Index | index by Group | index by Distribution | index by Vendor | index by creation date | index by Name | Mirrors | Help | Search |
Name: selinux-policy-mls | Distribution: Fedora Project |
Version: 42.13 | Vendor: Fedora Project |
Release: 2.fc44 | Build date: Mon Oct 20 18:11:42 2025 |
Group: Unspecified | Build host: buildvm-ppc64le-15.rdu3.fedoraproject.org |
Size: 10882783 | Source RPM: selinux-policy-42.13-2.fc44.src.rpm |
Packager: Fedora Project | |
Url: https://github.com/fedora-selinux/selinux-policy | |
Summary: SELinux MLS policy |
SELinux MLS (Multi Level Security) policy package.
GPL-2.0-or-later
* Mon Oct 20 2025 Michael Catanzaro <mcatanzaro@redhat.com> - 42.13-2 - Fix unexpanded macro in selinux_requires * Tue Oct 14 2025 Zdenek Pytela <zpytela@redhat.com> - 42.13-1 - Allow sshd-auth read generic proc files - Allow sshd-auth read and write user domain ptys - Allow logwatch read and write sendmail unix stream sockets - Allow logwatch domain transition on rpm execution - Allow thumb_t mounton its private tmpfs files - Allow thumb_t create permission in the user namespace - Allow corenet_unconfined_type name_bind to icmp_socket - Allow systemd-networkd to manage systemd_networkd_var_lib_t files - Allow sshd-session get attributes of sshd vsock socket * Sat Oct 04 2025 Zdenek Pytela <zpytela@redhat.com> - 42.12-1 - Adjust guest and xguest users policy for sshd-session - Allow valkey-server create and use netlink_rdma_socket - Allow blueman get attributes of filesystems with extended attributes - Update files_search_base_file_types() - Allow geoclue get attributes of the /dev/shm filesystem - Allow apcupsd get attributes of the /dev/shm filesystem - Allow sshd-session read cockpit pid files * Wed Sep 24 2025 Zdenek Pytela <zpytela@redhat.com> - 42.11-1 - Allow nfs generator create and use netlink sockets - Conditionally allow virt guests to read certificates in user home directories - xenstored_t needs CAP_SYS_ADMIN for XENSTORETYPE=domain (bsc#1247875) - Allow nfs-generator create and use udp sockets - Allow kdump search kdumpctl_tmp_t directories - Allow init open and read user tmp files - Fix the systemd_logind_stream_connect() interface - Allow staff and sysadm execute iotop using sudo - Allow sudodomains connect to systemd-logind over a unix socket * Tue Sep 16 2025 Zdenek Pytela <zpytela@redhat.com> - 42.10-1 - Add default contexts for sshd-seesion - Define types for new openssh executables * Mon Sep 15 2025 Zdenek Pytela <zpytela@redhat.com> - 42.9-1 - Fix systemd_manage_unit_symlinks() interface definition - Support coreos installation methods - Add a new type for systemd-ssh-issue PID files - Allow gnome-remote-desktop connect to unreserved ports - Allow mdadm the CAP_SYS_PTRACE capability - Allow iptables manage its private fifo_files in /tmp - Allow auditd manage its private run dirs - Revert "Allow virt_domain write to virt_image_t files" - Exclude tabrmd.if from interfaces list * Thu Sep 04 2025 Zdenek Pytela <zpytela@redhat.com> - 42.8-1 - Allow gdm create /etc/.pwd.lock with a file transition - Allow gdm bind a socket in the /run/systemd/userdbd directory - Allow nsswitch_domain connect to xdm over a unix domain socket - Allow systemd homed getattr all tmpfs files (bsc#1240883) - Allow systemd (PID 1) create lastlog entries - Allow systemd_homework_t transition pid files to lvm_var_run_t (bsc#1240883) - Allow gnome-remote-desktop speak with tabrmd over dbus (bsc#1244573) - Allow nm-dispatcher iscsi and sendmail plugins get pidfs attributes - Allow systemd-oomd watch tmpfs dirs - Allow chronyc the setgid and setuid capabilities * Fri Aug 29 2025 Zdenek Pytela <zpytela@redhat.com> - 42.7-1 - Label /usr/lib/systemd/systemd-ssh-issue with systemd_ssh_issue_exec_t - Allow stalld map sysfs files - Allow NetworkManager-dispatcher-winbind get pidfs attributes - Allow openvpn create and use generic netlink socket - policy_capabilities: remove estimated from released versions - policy_capabilities: add stub for userspace_initial_context - add netlink_xperm policy capability and nlmsg permission definitions - policy_capabilities: add ioctl_skip_cloexec - selinux-policy: add allow rule for tuned_ppd_t - selinux-policy: add allow rule for switcheroo_control_t - Label /run/audit with auditd_var_run_t * Tue Aug 12 2025 Zdenek Pytela <zpytela@redhat.com> - 42.6-1 - Allow virtqemud start a vm which uses nbdkit - Add nbdkit_signal() and nbdkit_signull() interfaces - Fix insights_client interfaces names - Add insights_core and insights_client interfaces - dist/targeted/modules.conf: enable slrnpull module - Allow bootupd delete symlinks in the /boot directory - Allow systemd-coredumpd capabilities in the user namespace - Allow openvswitch read virtqemud process state - Allow systemd-networkd to create leases directory * Fri Aug 08 2025 Zdenek Pytela <zpytela@redhat.com> - 42.5-1 - Apply generator template to selinux-autorelabel generator - Support virtqemud handle hotplug hostdev devices - Allow virtstoraged create qemu /var/run files - Allow unconfined_domain_type cap2_userns capabilities - Label /usr/libexec/postfix/tlsproxy with postfix_smtp_exec_t - Remove the mysql module sources - dist/targeted/modules.conf: Enable kmscon module (bsc#1238137) - Update kmscon policy module to kmscon version 9 (bsc#1238137) - Allow login to getattr pidfs - Allow systemd to map files under /sys - systemd: drop duplicate init_nnp_daemon_domain lines - Fix typo - Allow logwatch stream connect to opensmtpd - Allow geoclue read NetworkManager pid files * Mon Aug 04 2025 Zdenek Pytela <zpytela@redhat.com> - 42.4-1 - Allow unconfined user a file transition for creating sudo log directory - Allow virtqemud read/write inherited dri devices - Allow xdm_t create user namespaces - Update policy for login_userdomain - Add ppd_base_profile to file transition to get tuned_rw_etc_t type - Update policy for bootupd - Allow logwatch work with opensmtpd - Update dovecot policy for dovecot 2.4.1 - Allow ras-mc-ctl write to sysfs files - Allow anaconda-generator get attributes of all filesystems - Add the rhcd_rw_fifo_files() interface - Allow systemd-coredump the sys_chroot capability - Allow hostapd write to socket files in /tmp - Recognize /var/home as an alternate path for /home - Label /var/lib/lastlog with lastlog_t * Mon Jul 28 2025 Zdenek Pytela <zpytela@redhat.com> - 42.3-1 - Allow virtqemud write to sysfs files - Allow irqbalance search sssd lib directories - Allow samba-dcerpcd send sigkills to passwd - Allow systemd-oomd watch dbus pid sock files - Allow some confined users read and map generic log files - Allow login_userdomain watch the /run/log/journal directory - Allow login_userdomain dbus chat with tuned-ppd - Allow login_userdomain dbus chat with switcheroo-control - Allow userdomain to connect to systemd-oomd over a unix socket - Add insights_client_delete_lib_dirs() interface * Fri Jul 25 2025 Fedora Release Engineering <releng@fedoraproject.org> - 42.2-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_43_Mass_Rebuild * Mon Jul 21 2025 Zdenek Pytela <zpytela@redhat.com> - 42.2-1 - Allow virtqemud_t use its private tmpfs files (bsc#1242998) - Allow virtqemud_t setattr to /dev/userfaultfd (bsc#1242998) - Allow virtqemud_t read and write /dev/ptmx (bsc#1242998) - Extend virtqemud_t tcp_socket permissions (bsc#1242998) - Allow virtqemud_t to read and write generic pty (bsc#1242998) - Allow systemd-importd create and unlink init pid socket - Allow virtqemud handle virt_content_t chr files - Allow svirt read virtqemud fifo files - All sblim-sfcbd the dac_read_search capability - Allow sblim domain read systemd session files - Allow sblim-sfcbd execute dnsdomainname - Confine nfs-server generator - Allow systemd-timedated start/stop timemaster services - Allow "hostapd_cli ping" run as a systemd service - Allow power-profiles-daemon get attributes of filesystems with extended attributes - Allow 'oomctl dump' to interact with systemd-oomd - Basic functionality for systemd-oomd - Basic enablement for systemd-oomd - Allow samba-bgqd send to smbd over a unix datagram socket - Update kernel_secretmem_use() - Add the file/watch_mountns permission * Tue Jul 15 2025 Zdenek Pytela <zpytela@redhat.com> - 42.1-1 - Update systemd-generators policy - Allow plymouthd_t read proc files of systemd_passwd_agent (bsc#1245470) - Allow insights-client file transition for files in /var/tmp - Allow tuned-ppd manage tuned log files - Allow systemd-coredump mount on tmpfs filesystems - Update sssd_dontaudit_read_public_files() - Allow zram-generator raw read fixed disk device * Fri Jul 04 2025 Zdenek Pytela <zpytela@redhat.com> - 41.45-1 - Add fs_write_cgroup_dirs() and fs_setattr_cgroup_dirs() interfaces - Allow irqbalance execute shell if irqbalance_run_unconfined is on - Allow openvswitch ioctl vduse devices - Label /dev/vduse/control and /dev/vduse/NAME devices - Allow virtstoraged the sys_rawio capability - Allow virtqemud read insights-core state files - Allow virtnodedev create mdevctl config dirs - Allow virtqemud additional permissions on scsi generic chr files - Allow local login execute gnome keyring daemon - Allow virtqemud send a generic signal to passt - Allow svirt-tcg read init state - Allow irqbalance execute shell if irqbalance_run_unconfined is on - Label /run/opendkim with dkim_milter_data_t - Allow sa-update status systemd services - Allow updpwd logging send audit messages - Temporary dontaudit iio-sensor-proxy sys_admin. - Allow iio-sensor-proxy sendto to journald over a unix datagram socket - Revert "Allow iio-sensor-proxy sendto to journald over a unix datagram socket" * Fri Jul 04 2025 Petr Lautrbach <lautrbach@redhat.com> - 41.44-2 - Rebuilt with SELinux userspace 3.9-rc2 release * Tue Jun 17 2025 Zdenek Pytela <zpytela@redhat.com> - 41.44-1 - virt: allow QEMU use of the qgs daemon for attestation - qgs: add contrib module for TDX "qgs" daemon - kernel: add interfaces for using SGX enclaves - Define file equivalency for /usr/etc - Allow mongod to receive pressure stall information - Dontaudit systemd_generator read sssd public files - Allow plymouthd read/write input event devices - Label 99-nvme-nbft-connect.sh with NetworkManager_dispatcher_nvme_script_t - Allow systemd-user-runtime-dir sendto to syslogd - Remove pcp module - Update irqbalance policy for using unconfined scripts - Allow utempter use terminal multiplexor - Allow virtqemud execute ovs-vsctl with a domain transition - Update the files_search_mnt() interface * Wed Jun 04 2025 Zdenek Pytela <zpytela@redhat.com> - 41.43-1 - Allow nmbd read network sysctls - Allow iio-sensor-proxy sendto to journald over a unix datagram socket - Allow logrotate stop all systemd services - systemd: rework systemd_manage_random_seed - Allow tuned-ppd connect to sssd over a unix stream socket * Tue Jun 03 2025 Zdenek Pytela <zpytela@redhat.com> - 41.42-1 - Drop config for /run/random-seed - Update file location for systemd random-seed file - Allow tomcat execute cracklib-check with a domain transition - Allow sssd watch lib dirs - Confine systemd-hibernate-resume - Allow login_userdomain create /run/tlog directory with user_tmp_t - Allow login_pgm read filesystem sysctls - Allow gconfd connect to system dbus - Allow NetworkManager manage NetworkManager_etc_rw_t symlinks * Thu May 22 2025 Zdenek Pytela <zpytela@redhat.com> - 41.41-1 - Allow mdadm nosuid_transition - Label plasma user service files as xdm_unit_file_t. - Revert "Allow systemd-homed to start services." - Allow virtstoraged write qemu runtime files - Allow virtqemud read/write/setattr input event devices - Allow systemd create journal pid files - Allow networkmanager send a general signal to iptables - Allow syslogd watch syslog_conf_t directories - Allow systemd-machined work with its private tmp and tmpfs files - Allow geoclue read virt lib files - Fix files_dontaudit_delete_all_files() - Label /run/polkit-1 with policykit_var_run_t - Label /dev/diag as diagnostic_device_t - Allow systemd-homed to start services. - Allow named_t to read NetworkManager's runtime files - Improve README* documentation * Tue May 13 2025 Zdenek Pytela <zpytela@redhat.com> - 41.40-1 - Add missing permissions for ftpd_anon_write to manage NFS directories - Add missing permissions for ftpd_anon_write to manage CIFS directories - Allow nut-upsmon write systemd inhibit pipes - Allow systemd-user-runtime-dir connect to systemd-userdbd over a unix socket - Remove permissive domain for systemd_vsftpd_generator_t - Change generator-specific rules to apply to systemd_generator - Define file equivalency for /var/etc - Allow tuned-ppd create ppd_base_profile with a file transition - Allow lldpd connect to systemd-homed over a unix socket - Allow sysadm_sudo_t signal rpm script - Fix the "/var/cache/systemd/home(/.*)?" regex * Wed Apr 30 2025 Zdenek Pytela <zpytela@redhat.com> - 41.39-1 - Allow collectd accept and listen to tcp sockets - Allow init_t nnp domain transition to redis_t - Allow tlshd read network sysctls - Allow NetworkManager create and use icmp_socket - Allow varnishd execute the prlimit64() syscall - Allow rhsmcertd connect to systemd-machined - Allow virt_domain write to virt_image_t files - Allow system-dbusd list systemd-machined directories - Allow asterisk read network sysctls - Allow virtstoraged fsetid capability - Allow xdm watch a mnt_t directory - Allow collectd bind TCP sockets to the collectd port - Allow virtqemud relabel from tmpfs lnk files - Allow gnome-remote-desktop additional sockets permissions - Update insights-core policy - Update systemd-homed policy - Allow xenstored_t manage xend_var_lib_t files (bsc#1228540) * Thu Apr 17 2025 Zdenek Pytela <zpytela@redhat.com> - 41.38-1 - Allow init and login_pgm connect to systemd-logind over a unix socket - Allow login_userdomain read pressure stall information - Allow systemd-journald create and use vsock socket - Update systemd-pcrextend policy - Allow systemd watch/watch_reads usb ttys - Update coreos-installer-generator policy - Update systemd-homed policy - Allow systemd-user-runtime-dir get/set tmpfs quotas - Allow systemd-rfkill read nsfs files - Dontaudit bootc-systemd-generator search sssd lib directories - Allow systemd-user-runtime-dir delete gnome homedir content * Fri Apr 11 2025 Zdenek Pytela <zpytela@redhat.com> - 41.37-1 - Allow tuned-ppd read sssd public files - Allow tuned-ppd watch_reads sysfs directories - Confine /usr/lib/systemd/systemd-user-runtime-dir - Revert "Dontaudit systemd-logind remove all files" - Make bootupd use bootupd_tmp_t as its private type for files in /tmp - Label SetroubleshootPrivileged.py with setroubleshootd_exec_t - Allow power-profiles-daemon watch sysfs directories - systemd: allow reading /dev/cpu/0/msr - Update the pcmsensor policy - Allow chronyd-restricted sendto to chronyc - Allow system_dbusd_t r/w unix stream sockets of unconfined_service_t - Allow dovecot-deliver read mail aliases * Mon Apr 07 2025 Zdenek Pytela <zpytela@redhat.com> - 41.36-1 - Confine systemd-factory-reset system generator - Allow systemd debug generator read tmpfs files - Allow gnome-shell get attributes of systemd inhibit pipes - Allow tuned-ppd watch sysfs directories - Fix the storage_rw_inherited_removable_device() interface - Allow sadc read global pressure stall information - Allow virtqemud read sblim-gatherd process state - Allow switcheroo-control dbus chat with xdm - Fix typo in calling unconfined_dbus_chat for switcheroo-control - Allow sysadm_t to write to /dev/kmsg - Allow init_t nnp domain transition to pcscd_t - Fix the genfscon statement for pidfs filesystem - Allow tuned-ppd dbus chat with xdm * Fri Mar 28 2025 Zdenek Pytela <zpytela@redhat.com> - 41.35-1 - Update INSTALL to describe necessary steps to build it - Rename the default policy to fedora-selinux - Update COPYING to the latest version of GPLv2 - Allow traceroute_t bind rawip sockets to unreserved ports - Revert "Allow traceroute_t bind rawip sockets to unreserved ports" - Change the bootc system generator name to bootc-systemd-generator - Allow mpd use the io_uring API - Confine tuned-ppd - Add the switcheroo module - Label wine's windows libraries as textrel_shlib_t - Allow systemd domains write global pressure stall information - Add label and interfaces for kernel PSI files - Update bootupd policy - Update ktls policy - Add policy for systemd-bootc-generator - Allow blueman the kill capability * Fri Mar 07 2025 Zdenek Pytela <zpytela@redhat.com> - 41.34-1 - Add context for plymouth debug log files - Allow rlimit inheritance for domains transitioning to local_login_t - Update insights-core policy - Allow insights-core map all non-security files - Allow insights-core map audit config and log files - Allow insights-client manage insights_client_var_log_t files - Remove duplicate dev_rw_dma_dev(xdm_t) - Allow thumbnailer read and write the dma device - Allow named_filetrans_domain filetrans raid/mdadm named content - Allow afterburn to mount and read config drives - Allow mptcpd the net_admin capability * Fri Feb 07 2025 Zdenek Pytela <zpytela@redhat.com> - 41.33-1 - Allow systemd-networkd the sys_admin capability - Update systemd-networkd policy in systemd v257 - Separate insights-core from insights-client - Removed unused insights_client interfaces calls from other modules - Update policy for insights_client wrt new rules for insights_core_t - Add policy for insights-core - Allow systemd-networkd use its private tmpfs files - Allow boothd connect to systemd-machined over a unix socket - Update init_explicit_domain() interface - Allow tlp to read/write nmi_watchdog state information - Allow power-profiles-daemon the bpf capability - Allow svirt_t to connect to nbdkit over a unix stream socket - Update ktlshd policy to read /proc/keys and domain keyrings - Allow virt_domain read hardware state information unconditionally - Allow init mounton crypto sysctl files - Rename winbind_rpcd_* types to samba_dcerpcd_* - Support peer-to-peer migration of vms using ssh * Wed Feb 05 2025 Zdenek Pytela <zpytela@redhat.com> - 41.32-1 - Allow virtqemud use hostdev usb devices conditionally - Allow virtqemud map svirt_image_t plain files - Allow virtqemud work with nvdimm devices - Support saving and restoring a VM to/from a block device - Allow virtnwfilterd dbus chat with firewalld - Dontaudit systemd-logind remove all files - Add the files_dontaudit_read_all_dirs() interface - Add the files_dontaudit_delete_all_files() interface - Allow rhsmcertd notify virt-who - Allow irqbalance to run unconfined scripts conditionally - Fix binsbin-convert.sh to handle exceptions * Fri Jan 31 2025 Zdenek Pytela <zpytela@redhat.com> - 41.31-1 - Allow snapperd execute systemctl in the caller domain - Allow svirt_tcg_t to connect to nbdkit over a unix stream socket - Allow iio-sensor-proxy read iio devices - Label /dev/iio:device[0-9]+ devices - Allow systemd-coredump the sys_admin capability - Allow apcupsd's apccontrol to send messages using wall - contrib/thumb: also allow per-user thumbnailers - contrib/thumb: fix thunar thumbnailer (rhbz#2315893) - Allow virt_domain to use pulseaudio - conditional - Allow pcmsensor read nmi_watchdog state information - Allow init_t nnp domain transition to gssproxy_t * Mon Jan 27 2025 Zdenek Pytela <zpytela@redhat.com> - 41.30-1 - Allow systemd-generator connect to syslog over a unix stream socket - Allow virtqemud manage fixed disk device nodes - Allow iio-sensor-proxy connect to syslog over a unix stream socket - Allow virtstoraged write to sysfs files - Allow power-profiles-daemon write sysfs files - Update iiosensorproxy policy - Allow pcmsensor write nmi_watchdog state information - Label /proc/sys/kernel/nmi_watchdog with sysctl_nmi_watchdog_t - Allow virtnodedev create /etc/mdevctl.d/scripts.d with bin_t type - Add the gpg_read_user_secrets() interface - Allow gnome-remote-desktop read resolv.conf - Update switcheroo policy - Allow nfsidmap connect to systemd-homed over a unix socket - Add the auth_write_motd_var_run_files() interface - Add the bind_exec_named_checkconf() interface - Add the virt_exec_virsh() interface * Wed Jan 15 2025 Zdenek Pytela <zpytela@redhat.com> - 41.29-1 - Allow virtqemud domain transition to nbdkit - Add nbdkit interfaces defined conditionally - Allow samba-bgqd connect to cupsd over an unix domain stream socket - Confine the switcheroo-control service - Allow svirt_t read sysfs files - Add rhsmcertd interfaces - Add the ssh_exec_sshd() interface - Add the gpg_domtrans_agent() interface - Label /usr/bin/dnf5 with rpm_exec_t - Label /dev/pmem[0-9]+ with fixed_disk_device_t - allow kdm to create /root/.kde/ with correct label - Change /usr/sbin entries to use /usr/bin or remove them - Allow systemd-homed get filesystem quotas - Allow login_userdomain getattr nsfs files - Allow virtqemud send a generic signal to the ssh client domain - Dontaudit request-key read /etc/passwd * Fri Jan 03 2025 Zdenek Pytela <zpytela@redhat.com> - 41.28-1 - Update virtqemud policy regarding the svirt_tcg_t domain - Allow virtqemud domain transition on numad execution - Support virt live migration using ssh - Allow virtqemud permissions needed for live migration - Allow virtqemud the getpgid process permission - Allow virtqemud manage nfs dirs when virt_use_nfs boolean is on - Allow virtqemud relabelfrom virt_log_t files - Allow virtqemud relabel tun_socket - Add policy for systemd-import-generator - Confine vsftpd systemd system generator - Allow virtqemud read and write sgx_vepc devices - Allow systemd-networkd list cgroup directories - Allow xdm dbus chat with power-profiles-daemon - Allow ssh_t read systemd config files - Add Valkey rules to Redis module * Tue Dec 17 2024 Zdenek Pytela <zpytela@redhat.com> - 41.27-1 - Update ktlsh policy - Allow request-key to read /etc/passwd - Allow request-key to manage all domains' keys - Add support for the KVM guest memfd anon inodes - Allow auditctl signal auditd - Dontaudit systemd-coredump the sys_resource capability - Allow traceroute_t bind rawip sockets to unreserved ports - Fix the cups_read_pid_files() interface to use read_files_pattern - Allow virtqemud additional permissions for tmpfs_t blk devices - Allow virtqemud rw access to svirt_image_t chr files - Allow virtqemud rw and setattr access to fixed block devices - Label /etc/mdevctl.d/scripts.d with bin_t - Allow virtqemud open svirt_devpts_t char files - Allow virtqemud relabelfrom virt_log_t files - Allow svirt_tcg_t read virtqemud_t fifo_files - Allow virtqemud rw and setattr access to sev devices - Allow virtqemud directly read and write to a fixed disk - Allow virtqemud_t relabel virt_var_lib_t files - Allow virtqemud_t relabel virtqemud_var_run_t sock_files - Add gnome_filetrans_gstreamer_admin_home_content() interface - Label /dev/swradio, /dev/v4l-subdev, /dev/v4l-touch with v4l_device_t - Make bootupd_t permissive - Allow init_t nnp domain transition to locate_t - allow gdm and iiosensorproxy talk to each other via D-bus - Allow systemd-journald getattr nsfs files - Allow sendmail to map mail server configuration files - Allow procmail to read mail aliases - Allow cifs.idmap helper to set attributes on kernel keys - Allow irqbalance setpcap capability in the user namespace - Allow sssd_selinux_manager_t the setcap process permission - Allow systemd-sleep manage efivarfs files - Allow systemd-related domains getattr nsfs files - Allow svirt_t the sys_rawio capability - Allow alsa watch generic device directories - Move systemd-homed interfaces to seperate optional_policy block - Update samba-bgqd policy - Update virtlogd policy - Allow svirt_t the sys_rawio capability - Allow qemu-ga the dac_override and dac_read_search capabilities - Allow bacula execute container in the container domain - Allow httpd get attributes of dirsrv unit files - Allow samba-bgqd read cups config files - Add label rshim_var_run_t for /run/rshim.pid * Mon Dec 02 2024 Petr Lautrbach <lautrbach@redhat.com> - 41.26-2 - Rebuild with SELinux Userspace 3.8 * Tue Nov 19 2024 Zdenek Pytela <zpytela@redhat.com> - 41.26-1 - [5/5][sync from 'mysql-selinux'] Add mariadb-backup - [4/5][sync from 'mysql-selinux'] Fix regex to also match '/var/lib/mysql/mysqlx.sock' - [3/5][sync from 'mysql-selinux'] Allow mysqld_t to read and write to the 'memory.pressure' file in cgroup2 - [2/5][sync from 'mysql-selinux'] 2nd attempt to fix rhbz#2186996 rhbz#2221433 rhbz#2245705 - [1/5][sync from 'mysql-selinux'] Allow 'mysqld' to use '/usr/bin/hostname' - Allow systemd-networkd read mount pid files - Update policy for samba-bgqd - Allow chronyd read networkmanager's pid files - Allow staff user connect to generic tcp ports - Allow gnome-remote-desktop dbus chat with policykit - Allow tlp the setpgid process permission - Update the bootupd policy - Allow sysadm_t use the io_uring API - Allow sysadm user dbus chat with virt-dbus - Allow virtqemud_t read virsh_t files - Allow virt_dbus_t connect to virtd_t over a unix stream socket - Allow systemd-tpm2-generator read hardware state information - Allow coreos-installer-generator execute generic programs - Allow coreos-installer domain transition on udev execution - Revert "Allow unconfined_t execute kmod in the kmod domain" - Allow iio-sensor-proxy create and use unix dgram socket - Allow virtstoraged read vm sysctls - Support ssh connections via systemd-ssh-generator - Label all semanage store files in /etc as semanage_store_t - Add file transition for nvidia-modeset * Fri Oct 25 2024 Zdenek Pytela <zpytela@redhat.com> - 41.25-1 - Allow dirsrv-snmp map dirsv_tmpfs_t files - Label /usr/lib/node_modules_22/npm/bin with bin_t - Add policy for /usr/libexec/samba/samba-bgqd - Allow gnome-remote-desktop watch /etc directory - Allow rpcd read network sysctls - Allow journalctl connect to systemd-userdbd over a unix socket - Allow some confined users send to lldpad over a unix dgram socket - Allow lldpad send to unconfined_t over a unix dgram socket - Allow lldpd connect to systemd-machined over a unix socket - Confine the ktls service * Wed Oct 23 2024 Zdenek Pytela <zpytela@redhat.com> - 41.24-1 - Allow dirsrv read network sysctls - Label /run/sssd with sssd_var_run_t - Label /etc/sysctl.d and /run/sysctl.d with system_conf_t - Allow unconfined_t execute kmod in the kmod domain - Allow confined users r/w to screen unix stream socket - Label /root/.screenrc and /root/.tmux.conf with screen_home_t - Allow virtqemud read virtd_t files - Allow ping_t read network sysctls * Mon Oct 21 2024 Zdenek Pytela <zpytela@redhat.com> - 41.23-1 - Allow systemd-homework connect to init over a unix socket - Fix systemd-homed blobs directory permissions - Allow virtqemud read sgx_vepc devices - Allow lldpad create and use netlink_generic_socket * Wed Oct 16 2024 Zdenek Pytela <zpytela@redhat.com> - 41.22-1 - Allow systemd-homework write to init pid socket - Allow init create /var/cache/systemd/home - Confine the pcm service - Allow login_userdomain read thumb tmp files - Update power-profiles-daemon policy - Fix the /etc/mdevctl\.d(/.*)? regexp - Grant rhsmcertd chown capability & userdb access - Allow iio-sensor-proxy the bpf capability - Allow systemd-machined the kill user-namespace capability * Fri Oct 11 2024 Zdenek Pytela <zpytela@redhat.com> - 41.21-1 - Remove the fail2ban module sources - Remove the linuxptp module sources - Remove legacy rules for slrnpull - Remove the aiccu module sources - Remove the bcfg2 module sources - Remove the amtu module sources - Remove the rhev module sources - Remove all file context entries for /bin and /lib - Allow ptp4l the sys_admin capability - Confine power-profiles-daemon - Label /var/cache/systemd/home with systemd_homed_cache_t - Allow login_userdomain connect to systemd-homed over a unix socket - Allow boothd connect to systemd-homed over a unix socket - Allow systemd-homed get attributes of a tmpfs filesystem - Allow abrt-dump-journal-core connect to systemd-homed over a unix socket - Allow aide connect to systemd-homed over a unix socket - Label /dev/hfi1_[0-9]+ devices - Suppress semodule's stderr * Thu Oct 03 2024 Zdenek Pytela <zpytela@redhat.com> - 41.20-1 - Remove the openct module sources - Remove the timidity module sources - Enable the slrn module - Remove i18n_input module sources - Enable the distcc module - Remove the ddcprobe module sources - Remove the timedatex module sources - Remove the djbdns module sources - Confine iio-sensor-proxy - Allow staff user nlmsg_write - Update policy for xdm with confined users - Allow virtnodedev watch mdevctl config dirs - Allow ssh watch home config dirs - Allow ssh map home configs files - Allow ssh read network sysctls - Allow chronyc sendto to chronyd-restricted - Allow cups sys_ptrace capability in the user namespace * Tue Sep 24 2024 Zdenek Pytela <zpytela@redhat.com> - 41.19-1 - Add policy for systemd-homed - Remove fc entry for /usr/bin/pump - Label /usr/bin/noping and /usr/bin/oping with ping_exec_t - Allow accountsd read gnome-initial-setup tmp files - Allow xdm write to gnome-initial-setup fifo files - Allow rngd read and write generic usb devices - Allow qatlib search the content of the kernel debugging filesystem - Allow qatlib connect to systemd-machined over a unix socket * Wed Sep 18 2024 Petr Lautrbach <lautrbach@redhat.com> - 41.18-1 - Drop ru man pages - mls/modules.conf - fix typo - Allow unprivileged user watch /run/systemd - Allow boothd connect to kernel over a unix socket * Mon Sep 16 2024 Zdenek Pytela <zpytela@redhat.com> - 41.17-2 - Relabel /etc/mdevctl.d * Thu Sep 12 2024 Petr Lautrbach <lautrbach@redhat.com> - 41.17-1 - Clean up and sync securetty_types - Bring config files from dist-git into the source repo - Confine gnome-remote-desktop - Allow virtstoraged execute mount programs in the mount domain - Make mdevctl_conf_t member of the file_type attribute * Fri Sep 06 2024 Zdenek Pytela <zpytela@redhat.com> - 41.16-1 - Label /etc/mdevctl.d with mdevctl_conf_t - Sync users with Fedora targeted users - Update policy for rpc-virtstorage - Allow virtstoraged get attributes of configfs dirs - Fix SELinux policy for sandbox X server to fix 'sandbox -X' command - Update bootupd policy when ESP is not mounted - Allow thumb_t map dri devices - Allow samba use the io_uring API - Allow the sysadm user use the secretmem API - Allow nut-upsmon read systemd-logind session files - Allow sysadm_t to create PF_KEY sockets - Update bootupd policy for the removing-state-file test - Allow coreos-installer-generator manage mdadm_conf_t files * Thu Aug 29 2024 Zdenek Pytela <zpytela@redhat.com> - 41.15-1 - Allow setsebool_t relabel selinux data files - Allow virtqemud relabelfrom virtqemud_var_run_t dirs - Use better escape method for "interface" - Allow init and systemd-logind to inherit fds from sshd - Allow systemd-ssh-generator read sysctl files - Sync modules.conf with Fedora targeted modules - Allow virtqemud relabel user tmp files and socket files - Add missing sys_chroot capability to groupadd policy - Label /run/libvirt/qemu/channel with virtqemud_var_run_t - Allow virtqemud relabelfrom also for file and sock_file - Add virt_create_log() and virt_write_log() interfaces - Call binaries without full path * Mon Aug 12 2024 Zdenek Pytela <zpytela@redhat.com> - 41.14-1 - Update libvirt policy - Add port 80/udp and 443/udp to http_port_t definition - Additional updates stalld policy for bpf usage - Label systemd-pcrextend and systemd-pcrlock properly - Allow coreos_installer_t work with partitions - Revert "Allow coreos-installer-generator work with partitions" - Add policy for systemd-pcrextend - Update policy for systemd-getty-generator - Allow ip command write to ipsec's logs - Allow virt_driver_domain read virtd-lxc files in /proc - Revert "Allow svirt read virtqemud fifo files" - Update virtqemud policy for libguestfs usage - Allow virtproxyd create and use its private tmp files - Allow virtproxyd read network state - Allow virt_driver_domain create and use log files in /var/log - Allow samba-dcerpcd work with ctdb cluster * Tue Aug 06 2024 Zdenek Pytela <zpytela@redhat.com> - 41.13-1 - Allow NetworkManager_dispatcher_t send SIGKILL to plugins - Allow setroubleshootd execute sendmail with a domain transition - Allow key.dns_resolve set attributes on the kernel key ring - Update qatlib policy for v24.02 with new features - Label /var/lib/systemd/sleep with systemd_sleep_var_lib_t - Allow tlp status power services - Allow virtqemud domain transition on passt execution - Allow virt_driver_domain connect to systemd-userdbd over a unix socket - Allow boothd connect to systemd-userdbd over a unix socket - Update policy for awstats scripts - Allow bitlbee execute generic programs in system bin directories - Allow login_userdomain read aliases file - Allow login_userdomain read ipsec config files - Allow login_userdomain read all pid files - Allow rsyslog read systemd-logind session files - Allow libvirt-dbus stream connect to virtlxcd * Wed Jul 31 2024 Zdenek Pytela <zpytela@redhat.com> - 41.12-1 - Update bootupd policy - Allow rhsmcertd read/write access to /dev/papr-sysparm - Label /dev/papr-sysparm and /dev/papr-vpd - Allow abrt-dump-journal-core connect to winbindd - Allow systemd-hostnamed shut down nscd - Allow systemd-pstore send a message to syslogd over a unix domain - Allow postfix_domain map postfix_etc_t files - Allow microcode create /sys/devices/system/cpu/microcode/reload - Allow rhsmcertd read, write, and map ica tmpfs files - Support SGX devices - Allow initrc_t transition to passwd_t - Update fstab and cryptsetup generators policy - Allow xdm_t read and write the dma device - Update stalld policy for bpf usage - Allow systemd_gpt_generator to getattr on DOS directories * Thu Jul 25 2024 Zdenek Pytela <zpytela@redhat.com> - 41.11-1 - Make cgroup_memory_pressure_t a part of the file_type attribute - Allow ssh_t to change role to system_r - Update policy for coreos generators - Allow init_t nnp domain transition to firewalld_t - Label /run/modprobe.d with modules_conf_t - Allow virtnodedevd run udev with a domain transition - Allow virtnodedev_t create and use virtnodedev_lock_t - Allow virtstoraged manage files with virt_content_t type - Allow virtqemud unmount a filesystem with extended attributes - Allow svirt_t connect to unconfined_t over a unix domain socket * Mon Jul 22 2024 Zdenek Pytela <zpytela@redhat.com> - 41.10-1 - Update afterburn file transition policy - Allow systemd_generator read attributes of all filesystems - Allow fstab-generator read and write cryptsetup-generator unit file - Allow cryptsetup-generator read and write fstab-generator unit file - Allow systemd_generator map files in /etc - Allow systemd_generator read init's process state - Allow coreos-installer-generator read sssd public files - Allow coreos-installer-generator work with partitions - Label /etc/mdadm.conf.d with mdadm_conf_t - Confine coreos generators - Label /run/metadata with afterburn_runtime_t - Allow afterburn list ssh home directory - Label samba certificates with samba_cert_t - Label /run/coreos-installer-reboot with coreos_installer_var_run_t - Allow virtqemud read virt-dbus process state - Allow staff user dbus chat with virt-dbus - Allow staff use watch /run/systemd - Allow systemd_generator to write kmsg * Sat Jul 20 2024 Fedora Release Engineering <releng@fedoraproject.org> - 41.9-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild * Tue Jul 16 2024 Zdenek Pytela <zpytela@redhat.com> - 41.9-1 - Allow virtqemud connect to sanlock over a unix stream socket - Allow virtqemud relabel virt_var_run_t directories - Allow svirt_tcg_t read vm sysctls - Allow virtnodedevd connect to systemd-userdbd over a unix socket - Allow svirt read virtqemud fifo files - Allow svirt attach_queue to a virtqemud tun_socket - Allow virtqemud run ssh client with a transition - Allow virt_dbus_t connect to virtqemud_t over a unix stream socket - Update keyutils policy - Allow sshd_keygen_t connect to userdbd over a unix stream socket - Allow postfix-smtpd read mysql config files - Allow locate stream connect to systemd-userdbd - Allow the staff user use wireshark - Allow updatedb connect to userdbd over a unix stream socket - Allow gpg_t set attributes of public-keys.d - Allow gpg_t get attributes of login_userdomain stream - Allow systemd_getty_generator_t read /proc/1/environ - Allow systemd_getty_generator_t to read and write to tty_device_t * Thu Jul 11 2024 Petr Lautrbach <lautrbach@redhat.com> 41.8-4 - Move %postInstall to %posttrans - Use `Requires(meta): (rpm-plugin-selinux if rpm-libs)` - Drop obsolete modules from config - Install dnf protected files only when policy is built * Thu Jul 11 2024 Zbigniew Jędrzejewski-Szmek <zbyszek@in.waw.pl> - 41.8-3 - Relabel files under /usr/bin to fix stale context after sbin merge * Wed Jul 10 2024 Petr Lautrbach <lautrbach@redhat.com> 41.8-2 - Merge -base and -contrib * Wed Jul 10 2024 Zdenek Pytela <zpytela@redhat.com> - 41.8-1 - Drop publicfile module - Remove permissive domain for systemd_nsresourced_t - Change fs_dontaudit_write_cgroup_files() to apply to cgroup_t - Label /usr/bin/samba-gpupdate with samba_gpupdate_exec_t - Allow to create and delete socket files created by rhsm.service - Allow virtnetworkd exec shell when virt_hooks_unconfined is on - Allow unconfined_service_t transition to passwd_t - Support /var is empty - Allow abrt-dump-journal read all non_security socket files - Allow timemaster write to sysfs files - Dontaudit domain write cgroup files - Label /usr/lib/node_modules/npm/bin with bin_t - Allow ip the setexec permission - Allow systemd-networkd write files in /var/lib/systemd/network - Fix typo in systemd_nsresourced_prog_run_bpf() * Fri Jun 28 2024 Zdenek Pytela <zpytela@redhat.com> - 41.7-1 - Confine libvirt-dbus - Allow virtqemud the kill capability in user namespace - Allow rshim get options of the netlink class for KOBJECT_UEVENT family - Allow dhcpcd the kill capability - Allow systemd-networkd list /var/lib/systemd/network - Allow sysadm_t run systemd-nsresourced bpf programs - Update policy for systemd generators interactions - Allow create memory.pressure files with cgroup_memory_pressure_t - Add support for libvirt hooks * Wed Jun 19 2024 Zdenek Pytela <zpytela@redhat.com> - 41.6-1 - Allow certmonger read and write tpm devices - Allow all domains to connect to systemd-nsresourced over a unix socket - Allow systemd-machined read the vsock device - Update policy for systemd generators - Allow ptp4l_t request that the kernel load a kernel module - Allow sbd to trace processes in user namespace - Allow request-key execute scripts - Update policy for haproxyd * Tue Jun 18 2024 Zdenek Pytela <zpytela@redhat.com> - 41.5-1 - Update policy for systemd-nsresourced - Correct sbin-related file context entries * Mon Jun 17 2024 Zdenek Pytela <zpytela@redhat.com> - 41.4-1 - Allow login_userdomain execute systemd-tmpfiles in the caller domain - Allow virt_driver_domain read files labeled unconfined_t - Allow virt_driver_domain dbus chat with policykit - Allow virtqemud manage nfs files when virt_use_nfs boolean is on - Add rules for interactions between generators - Label memory.pressure files with cgroup_memory_pressure_t - Revert "Allow some systemd services write to cgroup files" - Update policy for systemd-nsresourced - Label /usr/bin/ntfsck with fsadm_exec_t - Allow systemd_fstab_generator_t read tmpfs files - Update policy for systemd-nsresourced - Alias /usr/sbin to /usr/bin and change all /usr/sbin paths to /usr/bin - Remove a few lines duplicated between {dkim,milter}.fc - Alias /bin → /usr/bin and remove redundant paths - Drop duplicate line for /usr/sbin/unix_chkpwd - Drop duplicate paths for /usr/sbin * Tue Jun 11 2024 Zdenek Pytela <zpytela@redhat.com> - 41.3-1 - Update systemd-generator policy - Remove permissive domain for bootupd_t - Remove permissive domain for coreos_installer_t - Remove permissive domain for afterburn_t - Add the sap module to modules.conf - Move unconfined_domain(sap_unconfined_t) to an optional block - Create the sap module - Allow systemd-coredumpd sys_admin and sys_resource capabilities - Allow systemd-coredump read nsfs files - Allow generators auto file transition only for plain files - Allow systemd-hwdb write to the kernel messages device - Escape "interface" as a file name in a virt filetrans pattern - Allow gnome-software work for login_userdomain - Allow systemd-machined manage runtime sockets - Revert "Allow systemd-machined manage runtime sockets" * Fri Jun 07 2024 Zdenek Pytela <zpytela@redhat.com> - 41.2-1 - Allow postfix_domain connect to postgresql over a unix socket - Dontaudit systemd-coredump sys_admin capability - Allow all domains read and write z90crypt device - Allow tpm2 generator setfscreate - Allow systemd (PID 1) manage systemd conf files - Allow pulseaudio map its runtime files - Update policy for getty-generator - Allow systemd-hwdb send messages to kernel unix datagram sockets - Allow systemd-machined manage runtime sockets * Mon Jun 03 2024 Zdenek Pytela <zpytela@redhat.com> - 41.1-1 - Allow fstab-generator create unit file symlinks - Update policy for cryptsetup-generator - Update policy for fstab-generator - Allow virtqemud read vm sysctls - Allow collectd to trace processes in user namespace - Allow bootupd search efivarfs dirs - Add policy for systemd-mountfsd - Add policy for systemd-nsresourced - Update policy generators - Add policy for anaconda-generator - Update policy for fstab and gpt generators - Add policy for kdump-dep-generator
/etc/dnf/protected.d/selinux-policy-mls.conf /etc/selinux/mls /etc/selinux/mls/.policy.sha512 /etc/selinux/mls/booleans.subs_dist /etc/selinux/mls/contexts /etc/selinux/mls/contexts/customizable_types /etc/selinux/mls/contexts/dbus_contexts /etc/selinux/mls/contexts/default_contexts /etc/selinux/mls/contexts/default_type /etc/selinux/mls/contexts/failsafe_context /etc/selinux/mls/contexts/files /etc/selinux/mls/contexts/files/file_contexts /etc/selinux/mls/contexts/files/file_contexts.bin /etc/selinux/mls/contexts/files/file_contexts.homedirs /etc/selinux/mls/contexts/files/file_contexts.homedirs.bin /etc/selinux/mls/contexts/files/file_contexts.local /etc/selinux/mls/contexts/files/file_contexts.local.bin /etc/selinux/mls/contexts/files/file_contexts.subs /etc/selinux/mls/contexts/files/file_contexts.subs_dist /etc/selinux/mls/contexts/files/media /etc/selinux/mls/contexts/initrc_context /etc/selinux/mls/contexts/lxc_contexts /etc/selinux/mls/contexts/openssh_contexts /etc/selinux/mls/contexts/removable_context /etc/selinux/mls/contexts/securetty_types /etc/selinux/mls/contexts/sepgsql_contexts /etc/selinux/mls/contexts/snapperd_contexts /etc/selinux/mls/contexts/systemd_contexts /etc/selinux/mls/contexts/userhelper_context /etc/selinux/mls/contexts/users /etc/selinux/mls/contexts/users/guest_u /etc/selinux/mls/contexts/users/root /etc/selinux/mls/contexts/users/staff_u /etc/selinux/mls/contexts/users/unconfined_u /etc/selinux/mls/contexts/users/user_u /etc/selinux/mls/contexts/users/xguest_u /etc/selinux/mls/contexts/virtual_domain_context /etc/selinux/mls/contexts/virtual_image_context /etc/selinux/mls/contexts/x_contexts /etc/selinux/mls/logins /etc/selinux/mls/policy /etc/selinux/mls/policy/policy.35 /etc/selinux/mls/setrans.conf /etc/selinux/mls/seusers /usr/share/selinux/mls /usr/share/selinux/mls/base.lst /usr/share/selinux/mls/modules.lst /usr/share/selinux/mls/nonbasemodules.lst /var/lib/selinux/mls /var/lib/selinux/mls/active /var/lib/selinux/mls/active/commit_num /var/lib/selinux/mls/active/file_contexts /var/lib/selinux/mls/active/file_contexts.homedirs /var/lib/selinux/mls/active/homedir_template /var/lib/selinux/mls/active/modules /var/lib/selinux/mls/active/modules/100/accountsd /var/lib/selinux/mls/active/modules/100/accountsd/cil /var/lib/selinux/mls/active/modules/100/accountsd/hll /var/lib/selinux/mls/active/modules/100/accountsd/lang_ext /var/lib/selinux/mls/active/modules/100/acct /var/lib/selinux/mls/active/modules/100/acct/cil /var/lib/selinux/mls/active/modules/100/acct/hll /var/lib/selinux/mls/active/modules/100/acct/lang_ext /var/lib/selinux/mls/active/modules/100/afs /var/lib/selinux/mls/active/modules/100/afs/cil /var/lib/selinux/mls/active/modules/100/afs/hll /var/lib/selinux/mls/active/modules/100/afs/lang_ext /var/lib/selinux/mls/active/modules/100/aide /var/lib/selinux/mls/active/modules/100/aide/cil /var/lib/selinux/mls/active/modules/100/aide/hll /var/lib/selinux/mls/active/modules/100/aide/lang_ext /var/lib/selinux/mls/active/modules/100/alsa /var/lib/selinux/mls/active/modules/100/alsa/cil /var/lib/selinux/mls/active/modules/100/alsa/hll /var/lib/selinux/mls/active/modules/100/alsa/lang_ext /var/lib/selinux/mls/active/modules/100/amanda /var/lib/selinux/mls/active/modules/100/amanda/cil /var/lib/selinux/mls/active/modules/100/amanda/hll /var/lib/selinux/mls/active/modules/100/amanda/lang_ext /var/lib/selinux/mls/active/modules/100/anaconda /var/lib/selinux/mls/active/modules/100/anaconda/cil /var/lib/selinux/mls/active/modules/100/anaconda/hll /var/lib/selinux/mls/active/modules/100/anaconda/lang_ext /var/lib/selinux/mls/active/modules/100/antivirus /var/lib/selinux/mls/active/modules/100/antivirus/cil /var/lib/selinux/mls/active/modules/100/antivirus/hll /var/lib/selinux/mls/active/modules/100/antivirus/lang_ext /var/lib/selinux/mls/active/modules/100/apache /var/lib/selinux/mls/active/modules/100/apache/cil /var/lib/selinux/mls/active/modules/100/apache/hll /var/lib/selinux/mls/active/modules/100/apache/lang_ext /var/lib/selinux/mls/active/modules/100/apcupsd /var/lib/selinux/mls/active/modules/100/apcupsd/cil /var/lib/selinux/mls/active/modules/100/apcupsd/hll /var/lib/selinux/mls/active/modules/100/apcupsd/lang_ext /var/lib/selinux/mls/active/modules/100/apm /var/lib/selinux/mls/active/modules/100/apm/cil /var/lib/selinux/mls/active/modules/100/apm/hll /var/lib/selinux/mls/active/modules/100/apm/lang_ext /var/lib/selinux/mls/active/modules/100/application /var/lib/selinux/mls/active/modules/100/application/cil /var/lib/selinux/mls/active/modules/100/application/hll /var/lib/selinux/mls/active/modules/100/application/lang_ext /var/lib/selinux/mls/active/modules/100/arpwatch /var/lib/selinux/mls/active/modules/100/arpwatch/cil /var/lib/selinux/mls/active/modules/100/arpwatch/hll /var/lib/selinux/mls/active/modules/100/arpwatch/lang_ext /var/lib/selinux/mls/active/modules/100/auditadm /var/lib/selinux/mls/active/modules/100/auditadm/cil /var/lib/selinux/mls/active/modules/100/auditadm/hll /var/lib/selinux/mls/active/modules/100/auditadm/lang_ext /var/lib/selinux/mls/active/modules/100/authlogin /var/lib/selinux/mls/active/modules/100/authlogin/cil /var/lib/selinux/mls/active/modules/100/authlogin/hll /var/lib/selinux/mls/active/modules/100/authlogin/lang_ext /var/lib/selinux/mls/active/modules/100/automount /var/lib/selinux/mls/active/modules/100/automount/cil /var/lib/selinux/mls/active/modules/100/automount/hll /var/lib/selinux/mls/active/modules/100/automount/lang_ext /var/lib/selinux/mls/active/modules/100/avahi /var/lib/selinux/mls/active/modules/100/avahi/cil /var/lib/selinux/mls/active/modules/100/avahi/hll /var/lib/selinux/mls/active/modules/100/avahi/lang_ext /var/lib/selinux/mls/active/modules/100/awstats /var/lib/selinux/mls/active/modules/100/awstats/cil /var/lib/selinux/mls/active/modules/100/awstats/hll /var/lib/selinux/mls/active/modules/100/awstats/lang_ext /var/lib/selinux/mls/active/modules/100/base /var/lib/selinux/mls/active/modules/100/base/cil /var/lib/selinux/mls/active/modules/100/base/hll /var/lib/selinux/mls/active/modules/100/base/lang_ext /var/lib/selinux/mls/active/modules/100/bind /var/lib/selinux/mls/active/modules/100/bind/cil /var/lib/selinux/mls/active/modules/100/bind/hll /var/lib/selinux/mls/active/modules/100/bind/lang_ext /var/lib/selinux/mls/active/modules/100/bitlbee /var/lib/selinux/mls/active/modules/100/bitlbee/cil /var/lib/selinux/mls/active/modules/100/bitlbee/hll /var/lib/selinux/mls/active/modules/100/bitlbee/lang_ext /var/lib/selinux/mls/active/modules/100/bluetooth /var/lib/selinux/mls/active/modules/100/bluetooth/cil /var/lib/selinux/mls/active/modules/100/bluetooth/hll /var/lib/selinux/mls/active/modules/100/bluetooth/lang_ext /var/lib/selinux/mls/active/modules/100/boinc /var/lib/selinux/mls/active/modules/100/boinc/cil /var/lib/selinux/mls/active/modules/100/boinc/hll /var/lib/selinux/mls/active/modules/100/boinc/lang_ext /var/lib/selinux/mls/active/modules/100/bootloader /var/lib/selinux/mls/active/modules/100/bootloader/cil /var/lib/selinux/mls/active/modules/100/bootloader/hll /var/lib/selinux/mls/active/modules/100/bootloader/lang_ext /var/lib/selinux/mls/active/modules/100/brctl /var/lib/selinux/mls/active/modules/100/brctl/cil /var/lib/selinux/mls/active/modules/100/brctl/hll /var/lib/selinux/mls/active/modules/100/brctl/lang_ext /var/lib/selinux/mls/active/modules/100/bugzilla /var/lib/selinux/mls/active/modules/100/bugzilla/cil /var/lib/selinux/mls/active/modules/100/bugzilla/hll /var/lib/selinux/mls/active/modules/100/bugzilla/lang_ext /var/lib/selinux/mls/active/modules/100/cachefilesd /var/lib/selinux/mls/active/modules/100/cachefilesd/cil /var/lib/selinux/mls/active/modules/100/cachefilesd/hll /var/lib/selinux/mls/active/modules/100/cachefilesd/lang_ext /var/lib/selinux/mls/active/modules/100/calamaris /var/lib/selinux/mls/active/modules/100/calamaris/cil /var/lib/selinux/mls/active/modules/100/calamaris/hll /var/lib/selinux/mls/active/modules/100/calamaris/lang_ext /var/lib/selinux/mls/active/modules/100/canna /var/lib/selinux/mls/active/modules/100/canna/cil /var/lib/selinux/mls/active/modules/100/canna/hll /var/lib/selinux/mls/active/modules/100/canna/lang_ext /var/lib/selinux/mls/active/modules/100/ccs /var/lib/selinux/mls/active/modules/100/ccs/cil /var/lib/selinux/mls/active/modules/100/ccs/hll /var/lib/selinux/mls/active/modules/100/ccs/lang_ext /var/lib/selinux/mls/active/modules/100/cdrecord /var/lib/selinux/mls/active/modules/100/cdrecord/cil /var/lib/selinux/mls/active/modules/100/cdrecord/hll /var/lib/selinux/mls/active/modules/100/cdrecord/lang_ext /var/lib/selinux/mls/active/modules/100/certmaster /var/lib/selinux/mls/active/modules/100/certmaster/cil /var/lib/selinux/mls/active/modules/100/certmaster/hll /var/lib/selinux/mls/active/modules/100/certmaster/lang_ext /var/lib/selinux/mls/active/modules/100/certmonger /var/lib/selinux/mls/active/modules/100/certmonger/cil /var/lib/selinux/mls/active/modules/100/certmonger/hll /var/lib/selinux/mls/active/modules/100/certmonger/lang_ext /var/lib/selinux/mls/active/modules/100/certwatch /var/lib/selinux/mls/active/modules/100/certwatch/cil /var/lib/selinux/mls/active/modules/100/certwatch/hll /var/lib/selinux/mls/active/modules/100/certwatch/lang_ext /var/lib/selinux/mls/active/modules/100/cgroup /var/lib/selinux/mls/active/modules/100/cgroup/cil /var/lib/selinux/mls/active/modules/100/cgroup/hll /var/lib/selinux/mls/active/modules/100/cgroup/lang_ext /var/lib/selinux/mls/active/modules/100/chrome /var/lib/selinux/mls/active/modules/100/chrome/cil /var/lib/selinux/mls/active/modules/100/chrome/hll /var/lib/selinux/mls/active/modules/100/chrome/lang_ext /var/lib/selinux/mls/active/modules/100/chronyd /var/lib/selinux/mls/active/modules/100/chronyd/cil /var/lib/selinux/mls/active/modules/100/chronyd/hll /var/lib/selinux/mls/active/modules/100/chronyd/lang_ext /var/lib/selinux/mls/active/modules/100/cipe /var/lib/selinux/mls/active/modules/100/cipe/cil /var/lib/selinux/mls/active/modules/100/cipe/hll /var/lib/selinux/mls/active/modules/100/cipe/lang_ext /var/lib/selinux/mls/active/modules/100/clock /var/lib/selinux/mls/active/modules/100/clock/cil /var/lib/selinux/mls/active/modules/100/clock/hll /var/lib/selinux/mls/active/modules/100/clock/lang_ext /var/lib/selinux/mls/active/modules/100/clogd /var/lib/selinux/mls/active/modules/100/clogd/cil /var/lib/selinux/mls/active/modules/100/clogd/hll /var/lib/selinux/mls/active/modules/100/clogd/lang_ext /var/lib/selinux/mls/active/modules/100/cmirrord /var/lib/selinux/mls/active/modules/100/cmirrord/cil /var/lib/selinux/mls/active/modules/100/cmirrord/hll /var/lib/selinux/mls/active/modules/100/cmirrord/lang_ext /var/lib/selinux/mls/active/modules/100/colord /var/lib/selinux/mls/active/modules/100/colord/cil /var/lib/selinux/mls/active/modules/100/colord/hll /var/lib/selinux/mls/active/modules/100/colord/lang_ext /var/lib/selinux/mls/active/modules/100/comsat /var/lib/selinux/mls/active/modules/100/comsat/cil /var/lib/selinux/mls/active/modules/100/comsat/hll /var/lib/selinux/mls/active/modules/100/comsat/lang_ext /var/lib/selinux/mls/active/modules/100/courier /var/lib/selinux/mls/active/modules/100/courier/cil /var/lib/selinux/mls/active/modules/100/courier/hll /var/lib/selinux/mls/active/modules/100/courier/lang_ext /var/lib/selinux/mls/active/modules/100/cpucontrol /var/lib/selinux/mls/active/modules/100/cpucontrol/cil /var/lib/selinux/mls/active/modules/100/cpucontrol/hll /var/lib/selinux/mls/active/modules/100/cpucontrol/lang_ext /var/lib/selinux/mls/active/modules/100/cpufreqselector /var/lib/selinux/mls/active/modules/100/cpufreqselector/cil /var/lib/selinux/mls/active/modules/100/cpufreqselector/hll /var/lib/selinux/mls/active/modules/100/cpufreqselector/lang_ext /var/lib/selinux/mls/active/modules/100/cron /var/lib/selinux/mls/active/modules/100/cron/cil /var/lib/selinux/mls/active/modules/100/cron/hll /var/lib/selinux/mls/active/modules/100/cron/lang_ext /var/lib/selinux/mls/active/modules/100/cups /var/lib/selinux/mls/active/modules/100/cups/cil /var/lib/selinux/mls/active/modules/100/cups/hll /var/lib/selinux/mls/active/modules/100/cups/lang_ext /var/lib/selinux/mls/active/modules/100/cvs /var/lib/selinux/mls/active/modules/100/cvs/cil /var/lib/selinux/mls/active/modules/100/cvs/hll /var/lib/selinux/mls/active/modules/100/cvs/lang_ext /var/lib/selinux/mls/active/modules/100/cyphesis /var/lib/selinux/mls/active/modules/100/cyphesis/cil /var/lib/selinux/mls/active/modules/100/cyphesis/hll /var/lib/selinux/mls/active/modules/100/cyphesis/lang_ext /var/lib/selinux/mls/active/modules/100/cyrus /var/lib/selinux/mls/active/modules/100/cyrus/cil /var/lib/selinux/mls/active/modules/100/cyrus/hll /var/lib/selinux/mls/active/modules/100/cyrus/lang_ext /var/lib/selinux/mls/active/modules/100/daemontools /var/lib/selinux/mls/active/modules/100/daemontools/cil /var/lib/selinux/mls/active/modules/100/daemontools/hll /var/lib/selinux/mls/active/modules/100/daemontools/lang_ext /var/lib/selinux/mls/active/modules/100/dbadm /var/lib/selinux/mls/active/modules/100/dbadm/cil /var/lib/selinux/mls/active/modules/100/dbadm/hll /var/lib/selinux/mls/active/modules/100/dbadm/lang_ext /var/lib/selinux/mls/active/modules/100/dbskk /var/lib/selinux/mls/active/modules/100/dbskk/cil /var/lib/selinux/mls/active/modules/100/dbskk/hll /var/lib/selinux/mls/active/modules/100/dbskk/lang_ext /var/lib/selinux/mls/active/modules/100/dbus /var/lib/selinux/mls/active/modules/100/dbus/cil /var/lib/selinux/mls/active/modules/100/dbus/hll /var/lib/selinux/mls/active/modules/100/dbus/lang_ext /var/lib/selinux/mls/active/modules/100/dcc /var/lib/selinux/mls/active/modules/100/dcc/cil /var/lib/selinux/mls/active/modules/100/dcc/hll /var/lib/selinux/mls/active/modules/100/dcc/lang_ext /var/lib/selinux/mls/active/modules/100/devicekit /var/lib/selinux/mls/active/modules/100/devicekit/cil /var/lib/selinux/mls/active/modules/100/devicekit/hll /var/lib/selinux/mls/active/modules/100/devicekit/lang_ext /var/lib/selinux/mls/active/modules/100/dhcp /var/lib/selinux/mls/active/modules/100/dhcp/cil /var/lib/selinux/mls/active/modules/100/dhcp/hll /var/lib/selinux/mls/active/modules/100/dhcp/lang_ext /var/lib/selinux/mls/active/modules/100/dictd /var/lib/selinux/mls/active/modules/100/dictd/cil /var/lib/selinux/mls/active/modules/100/dictd/hll /var/lib/selinux/mls/active/modules/100/dictd/lang_ext /var/lib/selinux/mls/active/modules/100/dmesg /var/lib/selinux/mls/active/modules/100/dmesg/cil /var/lib/selinux/mls/active/modules/100/dmesg/hll /var/lib/selinux/mls/active/modules/100/dmesg/lang_ext /var/lib/selinux/mls/active/modules/100/dmidecode /var/lib/selinux/mls/active/modules/100/dmidecode/cil /var/lib/selinux/mls/active/modules/100/dmidecode/hll /var/lib/selinux/mls/active/modules/100/dmidecode/lang_ext /var/lib/selinux/mls/active/modules/100/dnsmasq /var/lib/selinux/mls/active/modules/100/dnsmasq/cil /var/lib/selinux/mls/active/modules/100/dnsmasq/hll /var/lib/selinux/mls/active/modules/100/dnsmasq/lang_ext /var/lib/selinux/mls/active/modules/100/dnssec /var/lib/selinux/mls/active/modules/100/dnssec/cil /var/lib/selinux/mls/active/modules/100/dnssec/hll /var/lib/selinux/mls/active/modules/100/dnssec/lang_ext /var/lib/selinux/mls/active/modules/100/dovecot /var/lib/selinux/mls/active/modules/100/dovecot/cil /var/lib/selinux/mls/active/modules/100/dovecot/hll /var/lib/selinux/mls/active/modules/100/dovecot/lang_ext /var/lib/selinux/mls/active/modules/100/entropyd /var/lib/selinux/mls/active/modules/100/entropyd/cil /var/lib/selinux/mls/active/modules/100/entropyd/hll /var/lib/selinux/mls/active/modules/100/entropyd/lang_ext /var/lib/selinux/mls/active/modules/100/exim /var/lib/selinux/mls/active/modules/100/exim/cil /var/lib/selinux/mls/active/modules/100/exim/hll /var/lib/selinux/mls/active/modules/100/exim/lang_ext /var/lib/selinux/mls/active/modules/100/fetchmail /var/lib/selinux/mls/active/modules/100/fetchmail/cil /var/lib/selinux/mls/active/modules/100/fetchmail/hll /var/lib/selinux/mls/active/modules/100/fetchmail/lang_ext /var/lib/selinux/mls/active/modules/100/finger /var/lib/selinux/mls/active/modules/100/finger/cil /var/lib/selinux/mls/active/modules/100/finger/hll /var/lib/selinux/mls/active/modules/100/finger/lang_ext /var/lib/selinux/mls/active/modules/100/firewalld /var/lib/selinux/mls/active/modules/100/firewalld/cil /var/lib/selinux/mls/active/modules/100/firewalld/hll /var/lib/selinux/mls/active/modules/100/firewalld/lang_ext /var/lib/selinux/mls/active/modules/100/firewallgui /var/lib/selinux/mls/active/modules/100/firewallgui/cil /var/lib/selinux/mls/active/modules/100/firewallgui/hll /var/lib/selinux/mls/active/modules/100/firewallgui/lang_ext /var/lib/selinux/mls/active/modules/100/firstboot /var/lib/selinux/mls/active/modules/100/firstboot/cil /var/lib/selinux/mls/active/modules/100/firstboot/hll /var/lib/selinux/mls/active/modules/100/firstboot/lang_ext /var/lib/selinux/mls/active/modules/100/fprintd /var/lib/selinux/mls/active/modules/100/fprintd/cil /var/lib/selinux/mls/active/modules/100/fprintd/hll /var/lib/selinux/mls/active/modules/100/fprintd/lang_ext /var/lib/selinux/mls/active/modules/100/fstools /var/lib/selinux/mls/active/modules/100/fstools/cil /var/lib/selinux/mls/active/modules/100/fstools/hll /var/lib/selinux/mls/active/modules/100/fstools/lang_ext /var/lib/selinux/mls/active/modules/100/ftp /var/lib/selinux/mls/active/modules/100/ftp/cil /var/lib/selinux/mls/active/modules/100/ftp/hll /var/lib/selinux/mls/active/modules/100/ftp/lang_ext /var/lib/selinux/mls/active/modules/100/games /var/lib/selinux/mls/active/modules/100/games/cil /var/lib/selinux/mls/active/modules/100/games/hll /var/lib/selinux/mls/active/modules/100/games/lang_ext /var/lib/selinux/mls/active/modules/100/getty /var/lib/selinux/mls/active/modules/100/getty/cil /var/lib/selinux/mls/active/modules/100/getty/hll /var/lib/selinux/mls/active/modules/100/getty/lang_ext /var/lib/selinux/mls/active/modules/100/git /var/lib/selinux/mls/active/modules/100/git/cil /var/lib/selinux/mls/active/modules/100/git/hll /var/lib/selinux/mls/active/modules/100/git/lang_ext /var/lib/selinux/mls/active/modules/100/gitosis /var/lib/selinux/mls/active/modules/100/gitosis/cil /var/lib/selinux/mls/active/modules/100/gitosis/hll /var/lib/selinux/mls/active/modules/100/gitosis/lang_ext /var/lib/selinux/mls/active/modules/100/glance /var/lib/selinux/mls/active/modules/100/glance/cil /var/lib/selinux/mls/active/modules/100/glance/hll /var/lib/selinux/mls/active/modules/100/glance/lang_ext /var/lib/selinux/mls/active/modules/100/gnome /var/lib/selinux/mls/active/modules/100/gnome/cil /var/lib/selinux/mls/active/modules/100/gnome/hll /var/lib/selinux/mls/active/modules/100/gnome/lang_ext /var/lib/selinux/mls/active/modules/100/gpg /var/lib/selinux/mls/active/modules/100/gpg/cil /var/lib/selinux/mls/active/modules/100/gpg/hll /var/lib/selinux/mls/active/modules/100/gpg/lang_ext /var/lib/selinux/mls/active/modules/100/gpm /var/lib/selinux/mls/active/modules/100/gpm/cil /var/lib/selinux/mls/active/modules/100/gpm/hll /var/lib/selinux/mls/active/modules/100/gpm/lang_ext /var/lib/selinux/mls/active/modules/100/gpsd /var/lib/selinux/mls/active/modules/100/gpsd/cil /var/lib/selinux/mls/active/modules/100/gpsd/hll /var/lib/selinux/mls/active/modules/100/gpsd/lang_ext /var/lib/selinux/mls/active/modules/100/gssproxy /var/lib/selinux/mls/active/modules/100/gssproxy/cil /var/lib/selinux/mls/active/modules/100/gssproxy/hll /var/lib/selinux/mls/active/modules/100/gssproxy/lang_ext /var/lib/selinux/mls/active/modules/100/guest /var/lib/selinux/mls/active/modules/100/guest/cil /var/lib/selinux/mls/active/modules/100/guest/hll /var/lib/selinux/mls/active/modules/100/guest/lang_ext /var/lib/selinux/mls/active/modules/100/hostname /var/lib/selinux/mls/active/modules/100/hostname/cil /var/lib/selinux/mls/active/modules/100/hostname/hll /var/lib/selinux/mls/active/modules/100/hostname/lang_ext /var/lib/selinux/mls/active/modules/100/inetd /var/lib/selinux/mls/active/modules/100/inetd/cil /var/lib/selinux/mls/active/modules/100/inetd/hll /var/lib/selinux/mls/active/modules/100/inetd/lang_ext /var/lib/selinux/mls/active/modules/100/init /var/lib/selinux/mls/active/modules/100/init/cil /var/lib/selinux/mls/active/modules/100/init/hll /var/lib/selinux/mls/active/modules/100/init/lang_ext /var/lib/selinux/mls/active/modules/100/inn /var/lib/selinux/mls/active/modules/100/inn/cil /var/lib/selinux/mls/active/modules/100/inn/hll /var/lib/selinux/mls/active/modules/100/inn/lang_ext /var/lib/selinux/mls/active/modules/100/ipsec /var/lib/selinux/mls/active/modules/100/ipsec/cil /var/lib/selinux/mls/active/modules/100/ipsec/hll /var/lib/selinux/mls/active/modules/100/ipsec/lang_ext /var/lib/selinux/mls/active/modules/100/iptables /var/lib/selinux/mls/active/modules/100/iptables/cil /var/lib/selinux/mls/active/modules/100/iptables/hll /var/lib/selinux/mls/active/modules/100/iptables/lang_ext /var/lib/selinux/mls/active/modules/100/irc /var/lib/selinux/mls/active/modules/100/irc/cil /var/lib/selinux/mls/active/modules/100/irc/hll /var/lib/selinux/mls/active/modules/100/irc/lang_ext /var/lib/selinux/mls/active/modules/100/irqbalance /var/lib/selinux/mls/active/modules/100/irqbalance/cil /var/lib/selinux/mls/active/modules/100/irqbalance/hll /var/lib/selinux/mls/active/modules/100/irqbalance/lang_ext /var/lib/selinux/mls/active/modules/100/iscsi /var/lib/selinux/mls/active/modules/100/iscsi/cil /var/lib/selinux/mls/active/modules/100/iscsi/hll /var/lib/selinux/mls/active/modules/100/iscsi/lang_ext /var/lib/selinux/mls/active/modules/100/jabber /var/lib/selinux/mls/active/modules/100/jabber/cil /var/lib/selinux/mls/active/modules/100/jabber/hll /var/lib/selinux/mls/active/modules/100/jabber/lang_ext /var/lib/selinux/mls/active/modules/100/kdump /var/lib/selinux/mls/active/modules/100/kdump/cil /var/lib/selinux/mls/active/modules/100/kdump/hll /var/lib/selinux/mls/active/modules/100/kdump/lang_ext /var/lib/selinux/mls/active/modules/100/kdumpgui /var/lib/selinux/mls/active/modules/100/kdumpgui/cil /var/lib/selinux/mls/active/modules/100/kdumpgui/hll /var/lib/selinux/mls/active/modules/100/kdumpgui/lang_ext /var/lib/selinux/mls/active/modules/100/kerberos /var/lib/selinux/mls/active/modules/100/kerberos/cil /var/lib/selinux/mls/active/modules/100/kerberos/hll /var/lib/selinux/mls/active/modules/100/kerberos/lang_ext /var/lib/selinux/mls/active/modules/100/kismet /var/lib/selinux/mls/active/modules/100/kismet/cil /var/lib/selinux/mls/active/modules/100/kismet/hll /var/lib/selinux/mls/active/modules/100/kismet/lang_ext /var/lib/selinux/mls/active/modules/100/ksmtuned /var/lib/selinux/mls/active/modules/100/ksmtuned/cil /var/lib/selinux/mls/active/modules/100/ksmtuned/hll /var/lib/selinux/mls/active/modules/100/ksmtuned/lang_ext /var/lib/selinux/mls/active/modules/100/ktalk /var/lib/selinux/mls/active/modules/100/ktalk/cil /var/lib/selinux/mls/active/modules/100/ktalk/hll /var/lib/selinux/mls/active/modules/100/ktalk/lang_ext /var/lib/selinux/mls/active/modules/100/ldap /var/lib/selinux/mls/active/modules/100/ldap/cil /var/lib/selinux/mls/active/modules/100/ldap/hll /var/lib/selinux/mls/active/modules/100/ldap/lang_ext /var/lib/selinux/mls/active/modules/100/libraries /var/lib/selinux/mls/active/modules/100/libraries/cil /var/lib/selinux/mls/active/modules/100/libraries/hll /var/lib/selinux/mls/active/modules/100/libraries/lang_ext /var/lib/selinux/mls/active/modules/100/lircd /var/lib/selinux/mls/active/modules/100/lircd/cil /var/lib/selinux/mls/active/modules/100/lircd/hll /var/lib/selinux/mls/active/modules/100/lircd/lang_ext /var/lib/selinux/mls/active/modules/100/loadkeys /var/lib/selinux/mls/active/modules/100/loadkeys/cil /var/lib/selinux/mls/active/modules/100/loadkeys/hll /var/lib/selinux/mls/active/modules/100/loadkeys/lang_ext /var/lib/selinux/mls/active/modules/100/locallogin /var/lib/selinux/mls/active/modules/100/locallogin/cil /var/lib/selinux/mls/active/modules/100/locallogin/hll /var/lib/selinux/mls/active/modules/100/locallogin/lang_ext /var/lib/selinux/mls/active/modules/100/lockdev /var/lib/selinux/mls/active/modules/100/lockdev/cil /var/lib/selinux/mls/active/modules/100/lockdev/hll /var/lib/selinux/mls/active/modules/100/lockdev/lang_ext /var/lib/selinux/mls/active/modules/100/logadm /var/lib/selinux/mls/active/modules/100/logadm/cil /var/lib/selinux/mls/active/modules/100/logadm/hll /var/lib/selinux/mls/active/modules/100/logadm/lang_ext /var/lib/selinux/mls/active/modules/100/logging /var/lib/selinux/mls/active/modules/100/logging/cil /var/lib/selinux/mls/active/modules/100/logging/hll /var/lib/selinux/mls/active/modules/100/logging/lang_ext /var/lib/selinux/mls/active/modules/100/logrotate /var/lib/selinux/mls/active/modules/100/logrotate/cil /var/lib/selinux/mls/active/modules/100/logrotate/hll /var/lib/selinux/mls/active/modules/100/logrotate/lang_ext /var/lib/selinux/mls/active/modules/100/logwatch /var/lib/selinux/mls/active/modules/100/logwatch/cil /var/lib/selinux/mls/active/modules/100/logwatch/hll /var/lib/selinux/mls/active/modules/100/logwatch/lang_ext /var/lib/selinux/mls/active/modules/100/lpd /var/lib/selinux/mls/active/modules/100/lpd/cil /var/lib/selinux/mls/active/modules/100/lpd/hll /var/lib/selinux/mls/active/modules/100/lpd/lang_ext /var/lib/selinux/mls/active/modules/100/lsm /var/lib/selinux/mls/active/modules/100/lsm/cil /var/lib/selinux/mls/active/modules/100/lsm/hll /var/lib/selinux/mls/active/modules/100/lsm/lang_ext /var/lib/selinux/mls/active/modules/100/lvm /var/lib/selinux/mls/active/modules/100/lvm/cil /var/lib/selinux/mls/active/modules/100/lvm/hll /var/lib/selinux/mls/active/modules/100/lvm/lang_ext /var/lib/selinux/mls/active/modules/100/mailman /var/lib/selinux/mls/active/modules/100/mailman/cil /var/lib/selinux/mls/active/modules/100/mailman/hll /var/lib/selinux/mls/active/modules/100/mailman/lang_ext /var/lib/selinux/mls/active/modules/100/mandb /var/lib/selinux/mls/active/modules/100/mandb/cil /var/lib/selinux/mls/active/modules/100/mandb/hll /var/lib/selinux/mls/active/modules/100/mandb/lang_ext /var/lib/selinux/mls/active/modules/100/mcelog /var/lib/selinux/mls/active/modules/100/mcelog/cil /var/lib/selinux/mls/active/modules/100/mcelog/hll /var/lib/selinux/mls/active/modules/100/mcelog/lang_ext /var/lib/selinux/mls/active/modules/100/memcached /var/lib/selinux/mls/active/modules/100/memcached/cil /var/lib/selinux/mls/active/modules/100/memcached/hll /var/lib/selinux/mls/active/modules/100/memcached/lang_ext /var/lib/selinux/mls/active/modules/100/milter /var/lib/selinux/mls/active/modules/100/milter/cil /var/lib/selinux/mls/active/modules/100/milter/hll /var/lib/selinux/mls/active/modules/100/milter/lang_ext /var/lib/selinux/mls/active/modules/100/miscfiles /var/lib/selinux/mls/active/modules/100/miscfiles/cil /var/lib/selinux/mls/active/modules/100/miscfiles/hll /var/lib/selinux/mls/active/modules/100/miscfiles/lang_ext /var/lib/selinux/mls/active/modules/100/modemmanager /var/lib/selinux/mls/active/modules/100/modemmanager/cil /var/lib/selinux/mls/active/modules/100/modemmanager/hll /var/lib/selinux/mls/active/modules/100/modemmanager/lang_ext /var/lib/selinux/mls/active/modules/100/modutils /var/lib/selinux/mls/active/modules/100/modutils/cil /var/lib/selinux/mls/active/modules/100/modutils/hll /var/lib/selinux/mls/active/modules/100/modutils/lang_ext /var/lib/selinux/mls/active/modules/100/mojomojo /var/lib/selinux/mls/active/modules/100/mojomojo/cil /var/lib/selinux/mls/active/modules/100/mojomojo/hll /var/lib/selinux/mls/active/modules/100/mojomojo/lang_ext /var/lib/selinux/mls/active/modules/100/mount /var/lib/selinux/mls/active/modules/100/mount/cil /var/lib/selinux/mls/active/modules/100/mount/hll /var/lib/selinux/mls/active/modules/100/mount/lang_ext /var/lib/selinux/mls/active/modules/100/mozilla /var/lib/selinux/mls/active/modules/100/mozilla/cil /var/lib/selinux/mls/active/modules/100/mozilla/hll /var/lib/selinux/mls/active/modules/100/mozilla/lang_ext /var/lib/selinux/mls/active/modules/100/mplayer /var/lib/selinux/mls/active/modules/100/mplayer/cil /var/lib/selinux/mls/active/modules/100/mplayer/hll /var/lib/selinux/mls/active/modules/100/mplayer/lang_ext /var/lib/selinux/mls/active/modules/100/mrtg /var/lib/selinux/mls/active/modules/100/mrtg/cil /var/lib/selinux/mls/active/modules/100/mrtg/hll /var/lib/selinux/mls/active/modules/100/mrtg/lang_ext /var/lib/selinux/mls/active/modules/100/mta /var/lib/selinux/mls/active/modules/100/mta/cil /var/lib/selinux/mls/active/modules/100/mta/hll /var/lib/selinux/mls/active/modules/100/mta/lang_ext /var/lib/selinux/mls/active/modules/100/munin /var/lib/selinux/mls/active/modules/100/munin/cil /var/lib/selinux/mls/active/modules/100/munin/hll /var/lib/selinux/mls/active/modules/100/munin/lang_ext /var/lib/selinux/mls/active/modules/100/nagios /var/lib/selinux/mls/active/modules/100/nagios/cil /var/lib/selinux/mls/active/modules/100/nagios/hll /var/lib/selinux/mls/active/modules/100/nagios/lang_ext /var/lib/selinux/mls/active/modules/100/namespace /var/lib/selinux/mls/active/modules/100/namespace/cil /var/lib/selinux/mls/active/modules/100/namespace/hll /var/lib/selinux/mls/active/modules/100/namespace/lang_ext /var/lib/selinux/mls/active/modules/100/ncftool /var/lib/selinux/mls/active/modules/100/ncftool/cil /var/lib/selinux/mls/active/modules/100/ncftool/hll /var/lib/selinux/mls/active/modules/100/ncftool/lang_ext /var/lib/selinux/mls/active/modules/100/netlabel /var/lib/selinux/mls/active/modules/100/netlabel/cil /var/lib/selinux/mls/active/modules/100/netlabel/hll /var/lib/selinux/mls/active/modules/100/netlabel/lang_ext /var/lib/selinux/mls/active/modules/100/netutils /var/lib/selinux/mls/active/modules/100/netutils/cil /var/lib/selinux/mls/active/modules/100/netutils/hll /var/lib/selinux/mls/active/modules/100/netutils/lang_ext /var/lib/selinux/mls/active/modules/100/networkmanager /var/lib/selinux/mls/active/modules/100/networkmanager/cil /var/lib/selinux/mls/active/modules/100/networkmanager/hll /var/lib/selinux/mls/active/modules/100/networkmanager/lang_ext /var/lib/selinux/mls/active/modules/100/nis /var/lib/selinux/mls/active/modules/100/nis/cil /var/lib/selinux/mls/active/modules/100/nis/hll /var/lib/selinux/mls/active/modules/100/nis/lang_ext /var/lib/selinux/mls/active/modules/100/nscd /var/lib/selinux/mls/active/modules/100/nscd/cil /var/lib/selinux/mls/active/modules/100/nscd/hll /var/lib/selinux/mls/active/modules/100/nscd/lang_ext /var/lib/selinux/mls/active/modules/100/nslcd /var/lib/selinux/mls/active/modules/100/nslcd/cil /var/lib/selinux/mls/active/modules/100/nslcd/hll /var/lib/selinux/mls/active/modules/100/nslcd/lang_ext /var/lib/selinux/mls/active/modules/100/ntop /var/lib/selinux/mls/active/modules/100/ntop/cil /var/lib/selinux/mls/active/modules/100/ntop/hll /var/lib/selinux/mls/active/modules/100/ntop/lang_ext /var/lib/selinux/mls/active/modules/100/ntp /var/lib/selinux/mls/active/modules/100/ntp/cil /var/lib/selinux/mls/active/modules/100/ntp/hll /var/lib/selinux/mls/active/modules/100/ntp/lang_ext /var/lib/selinux/mls/active/modules/100/nx /var/lib/selinux/mls/active/modules/100/nx/cil /var/lib/selinux/mls/active/modules/100/nx/hll /var/lib/selinux/mls/active/modules/100/nx/lang_ext /var/lib/selinux/mls/active/modules/100/oddjob /var/lib/selinux/mls/active/modules/100/oddjob/cil /var/lib/selinux/mls/active/modules/100/oddjob/hll /var/lib/selinux/mls/active/modules/100/oddjob/lang_ext /var/lib/selinux/mls/active/modules/100/openvpn /var/lib/selinux/mls/active/modules/100/openvpn/cil /var/lib/selinux/mls/active/modules/100/openvpn/hll /var/lib/selinux/mls/active/modules/100/openvpn/lang_ext /var/lib/selinux/mls/active/modules/100/openvswitch /var/lib/selinux/mls/active/modules/100/openvswitch/cil /var/lib/selinux/mls/active/modules/100/openvswitch/hll /var/lib/selinux/mls/active/modules/100/openvswitch/lang_ext /var/lib/selinux/mls/active/modules/100/pads /var/lib/selinux/mls/active/modules/100/pads/cil /var/lib/selinux/mls/active/modules/100/pads/hll /var/lib/selinux/mls/active/modules/100/pads/lang_ext /var/lib/selinux/mls/active/modules/100/pcmcia /var/lib/selinux/mls/active/modules/100/pcmcia/cil /var/lib/selinux/mls/active/modules/100/pcmcia/hll /var/lib/selinux/mls/active/modules/100/pcmcia/lang_ext /var/lib/selinux/mls/active/modules/100/pcscd /var/lib/selinux/mls/active/modules/100/pcscd/cil /var/lib/selinux/mls/active/modules/100/pcscd/hll /var/lib/selinux/mls/active/modules/100/pcscd/lang_ext /var/lib/selinux/mls/active/modules/100/pegasus /var/lib/selinux/mls/active/modules/100/pegasus/cil /var/lib/selinux/mls/active/modules/100/pegasus/hll /var/lib/selinux/mls/active/modules/100/pegasus/lang_ext /var/lib/selinux/mls/active/modules/100/pingd /var/lib/selinux/mls/active/modules/100/pingd/cil /var/lib/selinux/mls/active/modules/100/pingd/hll /var/lib/selinux/mls/active/modules/100/pingd/lang_ext /var/lib/selinux/mls/active/modules/100/plymouthd /var/lib/selinux/mls/active/modules/100/plymouthd/cil /var/lib/selinux/mls/active/modules/100/plymouthd/hll /var/lib/selinux/mls/active/modules/100/plymouthd/lang_ext /var/lib/selinux/mls/active/modules/100/podsleuth /var/lib/selinux/mls/active/modules/100/podsleuth/cil /var/lib/selinux/mls/active/modules/100/podsleuth/hll /var/lib/selinux/mls/active/modules/100/podsleuth/lang_ext /var/lib/selinux/mls/active/modules/100/policykit /var/lib/selinux/mls/active/modules/100/policykit/cil /var/lib/selinux/mls/active/modules/100/policykit/hll /var/lib/selinux/mls/active/modules/100/policykit/lang_ext /var/lib/selinux/mls/active/modules/100/polipo /var/lib/selinux/mls/active/modules/100/polipo/cil /var/lib/selinux/mls/active/modules/100/polipo/hll /var/lib/selinux/mls/active/modules/100/polipo/lang_ext /var/lib/selinux/mls/active/modules/100/portmap /var/lib/selinux/mls/active/modules/100/portmap/cil /var/lib/selinux/mls/active/modules/100/portmap/hll /var/lib/selinux/mls/active/modules/100/portmap/lang_ext /var/lib/selinux/mls/active/modules/100/portreserve /var/lib/selinux/mls/active/modules/100/portreserve/cil /var/lib/selinux/mls/active/modules/100/portreserve/hll /var/lib/selinux/mls/active/modules/100/portreserve/lang_ext /var/lib/selinux/mls/active/modules/100/postfix /var/lib/selinux/mls/active/modules/100/postfix/cil /var/lib/selinux/mls/active/modules/100/postfix/hll /var/lib/selinux/mls/active/modules/100/postfix/lang_ext /var/lib/selinux/mls/active/modules/100/postgresql /var/lib/selinux/mls/active/modules/100/postgresql/cil /var/lib/selinux/mls/active/modules/100/postgresql/hll /var/lib/selinux/mls/active/modules/100/postgresql/lang_ext /var/lib/selinux/mls/active/modules/100/postgrey /var/lib/selinux/mls/active/modules/100/postgrey/cil /var/lib/selinux/mls/active/modules/100/postgrey/hll /var/lib/selinux/mls/active/modules/100/postgrey/lang_ext /var/lib/selinux/mls/active/modules/100/ppp /var/lib/selinux/mls/active/modules/100/ppp/cil /var/lib/selinux/mls/active/modules/100/ppp/hll /var/lib/selinux/mls/active/modules/100/ppp/lang_ext /var/lib/selinux/mls/active/modules/100/prelink /var/lib/selinux/mls/active/modules/100/prelink/cil /var/lib/selinux/mls/active/modules/100/prelink/hll /var/lib/selinux/mls/active/modules/100/prelink/lang_ext /var/lib/selinux/mls/active/modules/100/prelude /var/lib/selinux/mls/active/modules/100/prelude/cil /var/lib/selinux/mls/active/modules/100/prelude/hll /var/lib/selinux/mls/active/modules/100/prelude/lang_ext /var/lib/selinux/mls/active/modules/100/privoxy /var/lib/selinux/mls/active/modules/100/privoxy/cil /var/lib/selinux/mls/active/modules/100/privoxy/hll /var/lib/selinux/mls/active/modules/100/privoxy/lang_ext /var/lib/selinux/mls/active/modules/100/procmail /var/lib/selinux/mls/active/modules/100/procmail/cil /var/lib/selinux/mls/active/modules/100/procmail/hll /var/lib/selinux/mls/active/modules/100/procmail/lang_ext /var/lib/selinux/mls/active/modules/100/prosody /var/lib/selinux/mls/active/modules/100/prosody/cil /var/lib/selinux/mls/active/modules/100/prosody/hll /var/lib/selinux/mls/active/modules/100/prosody/lang_ext /var/lib/selinux/mls/active/modules/100/psad /var/lib/selinux/mls/active/modules/100/psad/cil /var/lib/selinux/mls/active/modules/100/psad/hll /var/lib/selinux/mls/active/modules/100/psad/lang_ext /var/lib/selinux/mls/active/modules/100/ptchown /var/lib/selinux/mls/active/modules/100/ptchown/cil /var/lib/selinux/mls/active/modules/100/ptchown/hll /var/lib/selinux/mls/active/modules/100/ptchown/lang_ext /var/lib/selinux/mls/active/modules/100/pulseaudio /var/lib/selinux/mls/active/modules/100/pulseaudio/cil /var/lib/selinux/mls/active/modules/100/pulseaudio/hll /var/lib/selinux/mls/active/modules/100/pulseaudio/lang_ext /var/lib/selinux/mls/active/modules/100/qgs /var/lib/selinux/mls/active/modules/100/qgs/cil /var/lib/selinux/mls/active/modules/100/qgs/hll /var/lib/selinux/mls/active/modules/100/qgs/lang_ext /var/lib/selinux/mls/active/modules/100/qmail /var/lib/selinux/mls/active/modules/100/qmail/cil /var/lib/selinux/mls/active/modules/100/qmail/hll /var/lib/selinux/mls/active/modules/100/qmail/lang_ext /var/lib/selinux/mls/active/modules/100/qpid /var/lib/selinux/mls/active/modules/100/qpid/cil /var/lib/selinux/mls/active/modules/100/qpid/hll /var/lib/selinux/mls/active/modules/100/qpid/lang_ext /var/lib/selinux/mls/active/modules/100/quota /var/lib/selinux/mls/active/modules/100/quota/cil /var/lib/selinux/mls/active/modules/100/quota/hll /var/lib/selinux/mls/active/modules/100/quota/lang_ext /var/lib/selinux/mls/active/modules/100/radius /var/lib/selinux/mls/active/modules/100/radius/cil /var/lib/selinux/mls/active/modules/100/radius/hll /var/lib/selinux/mls/active/modules/100/radius/lang_ext /var/lib/selinux/mls/active/modules/100/radvd /var/lib/selinux/mls/active/modules/100/radvd/cil /var/lib/selinux/mls/active/modules/100/radvd/hll /var/lib/selinux/mls/active/modules/100/radvd/lang_ext /var/lib/selinux/mls/active/modules/100/raid /var/lib/selinux/mls/active/modules/100/raid/cil /var/lib/selinux/mls/active/modules/100/raid/hll /var/lib/selinux/mls/active/modules/100/raid/lang_ext /var/lib/selinux/mls/active/modules/100/rdisc /var/lib/selinux/mls/active/modules/100/rdisc/cil /var/lib/selinux/mls/active/modules/100/rdisc/hll /var/lib/selinux/mls/active/modules/100/rdisc/lang_ext /var/lib/selinux/mls/active/modules/100/readahead /var/lib/selinux/mls/active/modules/100/readahead/cil /var/lib/selinux/mls/active/modules/100/readahead/hll /var/lib/selinux/mls/active/modules/100/readahead/lang_ext /var/lib/selinux/mls/active/modules/100/remotelogin /var/lib/selinux/mls/active/modules/100/remotelogin/cil /var/lib/selinux/mls/active/modules/100/remotelogin/hll /var/lib/selinux/mls/active/modules/100/remotelogin/lang_ext /var/lib/selinux/mls/active/modules/100/rhcs /var/lib/selinux/mls/active/modules/100/rhcs/cil /var/lib/selinux/mls/active/modules/100/rhcs/hll /var/lib/selinux/mls/active/modules/100/rhcs/lang_ext /var/lib/selinux/mls/active/modules/100/rhgb /var/lib/selinux/mls/active/modules/100/rhgb/cil /var/lib/selinux/mls/active/modules/100/rhgb/hll /var/lib/selinux/mls/active/modules/100/rhgb/lang_ext /var/lib/selinux/mls/active/modules/100/ricci /var/lib/selinux/mls/active/modules/100/ricci/cil /var/lib/selinux/mls/active/modules/100/ricci/hll /var/lib/selinux/mls/active/modules/100/ricci/lang_ext /var/lib/selinux/mls/active/modules/100/rlogin /var/lib/selinux/mls/active/modules/100/rlogin/cil /var/lib/selinux/mls/active/modules/100/rlogin/hll /var/lib/selinux/mls/active/modules/100/rlogin/lang_ext /var/lib/selinux/mls/active/modules/100/roundup /var/lib/selinux/mls/active/modules/100/roundup/cil /var/lib/selinux/mls/active/modules/100/roundup/hll /var/lib/selinux/mls/active/modules/100/roundup/lang_ext /var/lib/selinux/mls/active/modules/100/rpc /var/lib/selinux/mls/active/modules/100/rpc/cil /var/lib/selinux/mls/active/modules/100/rpc/hll /var/lib/selinux/mls/active/modules/100/rpc/lang_ext /var/lib/selinux/mls/active/modules/100/rpcbind /var/lib/selinux/mls/active/modules/100/rpcbind/cil /var/lib/selinux/mls/active/modules/100/rpcbind/hll /var/lib/selinux/mls/active/modules/100/rpcbind/lang_ext /var/lib/selinux/mls/active/modules/100/rpm /var/lib/selinux/mls/active/modules/100/rpm/cil /var/lib/selinux/mls/active/modules/100/rpm/hll /var/lib/selinux/mls/active/modules/100/rpm/lang_ext /var/lib/selinux/mls/active/modules/100/rshd /var/lib/selinux/mls/active/modules/100/rshd/cil /var/lib/selinux/mls/active/modules/100/rshd/hll /var/lib/selinux/mls/active/modules/100/rshd/lang_ext /var/lib/selinux/mls/active/modules/100/rsync /var/lib/selinux/mls/active/modules/100/rsync/cil /var/lib/selinux/mls/active/modules/100/rsync/hll /var/lib/selinux/mls/active/modules/100/rsync/lang_ext /var/lib/selinux/mls/active/modules/100/rtkit /var/lib/selinux/mls/active/modules/100/rtkit/cil /var/lib/selinux/mls/active/modules/100/rtkit/hll /var/lib/selinux/mls/active/modules/100/rtkit/lang_ext /var/lib/selinux/mls/active/modules/100/rwho /var/lib/selinux/mls/active/modules/100/rwho/cil /var/lib/selinux/mls/active/modules/100/rwho/hll /var/lib/selinux/mls/active/modules/100/rwho/lang_ext /var/lib/selinux/mls/active/modules/100/samba /var/lib/selinux/mls/active/modules/100/samba/cil /var/lib/selinux/mls/active/modules/100/samba/hll /var/lib/selinux/mls/active/modules/100/samba/lang_ext /var/lib/selinux/mls/active/modules/100/sambagui /var/lib/selinux/mls/active/modules/100/sambagui/cil /var/lib/selinux/mls/active/modules/100/sambagui/hll /var/lib/selinux/mls/active/modules/100/sambagui/lang_ext /var/lib/selinux/mls/active/modules/100/sasl /var/lib/selinux/mls/active/modules/100/sasl/cil /var/lib/selinux/mls/active/modules/100/sasl/hll /var/lib/selinux/mls/active/modules/100/sasl/lang_ext /var/lib/selinux/mls/active/modules/100/screen /var/lib/selinux/mls/active/modules/100/screen/cil /var/lib/selinux/mls/active/modules/100/screen/hll /var/lib/selinux/mls/active/modules/100/screen/lang_ext /var/lib/selinux/mls/active/modules/100/secadm /var/lib/selinux/mls/active/modules/100/secadm/cil /var/lib/selinux/mls/active/modules/100/secadm/hll /var/lib/selinux/mls/active/modules/100/secadm/lang_ext /var/lib/selinux/mls/active/modules/100/selinuxutil /var/lib/selinux/mls/active/modules/100/selinuxutil/cil /var/lib/selinux/mls/active/modules/100/selinuxutil/hll /var/lib/selinux/mls/active/modules/100/selinuxutil/lang_ext /var/lib/selinux/mls/active/modules/100/sendmail /var/lib/selinux/mls/active/modules/100/sendmail/cil /var/lib/selinux/mls/active/modules/100/sendmail/hll /var/lib/selinux/mls/active/modules/100/sendmail/lang_ext /var/lib/selinux/mls/active/modules/100/setrans /var/lib/selinux/mls/active/modules/100/setrans/cil /var/lib/selinux/mls/active/modules/100/setrans/hll /var/lib/selinux/mls/active/modules/100/setrans/lang_ext /var/lib/selinux/mls/active/modules/100/setroubleshoot /var/lib/selinux/mls/active/modules/100/setroubleshoot/cil /var/lib/selinux/mls/active/modules/100/setroubleshoot/hll /var/lib/selinux/mls/active/modules/100/setroubleshoot/lang_ext /var/lib/selinux/mls/active/modules/100/seunshare /var/lib/selinux/mls/active/modules/100/seunshare/cil /var/lib/selinux/mls/active/modules/100/seunshare/hll /var/lib/selinux/mls/active/modules/100/seunshare/lang_ext /var/lib/selinux/mls/active/modules/100/shorewall /var/lib/selinux/mls/active/modules/100/shorewall/cil /var/lib/selinux/mls/active/modules/100/shorewall/hll /var/lib/selinux/mls/active/modules/100/shorewall/lang_ext /var/lib/selinux/mls/active/modules/100/slocate /var/lib/selinux/mls/active/modules/100/slocate/cil /var/lib/selinux/mls/active/modules/100/slocate/hll /var/lib/selinux/mls/active/modules/100/slocate/lang_ext /var/lib/selinux/mls/active/modules/100/smartmon /var/lib/selinux/mls/active/modules/100/smartmon/cil /var/lib/selinux/mls/active/modules/100/smartmon/hll /var/lib/selinux/mls/active/modules/100/smartmon/lang_ext /var/lib/selinux/mls/active/modules/100/snmp /var/lib/selinux/mls/active/modules/100/snmp/cil /var/lib/selinux/mls/active/modules/100/snmp/hll /var/lib/selinux/mls/active/modules/100/snmp/lang_ext /var/lib/selinux/mls/active/modules/100/snort /var/lib/selinux/mls/active/modules/100/snort/cil /var/lib/selinux/mls/active/modules/100/snort/hll /var/lib/selinux/mls/active/modules/100/snort/lang_ext /var/lib/selinux/mls/active/modules/100/sosreport /var/lib/selinux/mls/active/modules/100/sosreport/cil /var/lib/selinux/mls/active/modules/100/sosreport/hll /var/lib/selinux/mls/active/modules/100/sosreport/lang_ext /var/lib/selinux/mls/active/modules/100/soundserver /var/lib/selinux/mls/active/modules/100/soundserver/cil /var/lib/selinux/mls/active/modules/100/soundserver/hll /var/lib/selinux/mls/active/modules/100/soundserver/lang_ext /var/lib/selinux/mls/active/modules/100/spamassassin /var/lib/selinux/mls/active/modules/100/spamassassin/cil /var/lib/selinux/mls/active/modules/100/spamassassin/hll /var/lib/selinux/mls/active/modules/100/spamassassin/lang_ext /var/lib/selinux/mls/active/modules/100/squid /var/lib/selinux/mls/active/modules/100/squid/cil /var/lib/selinux/mls/active/modules/100/squid/hll /var/lib/selinux/mls/active/modules/100/squid/lang_ext /var/lib/selinux/mls/active/modules/100/ssh /var/lib/selinux/mls/active/modules/100/ssh/cil /var/lib/selinux/mls/active/modules/100/ssh/hll /var/lib/selinux/mls/active/modules/100/ssh/lang_ext /var/lib/selinux/mls/active/modules/100/sssd /var/lib/selinux/mls/active/modules/100/sssd/cil /var/lib/selinux/mls/active/modules/100/sssd/hll /var/lib/selinux/mls/active/modules/100/sssd/lang_ext /var/lib/selinux/mls/active/modules/100/staff /var/lib/selinux/mls/active/modules/100/staff/cil /var/lib/selinux/mls/active/modules/100/staff/hll /var/lib/selinux/mls/active/modules/100/staff/lang_ext /var/lib/selinux/mls/active/modules/100/stunnel /var/lib/selinux/mls/active/modules/100/stunnel/cil /var/lib/selinux/mls/active/modules/100/stunnel/hll /var/lib/selinux/mls/active/modules/100/stunnel/lang_ext /var/lib/selinux/mls/active/modules/100/su /var/lib/selinux/mls/active/modules/100/su/cil /var/lib/selinux/mls/active/modules/100/su/hll /var/lib/selinux/mls/active/modules/100/su/lang_ext /var/lib/selinux/mls/active/modules/100/sudo /var/lib/selinux/mls/active/modules/100/sudo/cil /var/lib/selinux/mls/active/modules/100/sudo/hll /var/lib/selinux/mls/active/modules/100/sudo/lang_ext /var/lib/selinux/mls/active/modules/100/sysadm /var/lib/selinux/mls/active/modules/100/sysadm/cil /var/lib/selinux/mls/active/modules/100/sysadm/hll /var/lib/selinux/mls/active/modules/100/sysadm/lang_ext /var/lib/selinux/mls/active/modules/100/sysadm_secadm /var/lib/selinux/mls/active/modules/100/sysadm_secadm/cil /var/lib/selinux/mls/active/modules/100/sysadm_secadm/hll /var/lib/selinux/mls/active/modules/100/sysadm_secadm/lang_ext /var/lib/selinux/mls/active/modules/100/sysnetwork /var/lib/selinux/mls/active/modules/100/sysnetwork/cil /var/lib/selinux/mls/active/modules/100/sysnetwork/hll /var/lib/selinux/mls/active/modules/100/sysnetwork/lang_ext /var/lib/selinux/mls/active/modules/100/sysstat /var/lib/selinux/mls/active/modules/100/sysstat/cil /var/lib/selinux/mls/active/modules/100/sysstat/hll /var/lib/selinux/mls/active/modules/100/sysstat/lang_ext /var/lib/selinux/mls/active/modules/100/systemd /var/lib/selinux/mls/active/modules/100/systemd/cil /var/lib/selinux/mls/active/modules/100/systemd/hll /var/lib/selinux/mls/active/modules/100/systemd/lang_ext /var/lib/selinux/mls/active/modules/100/tcpd /var/lib/selinux/mls/active/modules/100/tcpd/cil /var/lib/selinux/mls/active/modules/100/tcpd/hll /var/lib/selinux/mls/active/modules/100/tcpd/lang_ext /var/lib/selinux/mls/active/modules/100/tcsd /var/lib/selinux/mls/active/modules/100/tcsd/cil /var/lib/selinux/mls/active/modules/100/tcsd/hll /var/lib/selinux/mls/active/modules/100/tcsd/lang_ext /var/lib/selinux/mls/active/modules/100/telepathy /var/lib/selinux/mls/active/modules/100/telepathy/cil /var/lib/selinux/mls/active/modules/100/telepathy/hll /var/lib/selinux/mls/active/modules/100/telepathy/lang_ext /var/lib/selinux/mls/active/modules/100/telnet /var/lib/selinux/mls/active/modules/100/telnet/cil /var/lib/selinux/mls/active/modules/100/telnet/hll /var/lib/selinux/mls/active/modules/100/telnet/lang_ext /var/lib/selinux/mls/active/modules/100/tftp /var/lib/selinux/mls/active/modules/100/tftp/cil /var/lib/selinux/mls/active/modules/100/tftp/hll /var/lib/selinux/mls/active/modules/100/tftp/lang_ext /var/lib/selinux/mls/active/modules/100/tgtd /var/lib/selinux/mls/active/modules/100/tgtd/cil /var/lib/selinux/mls/active/modules/100/tgtd/hll /var/lib/selinux/mls/active/modules/100/tgtd/lang_ext /var/lib/selinux/mls/active/modules/100/thumb /var/lib/selinux/mls/active/modules/100/thumb/cil /var/lib/selinux/mls/active/modules/100/thumb/hll /var/lib/selinux/mls/active/modules/100/thumb/lang_ext /var/lib/selinux/mls/active/modules/100/tmpreaper /var/lib/selinux/mls/active/modules/100/tmpreaper/cil /var/lib/selinux/mls/active/modules/100/tmpreaper/hll /var/lib/selinux/mls/active/modules/100/tmpreaper/lang_ext /var/lib/selinux/mls/active/modules/100/tor /var/lib/selinux/mls/active/modules/100/tor/cil /var/lib/selinux/mls/active/modules/100/tor/hll /var/lib/selinux/mls/active/modules/100/tor/lang_ext /var/lib/selinux/mls/active/modules/100/tuned /var/lib/selinux/mls/active/modules/100/tuned/cil /var/lib/selinux/mls/active/modules/100/tuned/hll /var/lib/selinux/mls/active/modules/100/tuned/lang_ext /var/lib/selinux/mls/active/modules/100/tvtime /var/lib/selinux/mls/active/modules/100/tvtime/cil /var/lib/selinux/mls/active/modules/100/tvtime/hll /var/lib/selinux/mls/active/modules/100/tvtime/lang_ext /var/lib/selinux/mls/active/modules/100/udev /var/lib/selinux/mls/active/modules/100/udev/cil /var/lib/selinux/mls/active/modules/100/udev/hll /var/lib/selinux/mls/active/modules/100/udev/lang_ext /var/lib/selinux/mls/active/modules/100/ulogd /var/lib/selinux/mls/active/modules/100/ulogd/cil /var/lib/selinux/mls/active/modules/100/ulogd/hll /var/lib/selinux/mls/active/modules/100/ulogd/lang_ext /var/lib/selinux/mls/active/modules/100/uml /var/lib/selinux/mls/active/modules/100/uml/cil /var/lib/selinux/mls/active/modules/100/uml/hll /var/lib/selinux/mls/active/modules/100/uml/lang_ext /var/lib/selinux/mls/active/modules/100/unlabelednet /var/lib/selinux/mls/active/modules/100/unlabelednet/cil /var/lib/selinux/mls/active/modules/100/unlabelednet/hll /var/lib/selinux/mls/active/modules/100/unlabelednet/lang_ext /var/lib/selinux/mls/active/modules/100/unprivuser /var/lib/selinux/mls/active/modules/100/unprivuser/cil /var/lib/selinux/mls/active/modules/100/unprivuser/hll /var/lib/selinux/mls/active/modules/100/unprivuser/lang_ext /var/lib/selinux/mls/active/modules/100/updfstab /var/lib/selinux/mls/active/modules/100/updfstab/cil /var/lib/selinux/mls/active/modules/100/updfstab/hll /var/lib/selinux/mls/active/modules/100/updfstab/lang_ext /var/lib/selinux/mls/active/modules/100/usbmodules /var/lib/selinux/mls/active/modules/100/usbmodules/cil /var/lib/selinux/mls/active/modules/100/usbmodules/hll /var/lib/selinux/mls/active/modules/100/usbmodules/lang_ext /var/lib/selinux/mls/active/modules/100/userdomain /var/lib/selinux/mls/active/modules/100/userdomain/cil /var/lib/selinux/mls/active/modules/100/userdomain/hll /var/lib/selinux/mls/active/modules/100/userdomain/lang_ext /var/lib/selinux/mls/active/modules/100/userhelper /var/lib/selinux/mls/active/modules/100/userhelper/cil /var/lib/selinux/mls/active/modules/100/userhelper/hll /var/lib/selinux/mls/active/modules/100/userhelper/lang_ext /var/lib/selinux/mls/active/modules/100/usermanage /var/lib/selinux/mls/active/modules/100/usermanage/cil /var/lib/selinux/mls/active/modules/100/usermanage/hll /var/lib/selinux/mls/active/modules/100/usermanage/lang_ext /var/lib/selinux/mls/active/modules/100/usernetctl /var/lib/selinux/mls/active/modules/100/usernetctl/cil /var/lib/selinux/mls/active/modules/100/usernetctl/hll /var/lib/selinux/mls/active/modules/100/usernetctl/lang_ext /var/lib/selinux/mls/active/modules/100/uucp /var/lib/selinux/mls/active/modules/100/uucp/cil /var/lib/selinux/mls/active/modules/100/uucp/hll /var/lib/selinux/mls/active/modules/100/uucp/lang_ext /var/lib/selinux/mls/active/modules/100/virt /var/lib/selinux/mls/active/modules/100/virt/cil /var/lib/selinux/mls/active/modules/100/virt/hll /var/lib/selinux/mls/active/modules/100/virt/lang_ext /var/lib/selinux/mls/active/modules/100/vmware /var/lib/selinux/mls/active/modules/100/vmware/cil /var/lib/selinux/mls/active/modules/100/vmware/hll /var/lib/selinux/mls/active/modules/100/vmware/lang_ext /var/lib/selinux/mls/active/modules/100/vpn /var/lib/selinux/mls/active/modules/100/vpn/cil /var/lib/selinux/mls/active/modules/100/vpn/hll /var/lib/selinux/mls/active/modules/100/vpn/lang_ext /var/lib/selinux/mls/active/modules/100/w3c /var/lib/selinux/mls/active/modules/100/w3c/cil /var/lib/selinux/mls/active/modules/100/w3c/hll /var/lib/selinux/mls/active/modules/100/w3c/lang_ext /var/lib/selinux/mls/active/modules/100/webadm /var/lib/selinux/mls/active/modules/100/webadm/cil /var/lib/selinux/mls/active/modules/100/webadm/hll /var/lib/selinux/mls/active/modules/100/webadm/lang_ext /var/lib/selinux/mls/active/modules/100/webalizer /var/lib/selinux/mls/active/modules/100/webalizer/cil /var/lib/selinux/mls/active/modules/100/webalizer/hll /var/lib/selinux/mls/active/modules/100/webalizer/lang_ext /var/lib/selinux/mls/active/modules/100/wine /var/lib/selinux/mls/active/modules/100/wine/cil /var/lib/selinux/mls/active/modules/100/wine/hll /var/lib/selinux/mls/active/modules/100/wine/lang_ext /var/lib/selinux/mls/active/modules/100/wireshark /var/lib/selinux/mls/active/modules/100/wireshark/cil /var/lib/selinux/mls/active/modules/100/wireshark/hll /var/lib/selinux/mls/active/modules/100/wireshark/lang_ext /var/lib/selinux/mls/active/modules/100/wm /var/lib/selinux/mls/active/modules/100/wm/cil /var/lib/selinux/mls/active/modules/100/wm/hll /var/lib/selinux/mls/active/modules/100/wm/lang_ext /var/lib/selinux/mls/active/modules/100/xen /var/lib/selinux/mls/active/modules/100/xen/cil /var/lib/selinux/mls/active/modules/100/xen/hll /var/lib/selinux/mls/active/modules/100/xen/lang_ext /var/lib/selinux/mls/active/modules/100/xguest /var/lib/selinux/mls/active/modules/100/xguest/cil /var/lib/selinux/mls/active/modules/100/xguest/hll /var/lib/selinux/mls/active/modules/100/xguest/lang_ext /var/lib/selinux/mls/active/modules/100/xserver /var/lib/selinux/mls/active/modules/100/xserver/cil /var/lib/selinux/mls/active/modules/100/xserver/hll /var/lib/selinux/mls/active/modules/100/xserver/lang_ext /var/lib/selinux/mls/active/modules/100/zabbix /var/lib/selinux/mls/active/modules/100/zabbix/cil /var/lib/selinux/mls/active/modules/100/zabbix/hll /var/lib/selinux/mls/active/modules/100/zabbix/lang_ext /var/lib/selinux/mls/active/modules/100/zebra /var/lib/selinux/mls/active/modules/100/zebra/cil /var/lib/selinux/mls/active/modules/100/zebra/hll /var/lib/selinux/mls/active/modules/100/zebra/lang_ext /var/lib/selinux/mls/active/modules/100/zosremote /var/lib/selinux/mls/active/modules/100/zosremote/cil /var/lib/selinux/mls/active/modules/100/zosremote/hll /var/lib/selinux/mls/active/modules/100/zosremote/lang_ext /var/lib/selinux/mls/active/modules/400/extra_binsbin /var/lib/selinux/mls/active/modules/400/extra_binsbin/cil /var/lib/selinux/mls/active/modules/400/extra_binsbin/lang_ext /var/lib/selinux/mls/active/modules/400/extra_varrun /var/lib/selinux/mls/active/modules/400/extra_varrun/cil /var/lib/selinux/mls/active/modules/400/extra_varrun/lang_ext /var/lib/selinux/mls/active/modules_checksum /var/lib/selinux/mls/active/policy.kern /var/lib/selinux/mls/active/policy.linked /var/lib/selinux/mls/active/seusers /var/lib/selinux/mls/active/seusers.linked /var/lib/selinux/mls/active/users_extra /var/lib/selinux/mls/active/users_extra.linked /var/lib/selinux/mls/semanage.read.LOCK /var/lib/selinux/mls/semanage.trans.LOCK
Generated by rpm2html 1.8.1
Fabrice Bellet, Fri Oct 24 01:49:52 2025