Hello community,
here is the log from the commit of package policycoreutils for
openSUSE:Leap:15.2 checked in at 2020-03-21 16:45:28
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Comparing /work/SRC/openSUSE:Leap:15.2/policycoreutils (Old)
and /work/SRC/openSUSE:Leap:15.2/.policycoreutils.new.3160 (New)
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "policycoreutils"
Sat Mar 21 16:45:28 2020 rev:27 rq:785977 version:3.0
Changes:
--------
--- /work/SRC/openSUSE:Leap:15.2/policycoreutils/policycoreutils.changes
2020-02-29 17:15:27.168919893 +0100
+++
/work/SRC/openSUSE:Leap:15.2/.policycoreutils.new.3160/policycoreutils.changes
2020-03-21 16:46:37.269614314 +0100
@@ -2 +2 @@
-Tue Feb 4 16:11:48 UTC 2020 - Johannes Segitz <[email protected]>
+Mon Mar 9 08:31:11 UTC 2020 - Johannes Segitz <[email protected]>
@@ -4,2 +4,2 @@
-- Added seobject_late_init.patch to prevent failures when loading
- seobject on systems without policies (bsc#1162674)
+- Dropped Recommends: for %{name}-lang and %{name}-devel. Not
+ allowed by openSUSE guidelines
@@ -8 +8,27 @@
-Tue Dec 17 10:55:08 UTC 2019 - Johannes Segitz <[email protected]>
+Tue Mar 3 12:30:55 UTC 2020 - Johannes Segitz <[email protected]>
+
+- Update to version 3.0
+ * fixfiles: Fix "verify" option
+ * fixfiles: Fix [-B] [-F] onboot
+ * fixfiles: Force full relabel when SELinux is disabled
+ * semodule: Enable CIL logging
+ * semanage: Add support for DCCP and SCTP protocols
+ * semanage: Do not use default s0 range in "semanage login -a"
+ * semanage: Document DCCP and SCTP support
+ * semanage: Improve handling of "permissive" statements
+ * semanage: fix moduleRecords.customized()
+ Refreshed chcat_join.patch
+
+-------------------------------------------------------------------
+Thu Feb 27 16:03:36 UTC 2020 - Johannes Segitz <[email protected]>
+
+- Ship working pam config for newrole (bsc#1163020)
+- Recommend policycoreutils-devel to have perm_map file available
+
+-------------------------------------------------------------------
+Wed Feb 19 14:31:39 UTC 2020 - Johannes Segitz <[email protected]>
+
+- Package perm_map as it's used by audit2* tools
+
+-------------------------------------------------------------------
+Tue Dec 17 10:36:49 UTC 2019 - Johannes Segitz <[email protected]>
@@ -13,0 +40,47 @@
+Wed Sep 18 11:19:12 UTC 2019 - Johannes Segitz <[email protected]>
+
+- Added run_init_use_pam_keyinit.patch
+ Added pam_keyinit to the run_init pam config (bsc#1144052)
+
+-------------------------------------------------------------------
+Wed Mar 20 15:16:54 UTC 2019 - [email protected]
+
+- Update to version 2.9
+ * secon: free scon_trans before returning
+ * audit2allow/sepolgen-ifgen: show errors on stderr
+ * audit2allow: allow using audit2why as non-root user
+ * chcat: use check_call instead of getstatusoutput
+ * restorecon: add force option
+ * semanage module: Fix handling of -a/-e/-d/-r options
+ * semanage/seobject: Fix listing boolean values
+ * semanage: Drop python shebang from seobject.py
+ * semanage: Fix logger class definition
+ * semanage: Include MCS/MLS range when exporting local customizations
+ * semanage: Load a store policy and set the store SELinux policy root
+ * semanage: Start exporting "ibendport" and "ibpkey" entries
+ * semanage: Stop logging loginRecords changes
+ * semanage: Stop rejecting aliases in semanage commands
+ * semanage: Use standard argparse.error() method in handlePermissive
+ * semanage: do not show "None" levels when using a non-MLS policy
+ * semanage: import sepolicy only when it's needed
+ * semanage: move valid_types initialisations to class constructors
+ * sepolgen: close /etc/selinux/sepolgen.conf after parsing it
+ * sepolgen: fix access vector initialization
+ * sepolgen: fix refpolicy parsing of "permissive"
+ * sepolgen: print all AV rules correctly
+ * sepolgen: refpolicy installs its Makefile in include/Makefile
+ * sepolgen: return NotImplemented instead of raising it
+ * sepolgen: silence linter warning about has_key
+ * sepolgen: use self when accessing members in FilesystemUse
+ * sepolicy: Add sepolicy.load_store_policy(store)
+ * sepolicy: Make policy files sorting more robust
+ * sepolicy: Stop rejecting aliases in sepolicy commands
+ * sepolicy: Update to work with setools-4.2.0
+ * sepolicy: add missing % in network tab help text
+ * sepolicy: initialize mislabeled_files in __init__()
+ * sepolicy: search() also for dontaudit rules
+ * add xperms support to audit2allow
+ * replace aliases with corresponding type names
+- Dropped python3.patch, upstream now
+
+-------------------------------------------------------------------
@@ -19,0 +93,5 @@
+Tue Feb 5 15:27:55 UTC 2019 - Jan Engelhardt <[email protected]>
+
+- Replace overly complicated %setup calls.
+
+-------------------------------------------------------------------
@@ -22,0 +101,5 @@
+
+-------------------------------------------------------------------
+Thu Jan 31 10:19:44 UTC 2019 - Bernhard Wiedemann <[email protected]>
+
+- Fix build with python 3.7
Old:
----
policycoreutils-2.8.tar.gz
python3.patch
selinux-python-2.8.tar.gz
semodule-utils-2.8.tar.gz
seobject_late_init.patch
New:
----
newrole.pam
policycoreutils-3.0.tar.gz
run_init_use_pam_keyinit.patch
selinux-python-3.0.tar.gz
semodule-utils-3.0.tar.gz
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Other differences:
------------------
++++++ policycoreutils.spec ++++++
--- /var/tmp/diff_new_pack.sT4QG6/_old 2020-03-21 16:46:40.589617716 +0100
+++ /var/tmp/diff_new_pack.sT4QG6/_new 2020-03-21 16:46:40.593617720 +0100
@@ -1,7 +1,7 @@
#
# spec file for package policycoreutils
#
-# Copyright (c) 2019 SUSE LINUX GmbH, Nuernberg, Germany.
+# Copyright (c) 2020 SUSE LLC
#
# All modifications and additions to the file contributed by third parties
# remain the property of their copyright owners, unless otherwise agreed
@@ -12,24 +12,24 @@
# license that conforms to the Open Source Definition (Version 1.9)
# published by the Open Source Initiative.
-# Please submit bugfixes or comments via http://bugs.opensuse.org/
+# Please submit bugfixes or comments via https://bugs.opensuse.org/
#
%define libaudit_ver 2.2
-%define libsepol_ver 2.8
-%define libsemanage_ver 2.8
-%define libselinux_ver 2.8
+%define libsepol_ver 3.0
+%define libsemanage_ver 3.0
+%define libselinux_ver 3.0
%define setools_ver 4.1.1
-%define tstamp 20180524
+%define tstamp 20191204
Name: policycoreutils
-Version: 2.8
+Version: 3.0
Release: 0
Summary: SELinux policy core utilities
License: GPL-2.0-or-later
Group: Productivity/Security
URL: https://github.com/SELinuxProject/selinux
-Source0:
https://raw.githubusercontent.com/wiki/SELinuxProject/selinux/files/releases/%{tstamp}/%{name}-%{version}.tar.gz
+Source0:
https://github.com/SELinuxProject/selinux/releases/download/%{tstamp}/%{name}-%{version}.tar.gz
Source1:
https://github.com/SELinuxProject/selinux/releases/download/%{tstamp}/selinux-python-%{version}.tar.gz
Source2: system-config-selinux.png
Source3: system-config-selinux.desktop
@@ -38,10 +38,10 @@
Source6: selinux-polgengui.desktop
Source7: selinux-polgengui.console
Source8:
https://github.com/SELinuxProject/selinux/releases/download/%{tstamp}/semodule-utils-%{version}.tar.gz
+Source9: newrole.pam
Patch0: make_targets.patch
-Patch1: python3.patch
+Patch1: run_init_use_pam_keyinit.patch
Patch2: chcat_join.patch
-Patch3: seobject_late_init.patch
BuildRequires: audit-devel >= %{libaudit_ver}
BuildRequires: bison
BuildRequires: dbus-1-glib-devel
@@ -60,6 +60,7 @@
BuildRequires: polkit
BuildRequires: python-rpm-macros
BuildRequires: python3
+BuildRequires: python3-setools >= %{setools_ver}
BuildRequires: systemd-rpm-macros
BuildRequires: update-desktop-files
BuildRequires: xmlto
@@ -77,7 +78,6 @@
Requires(post): selinux-tools
Requires(pre): %fillup_prereq
Requires(pre): permissions
-Recommends: %{name}-lang
Obsoletes: policycoreutils-python
%{?systemd_requires}
@@ -156,17 +156,14 @@
%endif
%prep
-%setup -q -T -D -b 1 -n selinux-python-%{version}
-%patch2 -p1
-%patch3 -p1
-setools_python_pwd=`pwd`
-%setup -q -T -D -b 8 -n semodule-utils-%{version}
-semodule_utils_pwd=`pwd`
-%setup -q
+%setup -q -a1 -a8
+setools_python_pwd="$PWD/selinux-python-%{version}"
+semodule_utils_pwd="$PWD/semodule-utils-%{version}"
%patch0 -p1
+%patch1 -p1
+%patch2 -p1
mv ${setools_python_pwd}/audit2allow ${setools_python_pwd}/chcat
${setools_python_pwd}/semanage ${setools_python_pwd}/sepolgen
${setools_python_pwd}/sepolicy .
mv ${semodule_utils_pwd}/semodule_expand ${semodule_utils_pwd}/semodule_link
${semodule_utils_pwd}/semodule_package .
-%patch1 -p1
%build
export PYTHON="python3" LIBDIR="%{_libdir}" CFLAGS="%{optflags} -fPIE"
LDFLAGS="-pie -Wl,-z,relro"
@@ -194,6 +191,7 @@
mkdir -p %{buildroot}%{_fillupdir}/
mkdir -p %{buildroot}%{_libexecdir}/selinux/hll/
mkdir -p %{buildroot}%{_localstatedir}/lib/sepolgen
+cp %{python3_sitearch}/setools/perm_map
%{buildroot}%{_localstatedir}/lib/sepolgen
mv %{buildroot}%{_prefix}/libexec/selinux/hll/pp
%{buildroot}%{_libexecdir}/selinux/hll/pp
%suse_update_desktop_file -i system-config-selinux System Security Settings
%suse_update_desktop_file -i selinux-polgengui System Security Settings
@@ -211,6 +209,7 @@
%{buildroot}%{_datadir}/applications/system-config-selinux.desktop \
%{buildroot}%{_datadir}/pixmaps/system-config-selinux.png
%endif
+cp -f %{SOURCE9} %{buildroot}%{_sysconfdir}/pam.d/newrole
%post -n python3-%{name}
selinuxenabled && [ -f %{_datadir}/selinux/devel/include/build.conf ] &&
%{_bindir}/sepolgen-ifgen 2>/dev/null
@@ -254,12 +253,17 @@
%config(noreplace) %{_sysconfdir}/pam.d/run_init
%config(noreplace) %{_sysconfdir}/sestatus.conf
%{_mandir}/man8/*
+%{_mandir}/ru/man8/*
%{_mandir}/man5/selinux_config.5%{?ext_man}
%{_mandir}/man5/sestatus.conf.5%{?ext_man}
+%{_mandir}/ru/man5/selinux_config.5%{?ext_man}
+%{_mandir}/ru/man5/sestatus.conf.5%{?ext_man}
%{_mandir}/man1/secon.1%{?ext_man}
%{_mandir}/man1/audit2allow.1%{?ext_man}
%{_mandir}/man1/audit2why.1%{?ext_man}
-
+%{_mandir}/ru/man1/secon.1%{?ext_man}
+%{_mandir}/ru/man1/audit2allow.1%{?ext_man}
+%{_mandir}/ru/man1/audit2why.1%{?ext_man}
%{_datadir}/bash-completion/completions/*
%files -n python3-%{name}
@@ -275,6 +279,7 @@
%files newrole
%verify(not mode) %attr(0755,root,root) %{_bindir}/newrole
%{_mandir}/man1/newrole.1%{?ext_man}
+%{_mandir}/ru/man1/newrole.1%{?ext_man}
%config(noreplace) %{_sysconfdir}/pam.d/newrole
%if 0%{?suse_version} < 1500
++++++ chcat_join.patch ++++++
--- /var/tmp/diff_new_pack.sT4QG6/_old 2020-03-21 16:46:40.629617757 +0100
+++ /var/tmp/diff_new_pack.sT4QG6/_new 2020-03-21 16:46:40.629617757 +0100
@@ -1,12 +1,12 @@
-Index: selinux-python-2.8/chcat/chcat
+Index: policycoreutils-3.0/selinux-python-3.0/chcat/chcat
===================================================================
---- selinux-python-2.8.orig/chcat/chcat 2018-05-24 18:21:09.000000000
+0000
-+++ selinux-python-2.8/chcat/chcat 2019-12-17 11:01:17.056766838 +0000
-@@ -247,7 +247,10 @@ def chcat_user_replace(newcat, users):
+--- policycoreutils-3.0.orig/selinux-python-3.0/chcat/chcat
++++ policycoreutils-3.0/selinux-python-3.0/chcat/chcat
+@@ -245,7 +245,10 @@ def chcat_user_replace(newcat, users):
add_ind = 1
user = seusers["__default__"]
serange = user[1].split("-")
-- new_serange = "%s-%s:%s" % (serange[0], newcat[0],
string.join(newcat[1:], ","))
+- new_serange = "%s-%s:%s" % (serange[0], newcat[0],
",".join(newcat[1:]))
+ if len(newcat[1:]) > 0:
+ new_serange = "%s-%s:%s" % (serange[0], newcat[0],
",".join(newcat[1:]))
+ else:
++++++ newrole.pam ++++++
auth include common-auth
account include common-account
password include common-password
session include common-session
session optional pam_xauth.so
++++++ policycoreutils-2.8.tar.gz -> policycoreutils-3.0.tar.gz ++++++
++++ 7645 lines of diff (skipped)
++++++ run_init_use_pam_keyinit.patch ++++++
Index: policycoreutils-2.9/run_init/run_init.pamd
===================================================================
--- policycoreutils-2.9.orig/run_init/run_init.pamd 2019-03-15
10:32:30.000000000 +0000
+++ policycoreutils-2.9/run_init/run_init.pamd 2019-09-18 11:18:44.590723544
+0000
@@ -6,3 +6,4 @@ account include system-auth
password include system-auth
session include system-auth
session optional pam_xauth.so
+session optional pam_keyinit.so revoke [force]
++++++ selinux-python-2.8.tar.gz -> selinux-python-3.0.tar.gz ++++++
++++ 12391 lines of diff (skipped)
++++++ semodule-utils-2.8.tar.gz -> semodule-utils-3.0.tar.gz ++++++
diff -urN '--exclude=CVS' '--exclude=.cvsignore' '--exclude=.svn'
'--exclude=.svnignore' old/semodule-utils-2.8/VERSION
new/semodule-utils-3.0/VERSION
--- old/semodule-utils-2.8/VERSION 2018-05-24 20:21:09.000000000 +0200
+++ new/semodule-utils-3.0/VERSION 2019-11-28 13:46:48.000000000 +0100
@@ -1 +1 @@
-2.8
+3.0
diff -urN '--exclude=CVS' '--exclude=.cvsignore' '--exclude=.svn'
'--exclude=.svnignore' old/semodule-utils-2.8/semodule_expand/Makefile
new/semodule-utils-3.0/semodule_expand/Makefile
--- old/semodule-utils-2.8/semodule_expand/Makefile 2018-05-24
20:21:09.000000000 +0200
+++ new/semodule-utils-3.0/semodule_expand/Makefile 2019-11-28
13:46:48.000000000 +0100
@@ -1,4 +1,5 @@
# Installation directories.
+LINGUAS ?= ru
PREFIX ?= /usr
BINDIR ?= $(PREFIX)/bin
MANDIR ?= $(PREFIX)/share/man
@@ -15,6 +16,12 @@
install -m 755 semodule_expand $(DESTDIR)$(BINDIR)
test -d $(DESTDIR)$(MANDIR)/man8 || install -m 755 -d
$(DESTDIR)$(MANDIR)/man8
install -m 644 semodule_expand.8 $(DESTDIR)$(MANDIR)/man8/
+ for lang in $(LINGUAS) ; do \
+ if [ -e $${lang} ] ; then \
+ test -d $(DESTDIR)$(MANDIR)/$${lang}/man8 || install -m
755 -d $(DESTDIR)$(MANDIR)/$${lang}/man8 ; \
+ install -m 644 $${lang}/*.8
$(DESTDIR)$(MANDIR)/$${lang}/man8/ ; \
+ fi ; \
+ done
relabel:
diff -urN '--exclude=CVS' '--exclude=.cvsignore' '--exclude=.svn'
'--exclude=.svnignore'
old/semodule-utils-2.8/semodule_expand/ru/semodule_expand.8
new/semodule-utils-3.0/semodule_expand/ru/semodule_expand.8
--- old/semodule-utils-2.8/semodule_expand/ru/semodule_expand.8 1970-01-01
01:00:00.000000000 +0100
+++ new/semodule-utils-3.0/semodule_expand/ru/semodule_expand.8 2019-11-28
13:46:48.000000000 +0100
@@ -0,0 +1,31 @@
+.TH SEMODULE_EXPAND "8" "ноябрь 2005" "Security Enhanced Linux" NSA
+.SH ИМЯ
+semodule_expand \- расширить пакет модуля политики SELinux
+
+.SH ОБЗОР
+.B semodule_expand [-V ] [ -a ] [ -c [version]] basemodpkg outputfile
+.br
+.SH ОПИСАНИЕ
+.PP
+semodule_expand - утилита разработки для ручного расширения пакета базового
модуля политики в двоичный файл политики ядра.
+Это средство не является необходимым для нормальной работы SELinux. Обычно
такое расширение выполняется libsemanage внутренним образом в ответ на команды
semodule. Пакеты базовых модулей политики можно создавать непосредственно с
помощью semodule_package или semodule_link (при связывании набора пакетов в
один пакет).
+
+.SH "ПАРАМЕТРЫ"
+.TP
+.B \-V
+Показать версию
+.TP
+.B \-c [version]
+Версия политики, которую следует создать
+.TP
+.B \-a
+Не проверять утверждения. При использовании этого параметра политика не будет
проверять запрещающие правила (neverallow).
+
+.SH СМОТРИТЕ ТАКЖЕ
+.B checkmodule(8), semodule_package(8), semodule(8), semodule_link(8)
+(8),
+.SH АВТОРЫ
+.nf
+Эта страница руководства была написана Dan Walsh <[email protected]>.
+Программа была написана Karl MacMillan <[email protected]>, Joshua Brindle
<[email protected]>.
+Перевод на русский язык выполнила Герасименко Олеся <[email protected]>.
diff -urN '--exclude=CVS' '--exclude=.cvsignore' '--exclude=.svn'
'--exclude=.svnignore' old/semodule-utils-2.8/semodule_link/Makefile
new/semodule-utils-3.0/semodule_link/Makefile
--- old/semodule-utils-2.8/semodule_link/Makefile 2018-05-24
20:21:09.000000000 +0200
+++ new/semodule-utils-3.0/semodule_link/Makefile 2019-11-28
13:46:48.000000000 +0100
@@ -1,4 +1,5 @@
# Installation directories.
+LINGUAS ?= ru
PREFIX ?= /usr
BINDIR ?= $(PREFIX)/bin
MANDIR ?= $(PREFIX)/share/man
@@ -15,6 +16,12 @@
install -m 755 semodule_link $(DESTDIR)$(BINDIR)
test -d $(DESTDIR)$(MANDIR)/man8 || install -m 755 -d
$(DESTDIR)$(MANDIR)/man8
install -m 644 semodule_link.8 $(DESTDIR)$(MANDIR)/man8/
+ for lang in $(LINGUAS) ; do \
+ if [ -e $${lang} ] ; then \
+ test -d $(DESTDIR)$(MANDIR)/$${lang}/man8 || install -m
755 -d $(DESTDIR)$(MANDIR)/$${lang}/man8 ; \
+ install -m 644 $${lang}/*.8
$(DESTDIR)$(MANDIR)/$${lang}/man8/ ; \
+ fi ; \
+ done
relabel:
diff -urN '--exclude=CVS' '--exclude=.cvsignore' '--exclude=.svn'
'--exclude=.svnignore' old/semodule-utils-2.8/semodule_link/ru/semodule_link.8
new/semodule-utils-3.0/semodule_link/ru/semodule_link.8
--- old/semodule-utils-2.8/semodule_link/ru/semodule_link.8 1970-01-01
01:00:00.000000000 +0100
+++ new/semodule-utils-3.0/semodule_link/ru/semodule_link.8 2019-11-28
13:46:48.000000000 +0100
@@ -0,0 +1,32 @@
+.TH SEMODULE_LINK "8" "Ноябрь 2005" "Security Enhanced Linux" NSA
+.SH ИМЯ
+semodule_link \- связать вместе пакеты модулей политики SELinux
+
+.SH ОБЗОР
+.B semodule_link [-Vv] [-o outfile] basemodpkg modpkg1 [modpkg2]...
+.br
+.SH ОПИСАНИЕ
+.PP
+semodule_link - утилита разработки для ручного связывания набора пакетов
модулей политики SELinux в один пакет модулей политики.
+Это средство не является необходимым для нормальной работы SELinux. Обычно
такое связывание выполняется libsemanage внутренним образом в ответ на команды
semodule. Пакеты модулей создаются с помощью semodule_package.
+
+.SH "ПАРАМЕТРЫ"
+.TP
+.B \-V
+Показать версию
+.TP
+.B \-v
+Подробный режим
+.TP
+.B \-o <output file>
+Связанный пакет модулей политики, созданный с помощью этого средства
+
+
+.SH СМОТРИТЕ ТАКЖЕ
+.B checkmodule(8), semodule_package(8), semodule(8), semodule_expand(8)
+(8),
+.SH АВТОРЫ
+.nf
+Эта страница руководства была написана Dan Walsh <[email protected]>.
+Программа была написана Karl MacMillan <[email protected]>.
+Перевод на русский язык выполнила Герасименко Олеся <[email protected]>.
diff -urN '--exclude=CVS' '--exclude=.cvsignore' '--exclude=.svn'
'--exclude=.svnignore' old/semodule-utils-2.8/semodule_package/Makefile
new/semodule-utils-3.0/semodule_package/Makefile
--- old/semodule-utils-2.8/semodule_package/Makefile 2018-05-24
20:21:09.000000000 +0200
+++ new/semodule-utils-3.0/semodule_package/Makefile 2019-11-28
13:46:48.000000000 +0100
@@ -1,4 +1,5 @@
# Installation directories.
+LINGUAS ?= ru
PREFIX ?= /usr
BINDIR ?= $(PREFIX)/bin
MANDIR ?= $(PREFIX)/share/man
@@ -17,6 +18,12 @@
test -d $(DESTDIR)$(MANDIR)/man8 || install -m 755 -d
$(DESTDIR)$(MANDIR)/man8
install -m 644 semodule_package.8 $(DESTDIR)$(MANDIR)/man8/
install -m 644 semodule_unpackage.8 $(DESTDIR)$(MANDIR)/man8/
+ for lang in $(LINGUAS) ; do \
+ if [ -e $${lang} ] ; then \
+ test -d $(DESTDIR)$(MANDIR)/$${lang}/man8 || install -m
755 -d $(DESTDIR)$(MANDIR)/$${lang}/man8 ; \
+ install -m 644 $${lang}/*.8
$(DESTDIR)$(MANDIR)/$${lang}/man8/ ; \
+ fi ; \
+ done
relabel:
diff -urN '--exclude=CVS' '--exclude=.cvsignore' '--exclude=.svn'
'--exclude=.svnignore'
old/semodule-utils-2.8/semodule_package/ru/semodule_package.8
new/semodule-utils-3.0/semodule_package/ru/semodule_package.8
--- old/semodule-utils-2.8/semodule_package/ru/semodule_package.8
1970-01-01 01:00:00.000000000 +0100
+++ new/semodule-utils-3.0/semodule_package/ru/semodule_package.8
2019-11-28 13:46:48.000000000 +0100
@@ -0,0 +1,48 @@
+.TH SEMODULE_PACKAGE "8" "Ноябрь 2005" "Security Enhanced Linux" NSA
+.SH ИМЯ
+semodule_package \- создать пакет модуля политики SELinux
+
+.SH ОБЗОР
+.B semodule_package \-o <output file> \-m <module> [\-f <file contexts>]
+.br
+.SH ОПИСАНИЕ
+.PP
+semodule_package - утилита, которая используется для создания пакета модуля
политики SELinux из двоичного модуля политики и (необязательно) других данных,
таких как контексты файлов. Команда semodule_package упаковывает двоичные
модули политики, созданные с помощью checkmodule. Пакет политики, созданный с
помощью semodule_package, затем можно установить через semodule.
+
+.SH ПРИМЕР
+.nf
+# Собрать пакет политики для базового модуля.
+$ semodule_package \-o base.pp \-m base.mod \-f file_contexts
+# Собрать пакет политики для модуля httpd.
+$ semodule_package \-o httpd.pp \-m httpd.mod \-f httpd.fc
+# Собрать пакет политики для локальных правил принудительного присвоения
типов, не включая контексты файлов.
+$ semodule_package \-o local.pp \-m local.mod
+.fi
+
+.SH "ПАРАМЕТРЫ"
+.TP
+.B \-o \-\-outfile <output file>
+Файл пакета модуля политики, созданный этим средством.
+.TP
+.B \-s \-\-seuser <seuser file>
+Файл seuser, который следует включить в пакет.
+.TP
+.B \-u \-\-user_extra <user extra file>
+Файл user_extra, который следует включить в пакет.
+.TP
+.B \-m \-\-module <Module file>
+Файл модуля политики, который следует включить в пакет.
+.TP
+.B \-f \-\-fc <File context file>
+Файл контекстов файлов для модуля (необязательно).
+.TP
+.B \-n \-\-nc <netfilter context file>
+Файл контекста netfilter, который следует включить в пакет.
+
+.SH СМОТРИТЕ ТАКЖЕ
+.B checkmodule(8), semodule(8), semodule_unpackage(8)
+.SH АВТОРЫ
+.nf
+Эта страница руководства была написана Dan Walsh <[email protected]>.
+Программа была написана Karl MacMillan <[email protected]>.
+Перевод на русский язык выполнила Герасименко Олеся <[email protected]>.
diff -urN '--exclude=CVS' '--exclude=.cvsignore' '--exclude=.svn'
'--exclude=.svnignore'
old/semodule-utils-2.8/semodule_package/ru/semodule_unpackage.8
new/semodule-utils-3.0/semodule_package/ru/semodule_unpackage.8
--- old/semodule-utils-2.8/semodule_package/ru/semodule_unpackage.8
1970-01-01 01:00:00.000000000 +0100
+++ new/semodule-utils-3.0/semodule_package/ru/semodule_unpackage.8
2019-11-28 13:46:48.000000000 +0100
@@ -0,0 +1,24 @@
+.TH SEMODULE_PACKAGE "8" "Ноябрь 2005" "Security Enhanced Linux" NSA
+.SH ИМЯ
+semodule_unpackage \- извлечь модуль политики и файл контекстов файлов из
пакета модуля политики SELinux
+
+.SH ОБЗОР
+.B semodule_unpackage ppfile modfile [fcfile]
+.br
+.SH ОПИСАНИЕ
+.PP
+semodule_unpackage - утилита, которая используется для извлечения файла модуля
политики SELinux и файла контекстов файлов из пакета политики SELinux.
+
+.SH ПРИМЕР
+.nf
+# Извлечь файл модуля httpd из пакета политики httpd.
+$ semodule_unpackage httpd.pp httpd.mod httpd.fc
+.fi
+
+.SH СМОТРИТЕ ТАКЖЕ
+.B semodule_package(8)
+.SH АВТОРЫ
+.nf
+Эта страница руководства была написана Dan Walsh <[email protected]>.
+Программа была написана Stephen Smalley <[email protected]>.
+Перевод на русский язык выполнила Герасименко Олеся <[email protected]>.
diff -urN '--exclude=CVS' '--exclude=.cvsignore' '--exclude=.svn'
'--exclude=.svnignore'
old/semodule-utils-2.8/semodule_package/semodule_unpackage.c
new/semodule-utils-3.0/semodule_package/semodule_unpackage.c
--- old/semodule-utils-2.8/semodule_package/semodule_unpackage.c
2018-05-24 20:21:09.000000000 +0200
+++ new/semodule-utils-3.0/semodule_package/semodule_unpackage.c
2019-11-28 13:46:48.000000000 +0100
@@ -55,7 +55,7 @@
ppfile = argv[1];
modfile = argv[2];
- if (argc >= 3)
+ if (argc >= 4)
fcfile = argv[3];
if (file_to_policy_file(ppfile, &in, "r"))