selinux-policy-38.33-4.red80> K KtĉH2!c31^ Wgitsupport@red-soft.ru  WgѓފerUn woPڼ03&Ao[Éi=.{g TYo8c %^ &1>[+oĵ=I*7ǗsG6lSF-HUƶC28x:}g=]i@KcxДRM}׋!7v8g抌vNxFZ KeYRv;i*9xN&ԕq{ Zk|"M68c6e713ac2a361d109bf4f76d5ed9da4aca6a52b1c6e35c77c26430ff2b3fe49d77c7dde1daf6b1d4e76a9466aa5d8f9f226358Ao[VZsi>L ?d  < MSZ        ,   T   ^   h       Dd()*+,- 8$9<:t>?@"D*G4 H\ I XY\ ]4 ^ bdef!l$t@ uh vw x yLPhlpvCselinux-policy38.334.red80SELinux policy configurationSELinux core policy package. Originally based off of reference policy, the policy has been adjusted to provide support for RED OS.ibuildhost2-arm-ro80.red-soft.rudredosredsoftGPL-2.0-or-laterRED SOFTUnspecifiedhttps://github.com/fedora-selinux/selinux-policylinuxnoarch if [ $1 -eq 1 ] && [ -x "/usr/lib/systemd/systemd-update-helper" ]; then # Initial installation /usr/lib/systemd/systemd-update-helper install-system-units selinux-check-proper-disable.service || : fi if [ ! -s /etc/selinux/config ]; then # # New install so we will default to targeted policy # echo " # This file controls the state of SELinux on the system. # SELINUX= can take one of these three values: # enforcing - SELinux security policy is enforced. # permissive - SELinux prints warnings instead of enforcing. # disabled - No SELinux policy is loaded. # See also: # https://docs.fedoraproject.org/en-US/quick-docs/getting-started-with-selinux/#getting-started-with-selinux-selinux-states-and-modes # # NOTE: In earlier RED OS kernel builds, SELINUX=disabled would also # fully disable SELinux during boot. If you need a system with SELinux # fully disabled instead of SELinux running with no policy loaded, you # need to pass selinux=0 to the kernel command line. You can use grubby # to persistently set the bootloader to boot with selinux=0: # # grubby --update-kernel ALL --args selinux=0 # # To revert back to SELinux enabled: # # grubby --update-kernel ALL --remove-args selinux # SELINUX=enforcing # SELINUXTYPE= can take one of these three values: # targeted - Targeted processes are protected, # minimum - Modification of targeted policy. Only selected processes are protected. # mls - Multi Level Security protection. SELINUXTYPE=targeted " > /etc/selinux/config ln -sf ../selinux/config /etc/sysconfig/selinux /usr/sbin/restorecon /etc/selinux/config 2> /dev/null || : else . /etc/selinux/config fi exit 0 if [ $1 -eq 0 ] && [ -x "/usr/lib/systemd/systemd-update-helper" ]; then # Package removal, not upgrade /usr/lib/systemd/systemd-update-helper remove-system-units selinux-check-proper-disable.service || : fi if [ $1 = 0 ]; then /usr/sbin/setenforce 0 2> /dev/null if [ ! -s /etc/selinux/config ]; then echo "SELINUX=disabled" > /etc/selinux/config else sed -i 's/^SELINUX=.*/SELINUX=disabled/g' /etc/selinux/config fi fi exit 0FYA큤A큤AAiiiiGiGiiQf(Di0i^7ccfee2d3c106b193eec2c7341c2cca632bae116e90e8ecbe5e1d100887f7e5ab3240fd7982059a65867f81ebab303d478bd1c29b1559bdcb2ba70781916b1ae8a0beca7f576064bfe85859d53e85dfc31157974115cac99b4e52ae31b77b185204d8eff92f95aac4df6c8122bc1505f468f3a901e5a4cc08940e0ede1938994Q@rootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootselinux-policy-38.33-4.red80.src.rpmconfig(selinux-policy)rpm_macro(_file_context_file)rpm_macro(_file_context_file_pre)rpm_macro(_file_custom_defined_booleans)rpm_macro(_file_custom_defined_booleans_tmp)rpm_macro(_selinux_policy_version)rpm_macro(_selinux_store_path)rpm_macro(_selinux_store_policy_path)rpm_macro(selinux_modules_install)rpm_macro(selinux_modules_uninstall)rpm_macro(selinux_relabel_post)rpm_macro(selinux_relabel_pre)rpm_macro(selinux_requires)rpm_macro(selinux_set_booleans)rpm_macro(selinux_unset_booleans)selinux-policyselinux-policy-base      /bin/awk/bin/sh/bin/sh/bin/sh/bin/sh/usr/bin/sha512sumconfig(selinux-policy)policycoreutilsrpm-plugin-selinuxrpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsZstd)selinux-policy-any38.33-4.red803.5-13.0.4-14.6.0-14.0-15.4.18-138.33-4.red804.18.2/usr/sbin/selinuxenabled && /usr/sbin/semodule -nB exit 0pcre2ig|f@fU@f! @f Oleg Sviridov - 38.33-4Oleg Sviridov - 38.33-3Oleg Sviridov - 38.33-2Oleg Sviridov - 38.33-1Oleg Sviridov - 38.32-2Oleg Sviridov - 38.32-1- Allow setsebool_t relabel selinux data files - Allow cupsd_t open user_tmp_t files - Dont audit cupsd_t write urandom- Update policy for haproxyd - Dontaudit firewalld dac_raed_search capability - Allow webadm_t use generic ptys - Dontaudit webadm_t read passwd - Allow xdm_t to watch and watch_reads mount_var_run_t- Allow qemu-ga read vm sysctls - Allow svirt_t read vm sysctls - Allow svirt_tcg_t read vm sysctls - Allow svirt_tcg_t map svirt_image_t files- Allow smbd_t to watch user_home_dir_t if samba_enable_home_dirs is on - Allow keyutils-dns-resolver connect to the system log service - dontaudit execmem for modemmanager - Allow alsa get attributes filesystems with extended attributes - Allow xdm_t read unconfined services state- Allow mongodb search nfs dir- update to 38.32 - Fix NM dispatcher script runing with dhcp-client - Dont audit winbind_rpcd_t write urandom - Dont audit winbind_t write urandom/bin/sh/bin/sh/bin/sh/bin/sh 38.33-4.red8038.33-4.red8038.33-4.red80 selinuxconfigselinuxmacros.selinux-policyselinux-check-proper-disable.serviceselinux-policy.confselinux-policyCOPYINGselinuxpackages/etc//etc/selinux//etc/sysconfig//usr/lib/rpm/macros.d//usr/lib/systemd/system//usr/lib/tmpfiles.d//usr/share/licenses//usr/share/licenses/selinux-policy//usr/share//usr/share/selinux/-O2 -flto=auto -ffat-lto-objects -fexceptions -g -grecord-gcc-switches -pipe -Wall -Werror=format-security -U_FORTIFY_SOURCE -Wp,-U_FORTIFY_SOURCE -Wp,-D_FORTIFY_SOURCE=3 -Wp,-D_GLIBCXX_ASSERTIONS -specs=/usr/lib/rpm/redsoft/redsoft-hardened-cc1 -fstack-protector-strong -specs=/usr/lib/rpm/redsoft/redsoft-annobin-cc1 -mbranch-protection=standard -fasynchronous-unwind-tables -fstack-clash-protectioncpiozstd19noarch-redsoft-linux-gnudirectoryemptyUnicode text, UTF-8 textASCII textPPPPPPPPP P P P P Pselinux-policy-targetedutf-8a054efeea7629da6418df55aef8801a7f4ed834290734f8385bad4b6d38f782486337e5a4f79fcbba00e90f4f934429590e836cad15b72099bb97725fa7e059f?@(/h:X(@sCaN/exR ]?Ʒc֏P|c]_M??@pC;1VYb!0b,h!e]ID^MHd#q ,gڥȰmbLhi2`؍pjeا`؏)r(bCblO1`C=ikB5I|˚J@+FyBгec yݯ~}du4e1+_ 682VȄT:~BZ XTaӇ(`V@ӧ*Ah4T&4JC+Q@#,qh_2=;Sl8PPNX:< 4.jc羆Q`Ó8vdph4<օb ! MnwR"gv^ 鐲w(l׾= fȳeWXLgv'ϳ'y)ܦ>\Vߖ'gnSۇ!(V,O ;APR1cy@*65ieNڛ]nz-=7Fj'LZ+Qל`E4s88lQ>1*6+EHL$HH  U_hWx#'DH@X$@K1j[ɮAӷ64 =>%~VԜ4S~{tarw؝L{ruWG{h4\4v;~'WГM%t}t9/W=7#$9Uߺo]N)̤oE:ñ+⁅bRc%)Z֞a4,&XeE`% dX b(Nv*dR D`) "fkCVhJp+Uþ_e#pp$"8J4bxM%_p,r[u' UU&ӎ{(NgٔsN[}mL^lAVKik )Pٙ ErCq:l~_b m<˺N;ePr`ph NeS`(- ,e{aRX,>> *ȂX ~*=9P)-=T,q <tEZ6p-cI%w?vgoܒ ! g!qN,x鯏M蟍MYH]xCX}54)Lgc{z:˖Ěo$ ,TQy [&8AZ}^Yi]ֲ҅3kl5K;(4Z&3 O|U>FuF0Rt`09҄"\NZàҝ..*.(i8CkH~w{x5Qg:<Ʋ,dPJCBZip80Ea38XBe*h0 ƺTJNT * ::tHWq*,Pe"2g98bYTP*SmptʂT\Cӱ Aq(:&б8Ndp`.ڰ\lj@CE2, SU8UF cq.lƢ<e* T.P0fCmcm֓< T#U8e)h86cũll.NMkOA;?A"+aj?9~ǩQE=9&lϯwWg-~_F[IRӽIeƮ ! ::Y&vrX;y^[=?F|nԵd_ɛ.w}v)yk' X$܇>g' )_&tR]R04S)E3c@ &8OYDDO ! 1 0 0 m:c.ɋm0 .WIԸ3APt;h }V<"J+% iqjbYظ!= Xn 'Ǜ7zŽ=$%] mp # l맑, Us$aJ4S"Yad`-\z^KQ"Ĩ:P,VP' eFup1ˌA.fG;H{ҽJkŲX;5=8近*4=izM# &TL籟 &.7y[[)E[$;W_@jFt]٧W˩ Tn,0:,%:ghXx15ݦtt$@nv Y J(%ʑvOo84IP|J.v0Y o_M;ܕdM-K.";hB:Nɥ `Tć R3(xGȺӼAT39!a>v-ӥDŢ:.teR9@,+HR,ݬR uE E]u׽P+[X-DQd bH_S1EW:J-ő'XD;^KvՏװ":sD"0'뛛PVzEu$rJV$slJ4|P !|jbH g􄨝t!g 朧^śc֐pZUF`;jXl2FG!F #0dc!5Jрi:%_ly"hHj屫qTܡMjQ(xѷW;L(OvX2)Bw:ڸ${Aoυg̛|Bhap$8FgeVE'Dz@2_~z쉸%oܭ0J9p\(&!nykN]~$K4Ŭ8VQPCq&Xm!PЅm+$p&$Ϛj=``P)B k*aGR%Pw4Al]75f|.L]ڳh39^Y 7i90\V$<{ 5toa_OԒkJf|WJ_KPe# 8$GFJ>"+mWetWD9 NNq[.ȯ5eyZꦕ%]#hE[(#Ũ"́L'%nQ2Zz&EG, =0r ĥ9 }p/e@fÌ1OYl81\37W{2VJ3Z٭3sоQ!-M F\efV]c2Y'תEec7r;7eD-A!N+]|q)tZ>WEH-T]?;<]q>fXՄ>dPe8D' vԬ +!G @/-[wm..$;FGu(7@jʕ D4\.ʥ"YBnv8܃*oȬ SJ>yZU$n=@lrP;k-R$81 _'-@.Od/qبjc;dCۜ%\lҐˏjJ4xT1X x_6FIƔUy&4I"嫧sKPO&~bEڡ Ps2%%.4`MT(qNZsu> ؂a$p.D)i{f0(]h@D$z.g=/"vO_} =UHٿP45&lwd!)n x$zWY˂I: rpP% Ct? Z8L, /F DMs1 y ^q$1$V8&k]E=T/%[WcwuMB88$fP @+)/Y3@#ے& PiTAyZLw:1TuxqAe>El]qJ)3+}I{%7Zm + Mڱ 3?u8) X Ymdk>ɝ0}#[ $؛β(9yw>,P$ 'AJiVȟUg?H;a F:Oѧ~׃9'6'9:=׻mݣ8o='>tWC$[xnIE b/X N2L,=r.2˛ exqIFzbjjwS| aOgjdF#Ċ%j\Vaڛy()^;=N1d^y2MR]ˇCh;b%h\?99@n70&Ƙp!SZ{(Mթ:gH-UѯpϩGa^ oE'TP@nm`$eRyg,O+>y/1wyL-e AWZ\ #6㜅` b`3˾ p2d К^D,:"O鱩& 7X69sR3|V^_o"'aG;Vk!JSyu1<*zq*1ΡӨb&nVBd_[uEnnؼtMm'߂CAo[H뭽htW,.9/VVjJU7q DZ[G6t+t*"9}wAuwO QD漍x2R\d8Wր׿JJg3iuV)^OVirN)4\c)m3U@!l*hET4 /?n /͈x0t+y7_!C_dpF@24~J:jAa4Ed]u=J3Pp(-P;/ӥ-*"mc&I>&ɛq.+ktH'XK4@df.riPh. xAw4^= ?ăԼYX8V >(Fĺ; ~f@pUo4^|&ُopƮ!s'^5m{@L,nKE( GazZKMgsH4;$"h9p\[vwv޶M=~ KuӢ *zhG!+z[k|@{lctYg$тV >|mj}(7-X\@! >Imjqq2.;IZ3u fx(6TAQBإJQv`HF^zOjmߛXﵺ%<!5}JǴ cӊo/9.1*#ǡ@g(""[-[XV曤a8@øX@C=5 /gG46.%k;oϪ&t)dAr .%DW&Bu Ỏ`[?(k{1>(izN= ڇy]oz mZ9WtkiҁA踌*@ ӣC4U⯜(a/Ǖ7qmbNL!av?ȇ@F[PfPtI>e$g̩Mu Z=e`J^P2Iqueu.,aGXK:z]pg%e <,~Є~޶m{Q:0`c+w0L| &N% 2\4R* JX߬9oͩ%,w2ę#}HuC{#* &FQ<.IJ4e .@Sj)hkHB>2Ζ y*y}VEDLSLH7B5fEܥJġ ˆ ]Nݐ./"aj욆9T> V;g9,F7N{T3wj{G?Z Kzs?@VSAj0vh佰/uk4-PgQ ^oʂܛu M;!Z/ ~>ERI}id-%&mUXpv!/0