]> git.ipfire.org Git - people/stevee/selinux-policy.git/log
people/stevee/selinux-policy.git
14 years agocertmonger patch from Dan Walsh
Jeremy Solt [Mon, 30 Aug 2010 14:38:54 +0000 (10:38 -0400)] 
certmonger patch from Dan Walsh

14 years agocourier patch from Dan Walsh
Jeremy Solt [Mon, 30 Aug 2010 14:45:10 +0000 (10:45 -0400)] 
courier patch from Dan Walsh

14 years agodcc patch from Dan Walsh
Jeremy Solt [Mon, 30 Aug 2010 15:08:09 +0000 (11:08 -0400)] 
dcc patch from Dan Walsh

14 years agostyle change to djbdns.te
Jeremy Solt [Mon, 30 Aug 2010 15:20:58 +0000 (11:20 -0400)] 
style change to djbdns.te

14 years agofetchmail patch from Dan Walsh
Jeremy Solt [Mon, 30 Aug 2010 15:26:20 +0000 (11:26 -0400)] 
fetchmail patch from Dan Walsh

14 years agoicecast patch from Dan Walsh
Jeremy Solt [Mon, 30 Aug 2010 15:32:58 +0000 (11:32 -0400)] 
icecast patch from Dan Walsh

14 years agonslcd patch from Dan Walsh
Jeremy Solt [Mon, 30 Aug 2010 15:40:00 +0000 (11:40 -0400)] 
nslcd patch from Dan Walsh

14 years agonut patch from Dan Walsh
Jeremy Solt [Mon, 30 Aug 2010 16:36:53 +0000 (12:36 -0400)] 
nut patch from Dan Walsh

14 years agoopenct patch from Dan Walsh
Jeremy Solt [Wed, 1 Sep 2010 14:38:04 +0000 (10:38 -0400)] 
openct patch from Dan Walsh

14 years agoUnconditional staff and user oidentd home config access from Dominick Grift.
Chris PeBenito [Wed, 15 Sep 2010 12:20:16 +0000 (08:20 -0400)] 
Unconditional staff and user oidentd home config access from Dominick Grift.

14 years agoAccess for confined users to oidentd user home content is unconditional.
Dominick Grift [Fri, 10 Sep 2010 16:21:54 +0000 (18:21 +0200)] 
Access for confined users to oidentd user home content is unconditional.

Signed-off-by: Dominick Grift <domg472@gmail.com>
14 years agoMerge branch 'master' of ssh://git.fedorahosted.org/git/selinux-policy
Dan Walsh [Tue, 14 Sep 2010 20:39:10 +0000 (16:39 -0400)] 
Merge branch 'master' of ssh://git.fedorahosted.org/git/selinux-policy

14 years agoadd labeling for /root/.debug
Dan Walsh [Tue, 14 Sep 2010 19:29:18 +0000 (15:29 -0400)] 
add labeling for /root/.debug

14 years ago- Allow all domains that can use cgroups to search tmpfs_t directory
Dan Walsh [Tue, 14 Sep 2010 19:18:34 +0000 (15:18 -0400)] 
- Allow all domains that can use cgroups to search tmpfs_t directory
- Allow init to send audit messages

14 years agoFixes for vmware-host policy
Miroslav Grepl [Tue, 14 Sep 2010 17:28:55 +0000 (19:28 +0200)] 
Fixes for vmware-host policy

14 years agoAllow a couple of sandbox issues.
Dan Walsh [Tue, 14 Sep 2010 14:02:43 +0000 (10:02 -0400)] 
Allow a couple of sandbox issues.
Remove postgresl managing of etc_files, until I find out why it is needed.
Dontaudit leaks from rpm to mount

14 years agoAdd labels for /lib/readahead.
Dan Walsh [Mon, 13 Sep 2010 20:15:43 +0000 (16:15 -0400)] 
Add labels for /lib/readahead.
Add back gnome_setattr interface

14 years agoFix gnome_setattr_config_home
Dan Walsh [Mon, 13 Sep 2010 18:47:02 +0000 (14:47 -0400)] 
Fix gnome_setattr_config_home
Allow exec of sandbox_file_type by calling apps
Fix typos

14 years agoFix some names in passenger policy
Dan Walsh [Mon, 13 Sep 2010 14:26:10 +0000 (10:26 -0400)] 
Fix some names in passenger policy

14 years agoMove passenger policy to services
Miroslav Grepl [Mon, 13 Sep 2010 13:10:30 +0000 (15:10 +0200)] 
Move passenger policy to services

14 years agoMerge branch 'master' of ssh://git.fedorahosted.org/git/selinux-policy
Dan Walsh [Mon, 13 Sep 2010 12:43:40 +0000 (08:43 -0400)] 
Merge branch 'master' of ssh://git.fedorahosted.org/git/selinux-policy

14 years agoFix boolean descriptions
Dan Walsh [Mon, 13 Sep 2010 12:43:35 +0000 (08:43 -0400)] 
Fix boolean descriptions

14 years agoAllow dovecot-deliver to create tmp files
Miroslav Grepl [Mon, 13 Sep 2010 11:12:24 +0000 (13:12 +0200)] 
Allow dovecot-deliver to create tmp files
Allow tor to send signals to itself

14 years ago- Add passenger policy
Miroslav Grepl [Mon, 13 Sep 2010 09:49:37 +0000 (11:49 +0200)] 
- Add passenger policy

14 years agoFix cert calls in telepath, boinc, kerberos
Dan Walsh [Fri, 10 Sep 2010 17:18:49 +0000 (13:18 -0400)] 
Fix cert calls in telepath, boinc, kerberos
Add sys_admin to xend to allow it to start
Add oident calls to staff_t

14 years agoMerge branch 'master' of ssh://git.fedorahosted.org/git/selinux-policy; branch 'maste...
Dan Walsh [Fri, 10 Sep 2010 17:02:25 +0000 (13:02 -0400)] 
Merge branch 'master' of ssh://git.fedorahosted.org/git/selinux-policy; branch 'master' of http://oss.tresys.com/git/refpolicy

Conflicts:
policy/modules/admin/amanda.if
policy/modules/system/init.te
policy/modules/system/miscfiles.if
policy/modules/system/miscfiles.te
policy/modules/system/userdomain.if

14 years agorename mdadm_map_t to mdadm_var_run_t
Dan Walsh [Fri, 10 Sep 2010 16:14:25 +0000 (12:14 -0400)] 
rename mdadm_map_t to mdadm_var_run_t

14 years agoMore fixes for mozilla_plugin_t
Dan Walsh [Fri, 10 Sep 2010 16:10:13 +0000 (12:10 -0400)] 
More fixes for mozilla_plugin_t
Allow telepathy domains to send themselves sigkill
Label /etc/httpd/alias/*db as cert_t
Allow fprintd to sys_nice

14 years agoModule version bumps for cert patch.
Chris PeBenito [Fri, 10 Sep 2010 15:31:22 +0000 (11:31 -0400)] 
Module version bumps for cert patch.

14 years agoFix missed deprecated interface usage from the cert patch. Add back a few rolecap...
Chris PeBenito [Fri, 10 Sep 2010 15:31:00 +0000 (11:31 -0400)] 
Fix missed deprecated interface usage from the cert patch.  Add back a few rolecap tags.

14 years agoImplement miscfiles_cert_type().
Dominick Grift [Thu, 9 Sep 2010 16:14:48 +0000 (18:14 +0200)] 
Implement miscfiles_cert_type().

This is based on Fedoras' miscfiles_cert_type implementation.
The idea was that openvpn needs to be able read home certificates (home_cert_t) which is not implemented in refpolicy yet, as well as generic cert_t certificates.

Note that openvpn is allowed to read all cert_types, as i know that it needs access to both generic cert_t as well as (future) home_cert_t. Dwalsh noted that other domains may need this as well but because i do not know exactly which domains i will not changes any other domains call to generic cert type interfaces.

Signed-off-by: Dominick Grift <domg472@gmail.com>
14 years agoAllow hugetlbfs_t to be on device_t file system
Dan Walsh [Fri, 10 Sep 2010 14:10:34 +0000 (10:10 -0400)] 
Allow hugetlbfs_t to be on device_t file system
Allow sudo domains to signal user domains
Dontaudit xdm_t sending signals to all domains
Fix allow_exec* boolean descriptions

14 years agoModule version bump for 8296eb2.
Chris PeBenito [Fri, 10 Sep 2010 12:51:54 +0000 (08:51 -0400)] 
Module version bump for 8296eb2.

14 years agoraid tools now store pid file and sock_file in /dev/md for early boot.
Dan Walsh [Thu, 9 Sep 2010 18:26:32 +0000 (14:26 -0400)] 
raid tools now store pid file and sock_file in /dev/md for early boot.

14 years agofixes for openvpn suggested by dgrift
Dan Walsh [Thu, 9 Sep 2010 14:35:27 +0000 (10:35 -0400)] 
fixes for openvpn suggested by dgrift

14 years agoAllow mozilla_plugin to create nsplugin_home_t directories
Dan Walsh [Thu, 9 Sep 2010 13:55:31 +0000 (09:55 -0400)] 
Allow mozilla_plugin to create nsplugin_home_t directories
Allow hugetlbfs_t to be on device_t file system
Fix for ajaxterm policy
Fix type in dbus_delete_pid_files
Change openvpn to only allow search of users home dir

14 years agoRemove unallocated tty access in amanda since it was originally there for the old...
Chris PeBenito [Thu, 9 Sep 2010 13:32:31 +0000 (09:32 -0400)] 
Remove unallocated tty access in amanda since it was originally there for the old targeted policy, and now all roles have a user tty type.

14 years agoClean up Anaconda policy.
Dominick Grift [Fri, 3 Sep 2010 15:48:40 +0000 (17:48 +0200)] 
Clean up Anaconda policy.

Signed-off-by: Dominick Grift <domg472@gmail.com>
14 years agoClean up Amtu module.
Dominick Grift [Fri, 3 Sep 2010 15:47:45 +0000 (17:47 +0200)] 
Clean up Amtu module.

Signed-off-by: Dominick Grift <domg472@gmail.com>
14 years agoClean up Amanda module.
Dominick Grift [Fri, 3 Sep 2010 15:46:51 +0000 (17:46 +0200)] 
Clean up Amanda module.

Signed-off-by: Dominick Grift <domg472@gmail.com>
14 years agoadd policy for ajaxterm
Dan Walsh [Thu, 9 Sep 2010 11:11:32 +0000 (07:11 -0400)] 
add policy for ajaxterm

14 years agoadd policy for ajaxterm
Dan Walsh [Thu, 9 Sep 2010 11:10:24 +0000 (07:10 -0400)] 
add policy for ajaxterm

14 years agoallow sudo to create sudo_db_t dirs
Dan Walsh [Wed, 8 Sep 2010 22:32:15 +0000 (18:32 -0400)] 
allow sudo to create sudo_db_t dirs

14 years agoAllow crond to manage user_spool_cron_t link files
Dan Walsh [Wed, 8 Sep 2010 21:54:31 +0000 (17:54 -0400)] 
Allow crond to manage user_spool_cron_t link files
Allow init to delete dbus message.pid
Allow init and udev to create hugetlbfs directories

14 years agoAllow sudo domains to manage /var/db/sudo
Dan Walsh [Wed, 8 Sep 2010 21:27:24 +0000 (17:27 -0400)] 
Allow sudo domains to manage /var/db/sudo
Allow init_t and initrc_t to dbus chat
Allow pulseaudio to read /usr/share/alsa/alsa.conf

14 years agoAllow virt_domains to exec qumu_exec_t, add boolean to allow svirt_t to connect to x
Dan Walsh [Wed, 8 Sep 2010 19:05:08 +0000 (15:05 -0400)] 
Allow virt_domains to exec qumu_exec_t, add boolean to allow svirt_t to connect to x

14 years agoMozilla_plugin needs to getattr on tmpfs and no longer needs to write to tmpfs_t
Dan Walsh [Wed, 8 Sep 2010 16:06:20 +0000 (12:06 -0400)] 
Mozilla_plugin needs to getattr on tmpfs and no longer needs to write to tmpfs_t
cleanup of nsplugin interface definition
Latest pm-utils is causing lots of domains to see a leaked lock file
I want mplayer to run as unconfined_execmem_t
mountpoint is causing dbus and init apps to getattr on all filesystems directories
Miroslav update dkim-milter
NetworkManager dbus chats with init
Allow apps that can read user_fonts_t to read the symbolic link
udev needs to manage etc_t

14 years agoCleanup warnings
Dan Walsh [Wed, 8 Sep 2010 14:43:22 +0000 (10:43 -0400)] 
Cleanup warnings

14 years agoadd sametime port definition
Dan Walsh [Wed, 8 Sep 2010 14:33:16 +0000 (10:33 -0400)] 
add sametime port definition

14 years agoFix apache interface
Dan Walsh [Wed, 8 Sep 2010 14:29:40 +0000 (10:29 -0400)] 
Fix apache interface

14 years agofix bad patch in xserver
Dan Walsh [Wed, 8 Sep 2010 14:25:03 +0000 (10:25 -0400)] 
fix bad patch in xserver

14 years agoFix gnome interface definitions
Dan Walsh [Wed, 8 Sep 2010 14:10:20 +0000 (10:10 -0400)] 
Fix gnome interface definitions

14 years agoadd sametime port definition
Dan Walsh [Wed, 8 Sep 2010 13:40:46 +0000 (09:40 -0400)] 
add sametime port definition

14 years agofix typo in xserver_stream_connect
Dan Walsh [Wed, 8 Sep 2010 13:29:02 +0000 (09:29 -0400)] 
fix typo in xserver_stream_connect

14 years agocleanup alsa patch to match upstream
Dan Walsh [Wed, 8 Sep 2010 13:10:48 +0000 (09:10 -0400)] 
cleanup alsa patch to match upstream

14 years agoEliminate extras alsa_read_home interface
Dan Walsh [Wed, 8 Sep 2010 13:08:34 +0000 (09:08 -0400)] 
Eliminate extras alsa_read_home interface

14 years agoAny app that executes service command will not do a getattr of all mounted file systems
Dan Walsh [Wed, 8 Sep 2010 12:56:13 +0000 (08:56 -0400)] 
Any app that executes service command will not do a getattr of all mounted file systems

14 years agoAllow apps that use pam to connect to init_t
Dan Walsh [Wed, 8 Sep 2010 12:54:29 +0000 (08:54 -0400)] 
Allow apps that use pam to connect to init_t

14 years agoFix pootle
Dan Walsh [Tue, 7 Sep 2010 20:32:23 +0000 (16:32 -0400)] 
Fix pootle

14 years ago Allow iptables to read shorewall tmp files
Dan Walsh [Tue, 7 Sep 2010 20:23:09 +0000 (16:23 -0400)] 
 Allow iptables to read shorewall tmp files
Change chfn and passwd to use auth_use_pam so they can send dbus messages to fprintd
label vlc as an execmem_exec_t
Lots of fixes for mozilla_plugin to run google vidio chat
Allow telepath_msn to execute ldconfig and its own tmp files
Fix labels on hugepages
Allow mdadm to read files on /dev
Remove permissive domains and change back to unconfined
Allow freshclam to execute shell and bin_t
Allow devicekit_power to transition to dhcpc
Add boolean to allow icecast to connect to any port

14 years agoMerge with upsteam
Dan Walsh [Fri, 3 Sep 2010 21:19:55 +0000 (17:19 -0400)] 
Merge with upsteam

14 years agoMerge branches 'master', 'master' and 'master' of http://oss.tresys.com/git/refpolicy
Dan Walsh [Fri, 3 Sep 2010 21:16:08 +0000 (17:16 -0400)] 
Merge branches 'master', 'master' and 'master' of http://oss.tresys.com/git/refpolicy

Conflicts:
policy/modules/admin/alsa.fc
policy/modules/admin/alsa.if
policy/modules/kernel/filesystem.fc

14 years agoAllow gpg_pinentry_t to use fifo files of apps that transition to gpg_agent
Dan Walsh [Fri, 3 Sep 2010 21:06:40 +0000 (17:06 -0400)] 
Allow gpg_pinentry_t to use fifo files of apps that transition to gpg_agent
Add mozilla_plugin_tmp_t
Allow mozilla_plugin to interact with pulseaudio tmpfs_t
Add apache labels for poodle
Add boolean to allow apache to connect to memcache_port
nagious sends signal and sigkill to system_mail_t

14 years agoModule version bumps for b7ceb34 5675107 e411968 eca7eb3.
Chris PeBenito [Fri, 3 Sep 2010 17:09:40 +0000 (13:09 -0400)] 
Module version bumps for b7ceb34 5675107 e411968 eca7eb3.

14 years agoRearrange alsa interfaces.
Chris PeBenito [Fri, 3 Sep 2010 15:56:10 +0000 (11:56 -0400)] 
Rearrange alsa interfaces.

14 years agoImplement alsa_home_t for asoundrc. Clean up Alsa module.
Dominick Grift [Fri, 3 Sep 2010 14:26:40 +0000 (16:26 +0200)] 
Implement alsa_home_t for asoundrc. Clean up Alsa module.

Signed-off-by: Dominick Grift <domg472@gmail.com>
14 years agoLibcgroup moved the cgroup directory to /sys/fs/cgroup.
Dominick Grift [Fri, 3 Sep 2010 14:25:47 +0000 (16:25 +0200)] 
Libcgroup moved the cgroup directory to /sys/fs/cgroup.

Signed-off-by: Dominick Grift <domg472@gmail.com>
14 years agoDo not try to relabel the contents of the /dev/shm directory.
Dominick Grift [Fri, 3 Sep 2010 09:59:00 +0000 (11:59 +0200)] 
Do not try to relabel the contents of the /dev/shm directory.

Signed-off-by: Dominick Grift <domg472@gmail.com>
14 years agoFix mmap_zero patch
Dan Walsh [Fri, 3 Sep 2010 13:22:06 +0000 (09:22 -0400)] 
Fix mmap_zero patch

14 years agoAllow certmaster to read usr_t files. All python apps are going to need this.
Dan Walsh [Thu, 2 Sep 2010 17:38:00 +0000 (13:38 -0400)] 
Allow certmaster to read usr_t files.  All python apps are going to need this.
clvmd creates tmpfs files that corosync needs to communicate with
Allow dbus system services to search the cgroup_t directory

14 years agocleanup mmap_low merge with upstream
Dan Walsh [Wed, 1 Sep 2010 18:55:04 +0000 (14:55 -0400)] 
cleanup mmap_low merge with upstream

14 years agoMerge branch 'master' of http://oss.tresys.com/git/refpolicy
Dan Walsh [Wed, 1 Sep 2010 18:11:18 +0000 (14:11 -0400)] 
Merge branch 'master' of http://oss.tresys.com/git/refpolicy

Conflicts:
policy/modules/kernel/domain.if
policy/modules/services/xserver.te

14 years agodefine /sys/fs/cgroup as a <<none>> file system
Dan Walsh [Wed, 1 Sep 2010 14:12:53 +0000 (10:12 -0400)] 
define /sys/fs/cgroup as a <<none>> file system

14 years agoModule version bump and changelog entry for conditional mmap_zero patch.
Chris PeBenito [Wed, 1 Sep 2010 14:08:09 +0000 (10:08 -0400)] 
Module version bump and changelog entry for conditional mmap_zero patch.

14 years agoFix mmap_zero assertion violation in xserver.
Chris PeBenito [Wed, 1 Sep 2010 13:59:39 +0000 (09:59 -0400)] 
Fix mmap_zero assertion violation in xserver.

14 years agoAllow all X apps to use direct dri if user_direct_dri boolean is turned on
Dan Walsh [Wed, 1 Sep 2010 13:56:28 +0000 (09:56 -0400)] 
Allow all X apps to use direct dri if user_direct_dri boolean is turned on

14 years agofirstboot is leaking a netlink_route socket into iptables. We need to dontaudit
Dan Walsh [Wed, 1 Sep 2010 13:47:50 +0000 (09:47 -0400)] 
firstboot is leaking a netlink_route socket into iptables.  We need to dontaudit
tmpfs_t/devpts_t files can be stored on device_t file system
unconfined_mono_t can pass file descriptors to chrome_sandbox, so need transition from all unoconfined users types
Hald can connect to user processes over streams
xdm_t now changes the brightness level on the system
mdadm needs to manage hugetlbfs filesystems

14 years ago1/1] Make the ability to mmap zero conditional where this is fapplicable.
Dominick Grift [Wed, 1 Sep 2010 13:32:55 +0000 (15:32 +0200)] 
1/1] Make the ability to mmap zero conditional where this is fapplicable.

Retry: forgot to include attribute mmap_low_domain_type attribute to domain_mmap_low() :

Inspired by similar implementation in Fedora.
Wine and vbetool do not always actually need the ability to mmap a low area of the address space.
In some cases this can be silently denied.

Therefore introduce an interface that facilitates "mmap low" conditionally, and the corresponding boolean.
Also implement booleans for wine and vbetool that enables the ability to not audit attempts by wine and vbetool to mmap a low area of the address space.

Rename domain_mmap_low interface to domain_mmap_low_uncond.

Change call to domain_mmap_low to domain_mmap_low_uncond for xserver_t. Also move this call to distro redhat ifndef block because Redhat does not need this ability.

Signed-off-by: Dominick Grift <domg472@gmail.com>
15 years agoFix sandbox tcp_socket calls to create_stream_socket_perms
Dan Walsh [Tue, 31 Aug 2010 22:36:43 +0000 (18:36 -0400)] 
Fix sandbox tcp_socket calls to create_stream_socket_perms
Dontaudit sandbox_xserver_t trying to get the kernel to load modules
telepathy_msn sends dbus messages to networkmanager
mailman_t trys to read /root/.config
xserver tries to getpgid on processes that start it.
pam_systemd causes /var/run/users to be called for all login programs.  Must allow them to create directories

15 years agoAllow qmail to use uucpd
Dan Walsh [Tue, 31 Aug 2010 14:51:10 +0000 (10:51 -0400)] 
Allow qmail to use uucpd
Fixes found by Tom London for devicekit and udev using usbmuxd socket

15 years agoAdd Miroslav Grepl patch for jabberd, adding new type for jabberd router.
Dan Walsh [Tue, 31 Aug 2010 12:56:30 +0000 (08:56 -0400)] 
Add Miroslav Grepl patch for jabberd, adding new type for jabberd router.

15 years agoAllow prelink to read dbus config/Broken
Dan Walsh [Tue, 31 Aug 2010 12:54:18 +0000 (08:54 -0400)] 
Allow prelink to read dbus config/Broken
nsplugin_config wants the kernel to load modules for it.
mount writes into livecd_tmp_t directories

15 years agoApply Dominick Grift typo fixes
Dan Walsh [Mon, 30 Aug 2010 21:32:41 +0000 (17:32 -0400)] 
Apply Dominick Grift typo fixes

15 years agoAllow hald to transition to netutils
Dan Walsh [Mon, 30 Aug 2010 19:15:03 +0000 (15:15 -0400)] 
Allow hald to transition to netutils
Block signal via mcs systems

15 years agomerge latest upstream
Dan Walsh [Mon, 30 Aug 2010 17:41:40 +0000 (13:41 -0400)] 
merge latest upstream

15 years agoDontaudit signals from sandbox domains to domains that transition to them
Dan Walsh [Mon, 30 Aug 2010 17:32:47 +0000 (13:32 -0400)] 
Dontaudit signals from sandbox domains to domains that transition to them

15 years agoDontaudit socket leaks when running semanage code
Dan Walsh [Mon, 30 Aug 2010 15:37:02 +0000 (11:37 -0400)] 
Dontaudit socket leaks when running semanage code

15 years agoFix spelling mistake
Dan Walsh [Mon, 30 Aug 2010 15:30:00 +0000 (11:30 -0400)] 
Fix spelling mistake

15 years agoMore fixes
Dan Walsh [Mon, 30 Aug 2010 15:15:53 +0000 (11:15 -0400)] 
More fixes

15 years agoPolicy fixes
Dan Walsh [Mon, 30 Aug 2010 12:57:06 +0000 (08:57 -0400)] 
Policy fixes

15 years agoMore fixes
Dan Walsh [Fri, 27 Aug 2010 14:56:56 +0000 (10:56 -0400)] 
More fixes

15 years agoLatest fixes
Dan Walsh [Fri, 27 Aug 2010 00:30:04 +0000 (20:30 -0400)] 
Latest fixes

15 years agoUpdate f14
Dan Walsh [Thu, 26 Aug 2010 19:42:17 +0000 (15:42 -0400)] 
Update f14

15 years agoFixes for f14
Dan Walsh [Thu, 26 Aug 2010 19:29:37 +0000 (15:29 -0400)] 
Fixes for f14

15 years agoditto
Dan Walsh [Thu, 26 Aug 2010 17:23:23 +0000 (13:23 -0400)] 
ditto

15 years agowhoya
Dan Walsh [Thu, 26 Aug 2010 17:16:02 +0000 (13:16 -0400)] 
whoya

15 years agoUpdate f14
Dan Walsh [Thu, 26 Aug 2010 16:55:57 +0000 (12:55 -0400)] 
Update f14

15 years agoFix policy
Dan Walsh [Thu, 26 Aug 2010 15:09:31 +0000 (11:09 -0400)] 
Fix policy

15 years agoreset
Dan Walsh [Thu, 26 Aug 2010 15:03:50 +0000 (11:03 -0400)] 
reset

15 years agoModified amanda
Dan Walsh [Thu, 26 Aug 2010 15:02:44 +0000 (11:02 -0400)] 
Modified amanda