Hello community,
here is the log from the commit of package polkit-default-privs for
openSUSE:Factory checked in at 2019-09-11 10:17:30
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Comparing /work/SRC/openSUSE:Factory/polkit-default-privs (Old)
and /work/SRC/openSUSE:Factory/.polkit-default-privs.new.7948 (New)
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "polkit-default-privs"
Wed Sep 11 10:17:30 2019 rev:171 rq:728566 version:13.2+20190905.0016c47
Changes:
--------
---
/work/SRC/openSUSE:Factory/polkit-default-privs/polkit-default-privs.changes
2019-08-07 14:00:01.264853779 +0200
+++
/work/SRC/openSUSE:Factory/.polkit-default-privs.new.7948/polkit-default-privs.changes
2019-09-11 10:17:34.835531704 +0200
@@ -1,0 +2,20 @@
+Thu Sep 05 16:09:07 UTC 2019 - [email protected]
+
+- Update to version 13.2+20190905.0016c47:
+ * whitelist new systemd-resolved actions (bnc#1149216)
+
+-------------------------------------------------------------------
+Tue Aug 27 14:52:51 UTC 2019 - [email protected]
+
+- Update to version 13.2+20190827.0cc2a82:
+ * make new systemd rules more restrictive (boo#1146300,
+ boo#1145639)
+
+-------------------------------------------------------------------
+Fri Aug 23 11:39:36 UTC 2019 - [email protected]
+
+- Update to version 13.2+20190823.a5f89c3:
+ * systemd-networkd (boo#1146300)
+ * systemd-portabled (boo#1145639)
+
+-------------------------------------------------------------------
Old:
----
polkit-default-privs-13.2+20190806.841a06b.tar.xz
New:
----
polkit-default-privs-13.2+20190905.0016c47.tar.xz
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Other differences:
------------------
++++++ polkit-default-privs.spec ++++++
--- /var/tmp/diff_new_pack.T8udvq/_old 2019-09-11 10:17:35.371531638 +0200
+++ /var/tmp/diff_new_pack.T8udvq/_new 2019-09-11 10:17:35.379531637 +0200
@@ -23,7 +23,7 @@
%endif
Name: polkit-default-privs
-Version: 13.2+20190806.841a06b
+Version: 13.2+20190905.0016c47
Release: 0
Summary: SUSE PolicyKit default permissions
License: GPL-2.0-or-later
++++++ _servicedata ++++++
--- /var/tmp/diff_new_pack.T8udvq/_old 2019-09-11 10:17:35.419531632 +0200
+++ /var/tmp/diff_new_pack.T8udvq/_new 2019-09-11 10:17:35.419531632 +0200
@@ -1,4 +1,4 @@
<servicedata>
<service name="tar_scm">
<param
name="url">https://github.com/openSUSE/polkit-default-privs.git</param>
- <param
name="changesrevision">841a06b95855723d33430852f85e7dea528fb10c</param></service></servicedata>
\ No newline at end of file
+ <param
name="changesrevision">0016c47f6a5b9e6183ad77bc3f8f79d7b39566ab</param></service></servicedata>
\ No newline at end of file
++++++ polkit-default-privs-13.2+20190806.841a06b.tar.xz ->
polkit-default-privs-13.2+20190905.0016c47.tar.xz ++++++
diff -urN '--exclude=CVS' '--exclude=.cvsignore' '--exclude=.svn'
'--exclude=.svnignore'
old/polkit-default-privs-13.2+20190806.841a06b/profiles/polkit-default-privs.easy
new/polkit-default-privs-13.2+20190905.0016c47/profiles/polkit-default-privs.easy
---
old/polkit-default-privs-13.2+20190806.841a06b/profiles/polkit-default-privs.easy
2019-08-06 10:57:00.000000000 +0200
+++
new/polkit-default-privs-13.2+20190905.0016c47/profiles/polkit-default-privs.easy
2019-09-05 17:28:28.000000000 +0200
@@ -405,12 +405,38 @@
# systemd follow-up for resolve actions (bnc#1096907)
org.freedesktop.resolve1.register-service auth_admin
org.freedesktop.resolve1.unregister-service auth_admin
+# resolve actions from bnc#1149216
+org.freedesktop.resolve1.revert
auth_admin:auth_admin:auth_admin_keep
+org.freedesktop.resolve1.set-dnssec-negative-trust-anchors
auth_admin:auth_admin:auth_admin_keep
+org.freedesktop.resolve1.set-dnssec
auth_admin:auth_admin:auth_admin_keep
+org.freedesktop.resolve1.set-dns-over-tls
auth_admin:auth_admin:auth_admin_keep
+org.freedesktop.resolve1.set-mdns
auth_admin:auth_admin:auth_admin_keep
+org.freedesktop.resolve1.set-llmnr
auth_admin:auth_admin:auth_admin_keep
+org.freedesktop.resolve1.set-default-route
auth_admin:auth_admin:auth_admin_keep
+org.freedesktop.resolve1.set-domains
auth_admin:auth_admin:auth_admin_keep
+org.freedesktop.resolve1.set-dns-servers
auth_admin:auth_admin:auth_admin_keep
# systemd get-product-uuid incremental addition (bsc#1127847)
org.freedesktop.hostname1.get-product-uuid auth_admin
# systemd org.freedesktop.login1.* services (bsc#1133843)
org.freedesktop.login1.set-reboot-parameter auth_admin_keep
org.freedesktop.login1.set-reboot-to-boot-loader-entry auth_admin_keep
org.freedesktop.login1.set-reboot-to-boot-loader-menu auth_admin_keep
+# portabled (boo#1145639)
+org.freedesktop.portable1.attach-images auth_admin_keep
+org.freedesktop.portable1.inspect-images auth_admin_keep
+org.freedesktop.portable1.manage-images auth_admin_keep
+# networkd (boo#1146300)
+org.freedesktop.network1.revert-dns auth_admin_keep
+org.freedesktop.network1.revert-ntp auth_admin_keep
+org.freedesktop.network1.set-default-route auth_admin_keep
+org.freedesktop.network1.set-dns-over-tls auth_admin_keep
+org.freedesktop.network1.set-dns-servers auth_admin_keep
+org.freedesktop.network1.set-dnssec auth_admin_keep
+org.freedesktop.network1.set-dnssec-negative-trust-anchors auth_admin_keep
+org.freedesktop.network1.set-domains auth_admin_keep
+org.freedesktop.network1.set-llmnr auth_admin_keep
+org.freedesktop.network1.set-mdns auth_admin_keep
+org.freedesktop.network1.set-ntp-servers auth_admin_keep
# gnome-control-center
org.gnome.randr.install-system-wide auth_admin
diff -urN '--exclude=CVS' '--exclude=.cvsignore' '--exclude=.svn'
'--exclude=.svnignore'
old/polkit-default-privs-13.2+20190806.841a06b/profiles/polkit-default-privs.restrictive
new/polkit-default-privs-13.2+20190905.0016c47/profiles/polkit-default-privs.restrictive
---
old/polkit-default-privs-13.2+20190806.841a06b/profiles/polkit-default-privs.restrictive
2019-08-06 10:57:00.000000000 +0200
+++
new/polkit-default-privs-13.2+20190905.0016c47/profiles/polkit-default-privs.restrictive
2019-09-05 17:28:28.000000000 +0200
@@ -391,12 +391,38 @@
# systemd follow-up for resolve actions (bnc#1096907)
org.freedesktop.resolve1.register-service auth_admin
org.freedesktop.resolve1.unregister-service auth_admin
+# resolve actions from bnc#1149216
+org.freedesktop.resolve1.revert auth_admin
+org.freedesktop.resolve1.set-dnssec-negative-trust-anchors auth_admin
+org.freedesktop.resolve1.set-dnssec auth_admin
+org.freedesktop.resolve1.set-dns-over-tls auth_admin
+org.freedesktop.resolve1.set-mdns auth_admin
+org.freedesktop.resolve1.set-llmnr auth_admin
+org.freedesktop.resolve1.set-default-route auth_admin
+org.freedesktop.resolve1.set-domains auth_admin
+org.freedesktop.resolve1.set-dns-servers auth_admin
# systemd get-product-uuid incremental addition (bsc#1127847)
org.freedesktop.hostname1.get-product-uuid auth_admin
# systemd org.freedesktop.login1.* services (bsc#1133843)
org.freedesktop.login1.set-reboot-parameter auth_admin_keep
org.freedesktop.login1.set-reboot-to-boot-loader-entry auth_admin_keep
org.freedesktop.login1.set-reboot-to-boot-loader-menu auth_admin_keep
+# portabled (boo#1145639)
+org.freedesktop.portable1.attach-images auth_admin
+org.freedesktop.portable1.inspect-images auth_admin
+org.freedesktop.portable1.manage-images auth_admin
+# networkd (boo#1146300)
+org.freedesktop.network1.revert-dns auth_admin
+org.freedesktop.network1.revert-ntp auth_admin
+org.freedesktop.network1.set-default-route auth_admin
+org.freedesktop.network1.set-dns-over-tls auth_admin
+org.freedesktop.network1.set-dns-servers auth_admin
+org.freedesktop.network1.set-dnssec auth_admin
+org.freedesktop.network1.set-dnssec-negative-trust-anchors auth_admin
+org.freedesktop.network1.set-domains auth_admin
+org.freedesktop.network1.set-llmnr auth_admin
+org.freedesktop.network1.set-mdns auth_admin
+org.freedesktop.network1.set-ntp-servers auth_admin
# gnome-control-center
org.gnome.randr.install-system-wide auth_admin
diff -urN '--exclude=CVS' '--exclude=.cvsignore' '--exclude=.svn'
'--exclude=.svnignore'
old/polkit-default-privs-13.2+20190806.841a06b/profiles/polkit-default-privs.standard
new/polkit-default-privs-13.2+20190905.0016c47/profiles/polkit-default-privs.standard
---
old/polkit-default-privs-13.2+20190806.841a06b/profiles/polkit-default-privs.standard
2019-08-06 10:57:00.000000000 +0200
+++
new/polkit-default-privs-13.2+20190905.0016c47/profiles/polkit-default-privs.standard
2019-09-05 17:28:28.000000000 +0200
@@ -406,12 +406,38 @@
# systemd follow-up for resolve actions (bnc#1096907)
org.freedesktop.resolve1.register-service auth_admin
org.freedesktop.resolve1.unregister-service auth_admin
+# resolve actions from bnc#1149216
+org.freedesktop.resolve1.revert
auth_admin:auth_admin:auth_admin_keep
+org.freedesktop.resolve1.set-dnssec-negative-trust-anchors
auth_admin:auth_admin:auth_admin_keep
+org.freedesktop.resolve1.set-dnssec
auth_admin:auth_admin:auth_admin_keep
+org.freedesktop.resolve1.set-dns-over-tls
auth_admin:auth_admin:auth_admin_keep
+org.freedesktop.resolve1.set-mdns
auth_admin:auth_admin:auth_admin_keep
+org.freedesktop.resolve1.set-llmnr
auth_admin:auth_admin:auth_admin_keep
+org.freedesktop.resolve1.set-default-route
auth_admin:auth_admin:auth_admin_keep
+org.freedesktop.resolve1.set-domains
auth_admin:auth_admin:auth_admin_keep
+org.freedesktop.resolve1.set-dns-servers
auth_admin:auth_admin:auth_admin_keep
# systemd get-product-uuid incremental addition (bsc#1127847)
org.freedesktop.hostname1.get-product-uuid auth_admin
# systemd org.freedesktop.login1.* services (bsc#1133843)
org.freedesktop.login1.set-reboot-parameter auth_admin_keep
org.freedesktop.login1.set-reboot-to-boot-loader-entry auth_admin_keep
org.freedesktop.login1.set-reboot-to-boot-loader-menu auth_admin_keep
+# portabled (boo#1145639)
+org.freedesktop.portable1.attach-images
auth_admin:auth_admin:auth_admin_keep
+org.freedesktop.portable1.inspect-images
auth_admin:auth_admin:auth_admin_keep
+org.freedesktop.portable1.manage-images
auth_admin:auth_admin:auth_admin_keep
+# networkd (boo#1146300)
+org.freedesktop.network1.revert-dns
auth_admin:auth_admin:auth_admin_keep
+org.freedesktop.network1.revert-ntp
auth_admin:auth_admin:auth_admin_keep
+org.freedesktop.network1.set-default-route
auth_admin:auth_admin:auth_admin_keep
+org.freedesktop.network1.set-dns-over-tls
auth_admin:auth_admin:auth_admin_keep
+org.freedesktop.network1.set-dns-servers
auth_admin:auth_admin:auth_admin_keep
+org.freedesktop.network1.set-dnssec
auth_admin:auth_admin:auth_admin_keep
+org.freedesktop.network1.set-dnssec-negative-trust-anchors
auth_admin:auth_admin:auth_admin_keep
+org.freedesktop.network1.set-domains
auth_admin:auth_admin:auth_admin_keep
+org.freedesktop.network1.set-llmnr
auth_admin:auth_admin:auth_admin_keep
+org.freedesktop.network1.set-mdns
auth_admin:auth_admin:auth_admin_keep
+org.freedesktop.network1.set-ntp-servers
auth_admin:auth_admin:auth_admin_keep
# gnome-control-center
org.gnome.randr.install-system-wide auth_admin