From 23d6a713eacffb26d51a3609fc08064fbf416da6 Mon Sep 17 00:00:00 2001 From: HuaxinLuGitee <1539327763@qq.com> Date: Fri, 25 Sep 2020 14:11:44 +0800 Subject: [PATCH 1/2] setdefault SELinux mode to permissive --- selinux-policy.spec | 7 +++++-- 1 file changed, 5 insertions(+), 2 deletions(-) diff --git a/selinux-policy.spec b/selinux-policy.spec index 8a75711..afa9c71 100644 --- a/selinux-policy.spec +++ b/selinux-policy.spec @@ -12,7 +12,7 @@ Summary: SELinux policy configuration Name: selinux-policy Version: 3.14.2 -Release: 61 +Release: 62 License: GPLv2+ URL: https://github.com/fedora-selinux/selinux-policy/ @@ -378,7 +378,7 @@ echo " # enforcing - SELinux security policy is enforced. # permissive - SELinux prints warnings instead of enforcing. # disabled - No SELinux policy is loaded. -SELINUX=enforcing +SELINUX=permissive # SELINUXTYPE= can take one of these three values: # targeted - Targeted processes are protected, # minimum - Modification of targeted policy. Only selected processes are protected. @@ -733,6 +733,9 @@ exit 0 %endif %changelog +* Fri Sep 25 2020 openEuler Buildteam - 3.14.2-62 +- set default SELinux mode to permissive + * Thu Sep 24 2020 openEuler Buildteam - 3.14.2-61 - add add-firewalld-fc.patch -- Gitee From be9975cc7a6ecf6b0431361ee410eb4e2f000d24 Mon Sep 17 00:00:00 2001 From: HuaxinLuGitee <1539327763@qq.com> Date: Fri, 25 Sep 2020 15:03:28 +0800 Subject: [PATCH 2/2] set config file replace --- selinux-policy.spec | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/selinux-policy.spec b/selinux-policy.spec index afa9c71..617050e 100644 --- a/selinux-policy.spec +++ b/selinux-policy.spec @@ -411,7 +411,7 @@ exit 0 %dir %{_usr}/share/selinux %dir %{_usr}/share/selinux/packages %dir %{_sysconfdir}/selinux -%ghost %config(noreplace) %{_sysconfdir}/selinux/config +%ghost %{_sysconfdir}/selinux/config %ghost %{_sysconfdir}/sysconfig/selinux %{_usr}/lib/tmpfiles.d/selinux-policy.conf %{_rpmconfigdir}/macros.d/macros.selinux-policy -- Gitee