Subject | Hash | Author | Date (UTC) |
---|---|---|---|
Allow php-fpm to use lock files and to regenerate authorized_keys file | 5970fcb677e3443ff96549413df105c9956f0abf | Catalin(ux) M. BOIE | 2016-10-04 18:48:35 |
Add ServerName and ServerAlias also for TLS virtual host | 08bf46f86137767e4432222475a3ea31034a132a | Catalin(ux) M. BOIE | 2016-10-04 18:47:47 |
Bump version to 0.61 | 99a6ed768168adf45bab328c7405cd10a3e3a81d | Catalin(ux) M. BOIE | 2016-10-03 16:31:43 |
TODO updates | cdc8de4255d6c343a9223bcf334228651e41ae6f | Catalin(ux) M. BOIE | 2016-10-03 16:31:22 |
Small adjustments to unit/functional tests | db54e9be71a96b185713ccbc76dff2b462113755 | Catalin(ux) M. BOIE | 2016-10-03 16:13:46 |
Allow the use of multiple workers | 0ba944fa4f60754b31ec29a676e72a9b870698cc | Catalin(ux) M. BOIE | 2016-10-03 16:13:15 |
Docker fixes | 36653f824b0c2f7159a0cdbfa50e38aea714a0b5 | Catalin(ux) M. BOIE | 2016-10-03 16:12:48 |
Now, any script can update the structure and apply the fixes | 03e1ba61bdcac0514977b79c0b38449db29aa7a5 | Catalin(ux) M. BOIE | 2016-10-03 16:05:19 |
fpm: raise the memory limit to 128M from 32M because some initial commits may be very big | 5dee24337e21e740cba1080e9bfc376b2e8f2036 | Catalin(ux) M. BOIE | 2016-10-02 08:06:39 |
Compute the md5 key only when needed | 4eebe2a3863ca6b50e107ad84080629da6d81707 | Catalin(ux) M. BOIE | 2016-10-02 07:56:52 |
Pass all parameters to worker.php to be able to choose a different configuration | 4da8c1c26b9bd192fa4525f3168cce2fa421702c | root | 2016-09-29 18:18:40 |
Prefer https over ssh | 3dfed205de47850d459106b2479484d83fdcbca8 | Catalin(ux) M. BOIE | 2016-09-28 02:23:44 |
Bump version to 0.60 | fc13b029f14be5989df314e4adec67c78cc06b6d | Catalin(ux) M. BOIE | 2016-09-27 15:28:56 |
We cannot store directly in /var/lib/rocketgit because is owned by root | 0e3d2207e951db3c42d65784a2fe1b79e335cd71 | Catalin(ux) M. BOIE | 2016-09-27 03:04:55 |
SELinux: more fixes to start rocketgit-fpm without AVC errors | bbae4970f9972bdd37199dcf67beceef5f43aa36 | Catalin(ux) M. BOIE | 2016-09-26 20:49:07 |
Bump version to 0.58 | 32c5bf42c158ef5864094a75284115693fe72c03 | Catalin(ux) M. BOIE | 2016-09-26 15:34:10 |
Adjust goal and talk about CLA | 842c8e45c2f53d7cbf6db3ff9549b52034a0ccef | Catalin(ux) M. BOIE | 2016-09-26 02:59:47 |
Rewrap of text | dca9405b83ca52d20c92a4d908a656d43bbaa06e | Catalin(ux) M. BOIE | 2016-09-26 02:46:05 |
SELinux: no need for rocketgit-log folder; allow httpd server to write log files | eef3699ae6563e7b7ea30b9e688f498e38543529 | Catalin(ux) M. BOIE | 2016-09-25 20:28:52 |
worker fixes for when admin edits workers | f54af2c20ebd4df3b3424cab2e0bfb80aa8bafe6 | Catalin(ux) M. BOIE | 2016-09-25 20:26:08 |
File | Lines added | Lines deleted |
---|---|---|
selinux/rocketgit.te.tmpl | 8 | 2 |
File selinux/rocketgit.te.tmpl changed (mode: 100644) (index 450799e..87bec49) | |||
1 | policy_module(rocketgit,1.0.106) | ||
1 | policy_module(rocketgit,1.0.112) | ||
2 | 2 | ||
3 | 3 | ######################################## | ######################################## |
4 | 4 | # | # |
... | ... | files_search_var_lib(rocketgit_t) | |
39 | 39 | # Allow rocketgit_t to manage .ssh/authorized_keys | # Allow rocketgit_t to manage .ssh/authorized_keys |
40 | 40 | ssh_manage_home_files(rocketgit_t) | ssh_manage_home_files(rocketgit_t) |
41 | 41 | ||
42 | # Allow apache to write authrorized_keys[.tmp] file(s) | ||
43 | allow httpd_t user_home_dir_t:file { create getattr open rename setattr write }; | ||
44 | userdom_manage_user_home_dirs(httpd_t) | ||
45 | |||
42 | 46 | type rocketgit_exec_t; | type rocketgit_exec_t; |
43 | 47 | domain_entry_file(rocketgit_t, rocketgit_exec_t) | domain_entry_file(rocketgit_t, rocketgit_exec_t) |
44 | 48 | ||
... | ... | allow httpd_t rocketgit_t:unix_stream_socket connectto; | |
142 | 146 | type rocketgit_lock_t; | type rocketgit_lock_t; |
143 | 147 | files_lock_file(rocketgit_lock_t) | files_lock_file(rocketgit_lock_t) |
144 | 148 | manage_files_pattern(rocketgit_t, rocketgit_lock_t, rocketgit_lock_t) | manage_files_pattern(rocketgit_t, rocketgit_lock_t, rocketgit_lock_t) |
145 | #read_files_pattern(httpd_t, rocketgit_lock_t, rocketgit_lock_t) | ||
146 | 149 | filetrans_pattern(rocketgit_t, rocketgit_lock_t, rocketgit_lock_t, file) | filetrans_pattern(rocketgit_t, rocketgit_lock_t, rocketgit_lock_t, file) |
150 | # we need php-fpm to be able to take locks | ||
151 | manage_files_pattern(httpd_t, rocketgit_lock_t, rocketgit_lock_t) | ||
152 | filetrans_pattern(httpd_t, rocketgit_lock_t, rocketgit_lock_t, file) | ||
147 | 153 | ||
148 | 154 | ||
149 | 155 | # conf | # conf |