summaryrefslogtreecommitdiff
AgeCommit message (Collapse)AuthorFilesLines
2014-01-10MSM: fix access type length and validationJarkko Sakkinen2-2/+3
This patch fixes three issues with access type: - SMACK_ACCESS_TYPE_LENGHT -> SMACK_ACCESS_TYPE_LENGTH - Changed the value of SMACK_ACCESS_TYPE_LENGTH from 5 to 6. - String length was calculated with unsafe 'strlen()'. Changed to use strlen(type, SMACK_LABEL_LENGTH + 1) instead. Change-Id: I127d7b2beb8a3258ec1e4a5142f253f842b2fa7a Signed-off-by: Jarkko Sakkinen <jarkko.sakkinen@linux.intel.com>
2013-12-20Security plugin: change policy to advisoryJarkko Sakkinen1-19/+29
Change policy from enforcing to advisory when access is requested from unknown domain or permitted to unknown domain. Also trunacated lines to 80 characters, fixed grammar in the warning messages, and removed trailing spaces and tabs. In future, it might make sense to make this behaviour a command-line option. Added a FIXME comment about that. Change-Id: Iab78d79a8a28e019ec8601265a59d259fd46f9d6 Signed-off-by: Jarkko Sakkinen <jarkko.sakkinen@linux.intel.com>
2013-12-04Security plugin: adding support for l access typeElena Reshetova1-1/+1
Change-Id: Id61dd99ef2e6a673d3c66a58d71c735b07571970
2013-12-03Updating changelogRusty Lynch1-0/+3
Change-Id: Ibe31f0a5567947c478f8b089e2e4d7b850019abd Signed-off-by: Rusty Lynch <rusty.lynch@intel.com>
2013-12-03Security plugin: removing exec label restrictionElena Reshetova1-0/+2
Change-Id: I1da33e6e842a7f93dade78f2aebc00ed271a271c
2013-11-15Update changelog and fix rpmlint errorRusty Lynch2-1/+8
Change-Id: Id9df4a22a240fe9b1028d4bdca6987b6f58b0211 Signed-off-by: Rusty Lynch <rusty.lynch@intel.com>
2013-11-15- solve bug PTREL-155, build python-rpm.Ronan Le Martret2-3/+16
Change-Id: Idffe011bde3623d20c647aad8c6bac70b07f83f5 Signed-off-by: Ronan Le Martret <ronan@fridu.net>
2013-11-15armv7l:fix faulty line in rpmrc.inAdrian Negreanu1-1/+1
[ 484s] === configuring in db3 (/home/abuild/rpmbuild/BUILD/rpm-4.11.0.1/db3) [ 484s] configure: running /bin/sh ./configure --disable-option-checking '--prefix=/usr' '--disable-dependency-tracking' '--mandir=/usr/share/man' '--infodir=/usr/share/info' '--libdir=/usr/lib' '--sysconfdir=/etc' '--localstatedir=/var' '--with-lua' '--with-acl' '--with-cap' '--enable-shared' '--with-msm' '--build=armv7l-tizen-linux-gnueabi' 'build_alias=armv7l-tizen-linux-gnueabi' 'CFLAGS=-O2 -g -march=armv7-a -mtune=cortex-a8 -mlittle-endian -mfpu=vfpv3 -mfloat-abi=softfp -D __SOFTFP__ -ffunction-sections' 'LDFLAGS=-Wl,-Bsymbolic-functions -ffunction-sections' 'CPPFLAGS= -I/usr/include/nss3 -I/usr/include/nspr4 ' 'CXXFLAGS=-O2 -g -march=armv7-a -mtune=cortex-a8 -mlittle-endian -mfpu=vfpv3 -mfloat-abi=softfp -D __SOFTFP__' --cache-file=/dev/null --srcdir=. [ 485s] configure: WARNING: you should use --build, --host, --target [ 485s] configure: WARNING: you should use --build, --host, --target [ 486s] checking build system type... armv7l-tizen-linux-gnueabi [ 486s] checking host system type... Invalid configuration `__SOFTFP__': machine `__SOFTFP__' not recognized [ 486s] configure: error: /bin/sh ./../db/dist/config.sub __SOFTFP__ failed [ 486s] /bin/mv: cannot stat `Makefile': No such file or directory [ 486s] /bin/cat: Makefile.orig: No such file or directory [ 486s] make: *** No rule to make target `listobjs'. Stop. [ 486s] configure: error: ./configure failed for db3 [ 487s] error: Bad exit status from /var/tmp/rpm-tmp.vjacB0 (%build) [ 487s] [ 487s] [ 487s] RPM build errors: [ 487s] Bad exit status from /var/tmp/rpm-tmp.vjacB0 (%build) Bug-Id: https://bugs.tizen.org/jira/browse/PTREL-398 Change-Id: I36f45d1d52754bbf02b6596eac0d21a715bd451e Signed-off-by: Adrian Negreanu <adrian.m.negreanu@intel.com>
2013-11-15msm: check libxml/{xmlreader,tree}.hAdrian Negreanu3-2/+13
msmconfig.c:29:25: fatal error: libxml/tree.h: No such file or directory msmmanifest.c:37:30: fatal error: libxml/xmlreader.h: No such file or directory Bug-Id: https://bugs.tizen.org/jira/browse/PTREL-397 Change-Id: If287d79f343ca6f6f4be9392f09e17387305fb8a Signed-off-by: Adrian Negreanu <adrian.m.negreanu@intel.com>
2013-11-01Security plugin: Removing definition of System domain from default device policyElena Reshetova1-1/+0
Change-Id: I8260934c6e5e1421b594545b5c2740e9aaebcfd5 Signed-off-by: Elena Reshetova <elena.reshetova@intel.com>
2013-09-27Security plugin: plugin hooks code refactoring and improvmentElena Reshetova5-341/+400
Change-Id: I4d44db47865dd5c83fcf28435ffc26a70164b69d
2013-09-25Introduction of -locale and -docs subpackages. Moved package to another groupJacek Bukarewicz2-7/+11
Change-Id: I6cb5d33ff6bb54fb57475578d6d2d632cc45ccfc Signed-off-by: Jacek Bukarewicz <j.bukarewicz@samsung.com>
2013-09-16update changesAnas Nashif1-0/+3
Change-Id: I983e29c06ce691f740cc559c1fd18a4812a71c81
2013-09-10remove --target from %configure macrosAnas Nashif1-3/+0
The target will be determined automatically by the configure scripts instead of forcing it to be %target_platform of RPM. Change-Id: I2284de77c28c4d0c7a9e1a9f819f5861eb5b74a0 Signed-off-by: Anas Nashif <anas.nashif@intel.com>
2013-09-03enforce platform for ARMAnas Nashif2-4/+3
also set optflag defaults for armv7l Change-Id: I0cdcc093245b1e121b51327b83300b59d101a30b Signed-off-by: Anas Nashif <anas.nashif@intel.com>
2013-09-02changesAnas Nashif1-0/+3
2013-09-02update changelogAnas Nashif1-0/+5
2013-08-20Security plugin: adding checking of return code for dbus policy verificationElena Reshetova2-35/+37
2013-08-19Security plugin: small fixesElena Reshetova2-52/+1
- Removing unused code - Changing the init hook to take care of new libsmack return code
2013-08-07Security plugin: removing disable-dchecks optionElena Reshetova3-32/+0
2013-08-05update changes and releaseAnas Nashif1-0/+7
2013-08-05Security plugin: support for --root optionElena Reshetova5-42/+119
-adding macros to configure location of default policy -adding a default security policy to rpm-plugins dir -adding copying of policy file to chroot dir when rpm is run with --root param -moving policy saving to post_tsm hook
2013-08-05Security plugin: pkg_name allocation in conflictElena Reshetova1-6/+9
- fix to the pkg_name allocation in conflict handling
2013-08-05Security plugin: allowing multiple domains definitionElena Reshetova4-122/+170
- allowing multiple domains definition per manifest - fixing indirect include of config.h - restricting adding new sw source with the same key info
2013-06-29resetting manifest requested domain to floorAlexandru Cornea2-0/+11
2013-06-12update changelogtizen/4.11.0.1.tizen20130618Anas Nashif1-0/+12
2013-06-12update macros from project confAnas Nashif1-0/+33
2013-06-12Merge branch 'tizen' of ssh://review.tizen.org/platform/upstream/rpm into tizenAnas Nashif4-13/+73
2013-05-31Security plugin: Adding configuration option --disable-dchecksElena Reshetova3-5/+40
2013-05-31Security-plugin: Fix the null pointer comparisonElena Reshetova1-3/+4
possibility in msmXattrSupport
2013-05-10Set license using %licenseAnas Nashif1-1/+2
2013-05-07Fix 32bit kernel builds by not using eu-stripWilliam Douglas1-5/+29
Right now 32bit kernel builds are failing because eu-strip is not performing safe operations. In order to work around this, use objdump as before when running a kernel build (by checking for a Kconfig file in the BUILDIR). Change-Id: I8c24eaab9e0ac1dfe21484522ce4e415d21fcb14 Signed-off-by: William Douglas <william.douglas@intel.com>
2013-04-22Cleaning up code identationElena Reshetova5-1437/+1337
2013-04-18Fix the missing path prefix for Plugin init hookElena Reshetova1-13/+51
2013-04-17Fixes to rpm security pluginElena Reshetova3-16/+36
- stricter control over smack64exec label assigment - strciter control over dbus interface labels
2013-04-13Add VCS tag into .src.rpmAlexander Kanevskiy1-0/+1
2013-03-29Update changelogAnas Nashif1-0/+8
2013-03-29add find-provides.ksymsAnas Nashif1-0/+41
2013-03-29add find-provides.ksymsAnas Nashif1-0/+3
2013-03-26init message testElena Reshetova1-1/+1
2013-03-26Adding Isolated domain to policyElena Reshetova1-0/+1
2013-03-26Changing smack load pathElena Reshetova1-1/+1
2013-03-22Fixed package groupsAnas Nashif2-1/+7
2013-03-12Adding a new attribute tag to manifestElena Reshetova3-5/+65
Attribute tag allows to specify the type of the package (currenlty only application or system) that affects setting SMACK64EXEC label. For system packages it isn't set by default and for applications it is set to requested domain.
2013-03-07Merge "Keep function symbols for backtraces."Nashif, Anas1-25/+16
2013-03-08Adding System ac domain to the policyElena Reshetova1-0/+1
2013-03-06Keep function symbols for backtraces.William Douglas1-25/+16
In order to get minimal backtraces in gdb without installing debug-info packages strip packages with eu-strip -g. Also check for kernel modules and strip them without attempting to leave minimal function symbols in place (as this does not work correctly). Signed-off-by: William Douglas <william.douglas@intel.com>
2013-03-04Fixed find-langtznext/4.11.0.1.tizen20130304tznextAnas Nashif1-0/+7
2013-03-04Fixed package groupsAnas Nashif1-9/+10
2013-03-04add macro no_lang_CAnas Nashif1-0/+2