Uploaded image for project: 'RHEL'
  1. RHEL
  2. RHEL-73505

Do not ship SELinux policy modules related to packages from EPEL repository

Linking RHIVOS CVEs to...Migration: Automation ...SWIFT: POC ConversionSync from "Extern...XMLWordPrintable

    • Icon: Story Story
    • Resolution: Done-Errata
    • Icon: Major Major
    • rhel-10.0
    • None
    • selinux-policy
    • selinux-policy-40.13.26-1.el10
    • Moderate
    • 2
    • rhel-security-selinux
    • ssg_security
    • 26
    • 5
    • QE ack
    • False
    • False
    • Hide

      None

      Show
      None
    • No
    • SELINUX 250129: 1, SELINUX 250219: 2
    • Enhancement
    • Hide
      .SELinux policy modules related to EPEL packages moved to `selinux-policy-epel`

      The SELinux policy modules related only to packages contained in the Extra Packages for Enterprise Linux (EPEL) repository and not to any RHEL package were moved from the `selinux-policy` package to the new `selinux-policy-epel` package. As a result, `selinux-policy` is smaller, and the system performs operations such as rebuilding and loading the SELinux policy faster.
      Show
      .SELinux policy modules related to EPEL packages moved to `selinux-policy-epel` The SELinux policy modules related only to packages contained in the Extra Packages for Enterprise Linux (EPEL) repository and not to any RHEL package were moved from the `selinux-policy` package to the new `selinux-policy-epel` package. As a result, `selinux-policy` is smaller, and the system performs operations such as rebuilding and loading the SELinux policy faster.
    • Done
    • None

      Goal

      • Limit the number of shipped modules
        • Less modules means faster policy rebuild and load
        • SELinux modules related to community EPEL repository should be shipped by a package in EPEL repository

      Acceptance criteria

      A list of verification conditions, successful functional tests, or expected outcomes in order to declare this story/task successfully completed.

      • The number of shipped modules is smaller than in RHEL-10 Beta

              rhn-engineering-plautrba Petr Lautrbach
              rhn-engineering-plautrba Petr Lautrbach
              Milos Malik Milos Malik
              Mirek Jahoda Mirek Jahoda
              Votes:
              0 Vote for this issue
              Watchers:
              15 Start watching this issue

                Created:
                Updated:
                Resolved: