Releases

Releases from the SELinux userspace project are in the form of source tarballs. For binary packages please refer to your distribution.

Release 2011-07-27

New features in this release include:

  • Add support for optional file name in type_transition rules by Eric Paris
  • Add class field in role_transition rules by Harry Ciao
  • Add role attribute support by Harry Ciao
  • Add file_context.subs_dist for distro specific filecon substitutions by Daniel Walsh
  • Give correct names to mount points in load_policy by Daniel Walsh
  • Make sure selinux state is reported correctly if selinux is disabled or fails to load by Daniel Walsh
  • Fix crash if selinux_key_create was never called by Daniel Walsh
  • Use correct color range in mcstrand by Richard Haines
  • Update man pages for selinux_color_* functions by Richard Haines
  • Add db_language object class support for selabel_lookup from KaiGai Kohei
  • Add selinux_status_* interfaces for /selinux/status from KaiGai Kohei
  • Allow filesystem names to start with a digit by James Carter
  • Allow single digit module versions by Daniel Walsh

checkpolicy-2.1.0

libselinux-2.1.0

libsemanage-2.1.0

libsepol-2.1.0

policycoreutils-2.1.0

sepolgen-1.1.0

Release 2010-12-21

New features in this release include:

  • Support for on-the-fly sandboxing of applications, including X applications
  • Support for MLS/MCS translations
  • Improved robustness in multithreaded processes
  • Support for building under GCC 4.6
  • Simplification of login context computation logic
  • newrole support for libcap-ng
  • Improved robustness in label computation

checkpolicy-2.0.23

libselinux-2.0.98

libsemanage-2.0.46

libsepol-2.0.42

policycoreutils-2.0.85

sepolgen-1.0.23

Release 2010-05-25

New features in this release include:

  • semodule enable/disable support
  • audit2allow support for generating dontaudit rules
  • Improved support across distributions
  • Improved man pages and help output
  • Improved handling of auditing in userspace object managers when dontaudit/auditallow rules are involved
  • Support for running genhomedircon without examining /etc/passwd

checkpolicy-2.0.21

libselinux-2.0.94

libsemanage-2.0.45

libsepol-2.0.41

policycoreutils-2.0.82

sepolgen-1.0.23

Release 2009-11-23

New features in this release include:

  • Configurable bzip behavior in libsemanage
  • semanage dontaudit support
  • Proper semodule upgrade support
  • setfiles support for labeling when SELinux is not enabled
  • Support for multiple target OSes

checkpolicy-2.0.20

libselinux-2.0.89

libsemanage-2.0.42

libsepol-2.0.41

policycoreutils-2.0.77

sepolgen-1.0.18

Release 2009-07-31

New features in this release include:

  • Label substitution
  • Virtual machine labeling
  • Per-service seuser support
  • Persistent dontaudit flag
  • Btrfs labeling support

checkpolicy-2.0.19

libselinux-2.0.85

libsemanage-2.0.33

libsepol-2.0.37

policycoreutils-2.0.69

sepolgen-1.0.17

Release 2009-04-03

This is primarily a bug fix release. New features included are:

  • Policy module compression (bzip2) support
  • AVC caching for compute_create results

Note: the 1.0 stable branch will no longer have releases.

checkpolicy-2.0.19

libselinux-2.0.79

libsemanage-2.0.31

libsepol-2.0.36

policycoreutils-2.0.62

sepolgen-1.0.16

Release 2008-09-09

This is primarily a bug fix release. New features included are:

  • Ruby bindings for libselinux
  • Group support in seuser files
  • semanage node support
  • semanage boolean file support (loading booleans from a file)
  • semanage permissive support

Development

checkpolicy-2.0.16

libsemanage-2.0.27

policycoreutils-2.0.55

libselinux-2.0.71

libsepol-2.0.32

sepolgen-1.0.13

Stable

checkpolicy-1.34.7

libsemanage-1.10.9

policycoreutils-1.34.16

libselinux-1.34.15

libsepol-1.16.14