Releases: SELinuxProject/selinux
SELinux userspace release 3.9
RELEASE 3.9
User-visible changes
- 
Support static-only builds with DISABLE_SHARED=y 
- 
Add restore option to modify user and role portions 
- 
setfiles: Add -U option to modify user and role portions 
- 
semanage.conf: Add relabel_store config option 
- 
semodule: Add [-g PATH |--config=PATH] for an alternate path for the semanage config 
- 
libselinux: Fix local literal fcontext definitions priority 
- 
libselinux: Fix order for path substitutions 
- 
libsepol: Add new 'netif_wildcard' policy capability 
- 
checkpolicy: Add support for wildcard netifcon names 
- 
libsepol: Allow multiple policycap statements 
- 
libsepol: Support genfs_seclabel_wildcard 
- 
Replace all links to selinuxproject.org 
- 
Bug fixes 
SELinux userspace release 3.9-rc2
RELEASE 3.9-rc3
User-visible changes
- Bug fixes
SELinux userspace release 3.9-rc2
RELEASE 3.9-rc2
User-visible changes
- 
libsepol: Add new 'netif_wildcard' policy capability 
- 
checkpolicy: Add support for wildcard netifcon names 
- 
libsepol: Allow multiple policycap statements 
- 
libsepol: Support genfs_seclabel_wildcard 
- 
Replace all links to selinuxproject.org 
- 
Bug fixes 
SELinux userspace release 3.9-rc1
RELEASE 3.9-rc1
User-visible changes
- 
Support static-only builds with DISABLE_SHARED=y 
- 
Add restore option to modify user and role portions 
- 
setfiles: Add -U option to modify user and role portions 
- 
semanage.conf: Add relabel_store config option 
- 
semodule: Add [-g PATH |--config=PATH] for an alternate path for the semanage config 
- 
libselinux: Fix local literal fcontext definitions priority 
- 
libselinux: Fix order for path substitutions 
- 
Bug fixes 
SELinux userspace release 3.8.1
RELEASE 3.8.1
User-visible changes
- libsemanage: improved performance of semanage store rebuild
SELinux userspace release 3.8
RELEASE 3.8
Important change:
The internal representation of file_contexts.*.bin files is completely
rewritten and new format stores all multi-byte data in network
byte-order, so that such compiled files can be cross-compiled,
e.g. for embedded devices with read-only filesystems.
User-visible changes
- 
libsemanage: Preserve file context and ownership in policy store 
- 
libselinux: deprecate security_disable(3) 
- 
libsepol: Support nlmsg extended permissions 
- 
libsepol: Add policy capability netlink_xperm 
- 
libsemanage: Optionally allow duplicate declarations 
- 
policycoreutils: introduce unsetfiles 
- 
libselinux/utils: introduce selabel_compare 
- 
improved selabel_lookup performance 
- 
libselinux: support parallel usage of selabel_lookup(3) 
- 
libsepol: add support for xperms in conditional policies 
- 
Improved man pages 
- 
Code improvements and bug fixes 
- 
Always build for LFS mode on 32-bit archs. 
- 
libsemanage: Mute error messages from selinux_restorecon introduced in 3.8-rc1 
- 
Regex spec ordering is restored to pre 3.8-rc1 
- 
Binary fcontext files format changed, files using old format are ignored 
- 
Code improvements and bug fixes 
RELEASE 3.8-rc4
RELEASE 3.8-rc4
Changes
- Code improvements and bug fixes
Release 3.8-rc3
RELEASE 3.8-rc3
Changes
- 
Always build for LFS mode on 32-bit archs. 
- 
libsemanage: Mute error messages from selinux_restorecon introduced in 3.8-rc1 
- 
Regex spec ordering is restored to pre 3.8-rc1 
- 
Binary fcontext files format changed, files using old format are ignored 
- 
Code improvements and bug fixes 
Release 3.8-rc1
RELEASE 3.8-rc1
User-visible changes
- 
libsemanage: Preserve file context and ownership in policy store 
- 
libselinux: deprecate security_disable(3) 
- 
libsepol: Support nlmsg extended permissions 
- 
libsepol: Add policy capability netlink_xperm 
- 
libsemanage: Optionally allow duplicate declarations 
- 
policycoreutils: introduce unsetfiles 
- 
libselinux/utils: introduce selabel_compare 
- 
improved selabel_lookup performance 
- 
libselinux: support parallel usage of selabel_lookup(3) 
- 
libsepol: add support for xperms in conditional policies 
- 
Improved man pages 
- 
Code improvements and bug fixes 
SELinux userspace release 3.7
RELEASE 3.7
User-visible changes
- 
audit2allow -Cfor CIL output mode
- 
sepolgen: adjust parse for refpolicy 
- 
semanage: Allow modifying records on "add" 
- 
semanage: Do not sort local fcontext definitions 
- 
Improved man pages 
- 
checkpolicy: support CIDR notation for nodecon statements 
- 
sandbox: Add support for Wayland 
- 
Code improvements and bug fixes