Index index by Group index by Distribution index by Vendor index by creation date index by Name Mirrors Help Search

keylime-selinux-7.12.1-11.el9 RPM for noarch

From CentOS Stream 9 AppStream for x86_64

Name: keylime-selinux Distribution: CentOS
Version: 7.12.1 Vendor: CentOS
Release: 11.el9 Build date: Mon Aug 18 14:32:48 2025
Group: Unspecified Build host: aarch64-06.stream.rdu2.redhat.com
Size: 13781 Source RPM: keylime-7.12.1-11.el9.src.rpm
Packager: builder@centos.org
Url: https://github.com/keylime/keylime
Summary: keylime SELinux policy
Custom SELinux policy module

Provides

Requires

License

ASL 2.0 and MIT

Changelog

* Mon Aug 18 2025 Sergio Correia <scorreia@redhat.com> - 7.12.1-11
  -  Fix for revocation notifier not closing TLS session correctly
     Resolves: RHEL-109656
* Wed Aug 13 2025 Sergio Correia <scorreia@redhat.com> - 7.12.1-10
  - Support vendor_db: follow-up fix
    Related: RHEL-80455
* Tue Aug 12 2025 Sergio Correia <scorreia@redhat.com> - 7.12.1-9
  - Support vendor_db as logged by newer shim versions
    Resolves: RHEL-80455
* Fri Aug 08 2025 Anderson Toshiyuki Sasaki <ansasaki@redhat.com> - 7.12.1-8
  - Fix DB connection leaks
    Resolves: RHEL-108263
* Tue Jul 22 2025 Sergio Correia <scorreia@redhat.com> - 7.12.1-7
  - Fix tmpfiles.d configuration related to the cert store
    Resolves: RHEL-104572
* Thu Jul 10 2025 Sergio Correia <scorreia@redhat.com> - 7.12.1-6
  - Populate cert_store_dir with tpmfiles.d
    Resolves: RHEL-76926
* Thu Jul 10 2025 Sergio Correia <scorreia@redhat.com> - 7.12.1-5
  - Use tmpfiles.d for permissions in /var/lib/keylime and /etc/keylime
    Resolves: RHEL-77144
* Tue Jul 08 2025 Patrik Koncity <pkoncity@redhat.com> - 7.12.1-4
  - Add new keylime-selinux release - removing keylime_var_log_t label
    Resolves: RHEL-388
* Fri Jun 20 2025 Anderson Toshiyuki Sasaki <ansasaki@redhat.com> - 7.12.1-3
  - Avoid changing ownership of /var/log/keylime
    Resolves: RHEL-388
* Tue May 27 2025 Sergio Correia <scorreia@redhat.com> - 7.12.1-2
  - Revert changes to default server_key_password for verifier/registrar
    Resolves: RHEL-93678
* Thu May 22 2025 Sergio Correia <scorreia@redhat.com> - 7.12.1-1
  - Update to 7.12.1
    Resolves: RHEL-78418
* Wed Feb 05 2025 Sergio Correia <scorreia@redhat.com> - 7.3.0-15
  - Use TLS on revocation notification webhook
  - Include system installed CA certificates when verifying webhook
     server certificate
  - Include the CA certificates added via configuration file option
    'trusted_server_ca'
    Resolves: RHEL-78057
    Resolves: RHEL-78313
    Resolves: RHEL-78316
* Fri Jan 10 2025 Sergio Correia <scorreia@redhat.com> - 7.3.0-14
  - Backport keylime-policy tool
    Resolves: RHEL-75797
* Fri Jan 05 2024 Sergio Correia <scorreia@redhat.com> - 7.3.0-13
  - Backport fix for CVE-2023-3674
    Resolves: RHEL-21013
* Tue Oct 17 2023 Anderson Toshiyuki Sasaki <ansasaki@redhat.com> - 7.3.0-12
  - Set the generator and timestamp in create_policy.py
    Related: RHEL-11866
* Mon Oct 09 2023 Anderson Toshiyuki Sasaki <ansasaki@redhat.com> - 7.3.0-11
  - Suppress unnecessary error message
    Related: RHEL-11866
* Fri Oct 06 2023 Anderson Toshiyuki Sasaki <ansasaki@redhat.com> - 7.3.0-10
  - Restore allowlist generation script
    Resolves: RHEL-11866
    Resolves: RHEL-11867
* Wed Sep 06 2023 Sergio Correia <scorreia@redhat.com> - 7.3.0-9
  - Rebuild for properly tagging the resulting build
    Resolves: RHEL-1898
* Fri Sep 01 2023 Sergio Correia <scorreia@redhat.com> - 7.3.0-8
  - Add missing dependencies python3-jinja2 and util-linux
    Resolves: RHEL-1898
* Mon Aug 28 2023 Anderson Toshiyuki Sasaki <ansasaki@redhat.com> - 7.3.0-7
  - Automatically update agent API version
    Resolves: RHEL-1518
* Mon Aug 28 2023 Sergio Correia <scorreia@redhat.com> - 7.3.0-6
  - Fix registrar is subject to a DoS against SSL (CVE-2023-38200)
    Resolves: rhbz#2222694
* Fri Aug 25 2023 Anderson Toshiyuki Sasaki <ansasaki@redhat.com> - 7.3.0-5
  - Fix challenge-protocol bypass during agent registration (CVE-2023-38201)
    Resolves: rhbz#2222695
* Tue Aug 22 2023 Sergio Correia <scorreia@redhat.com> - 7.3.0-4
  - Update spec file to use %verify(not md5 size mode mtime) for files updated in %post scriptlets
    Resolves: RHEL-475

Files

/usr/share/selinux/devel/include/distributed/keylime.if
/usr/share/selinux/packages/targeted/keylime.pp.bz2
/var/lib/selinux/targeted/active/modules/200/keylime


Generated by rpm2html 1.8.1

Fabrice Bellet, Tue Oct 21 05:05:26 2025