModemManager1.USSD
auth_admin_keep # likely not widely used
@@ -537,12 +539,13 @@
org.selinux.config.pkexec.run no:no:auth_admin
org.selinux.relabel_on_boot auth_admin_keep
-org.selinux.customized yes:yes:yes
-org.selinux.semodule_list yes:yes:yes
+# policycoreutils (bnc#878631)
+org.selinux.customized no:no:yes
+org.selinux.semodule_list no:no:yes
# kwallet (bnc#849739)
-org.kde.kcontrol.kcmkwallet.save no:no:auth_self_keep
+org.kde.kcontrol.kcmkwallet.save no:no:yes
# baloo (bnc#866131)
org.kde.baloo.filewatch.raiselimit no:no:auth_admin_keep
@@ -551,9 +554,6 @@
org.debian.pcsc-lite.access_pcsc auth_admin:auth_admin:yes
org.debian.pcsc-lite.access_card auth_admin:auth_admin:yes
-# policycoreutils (bnc#878631)
-org.selinux.customized no:no:yes
-org.selinux.semodule_list no:no:yes
# firewalld (bnc#907625, bsc#971580)
org.fedoraproject.FirewallD1.all auth_admin_keep
@@ -755,4 +755,7 @@
# brltty (bsc#967436)
org.brltty.write-display no:no:yes
+# sysprof (bsc#996111)
+org.gnome.sysprof2.perf-event-open auth_admin_keep
+
###