freeipa-selinux-nfast-4.12.2-10.fc42 >t 6 6_@DHX\ 3!XPȬI^DgJ ȬI^DHϥh*ٖqZ.MTW!q2OĒH`HR!:7:^Y;8_Vc@H~eZđaW}oLS |^觲,RA-!-UBEWs3tkt*:3N7QVo![@)qn,jkՋZ#6@ k@ SNF5WǴJY#]8PDj&z ).M3dH䓴ަaS+xr.'Vgzb#!} $1S;5} Ȋv2IxV6[8JV! L:*kŦ F ͪUZ${92=4+8hG,ȷ^RH` . M, ^C tt+` lu@ _0 qF7t[ŴdI~9Au݇?kO 36c057be9603d2c26ba9f0734b573bb72f3d44eea152afe26b687a88a90040665c78ffc5aca75564581a3ffacf7b3986f03160dc03020462f02aa40046304402203d68a63a38357e21814d5885bcafbf012b492483e3ad03a36ea8fbbcc47d963602203e19d11bced22a9e4413838de4fa53ec4207119e8fcef5c137712c80ac3a022aOJYҞ&!HaSк)|>`??d ' U $+ ( , 0 8 z |   (D8L!9!:!>L@TG\HdIlXpYt\]^bdefltuv`dCfreeipa-selinux-nfast4.12.210.fc42FreeIPA SELinux policy for nCipher nfast HSMsCustom SELinux policy module for nCipher nfast HSMsgbuildhw-x86-02.iad2.fedoraproject.org(WFedora ProjectFedora ProjectGPL-3.0-or-laterFedora ProjectUnspecifiedhttp://www.freeipa.org/linuxnoarch if [ -e /etc/selinux/config ]; then . /etc/selinux/config fi _policytype=targeted if [ -z "${_policytype}" ]; then _policytype="targeted" fi if [ "${SELINUXTYPE}" = "${_policytype}" ]; then rm -rf /var/lib/selinux/${_policytype}/active/modules/400/extra_varrun || : semodule -n -s ${_policytype} -X 200 -i /usr/share/selinux/packages/targeted/ipa-nfast.pp.bz2 || : selinuxenabled && load_policy || : /usr/libexec/selinux/varrun-convert.sh ${_policytype} || : fiif [ $1 -eq 0 ]; then if [ -e /etc/selinux/config ]; then . /etc/selinux/config fi _policytype=targeted if [ -z "${_policytype}" ]; then _policytype="targeted" fi if [ $1 -eq 0 ]; then if [ "${SELINUXTYPE}" = "${_policytype}" ]; then rm -rf /var/lib/selinux/${_policytype}/active/modules/400/extra_varrun || : semodule -n -X 200 -s ${_policytype} -r ipa-nfast &> /dev/null || : selinuxenabled && load_policy || : /usr/libexec/selinux/varrun-convert.sh ${_policytype} || : fi fi fi(WgAgA2272fbf7755f0ced11d9660d813a0d950e08f484b3fc61d856d2fa5597c38cc3@rootrootrootrootfreeipa-4.12.2-10.fc42.src.rpmfreeipa-selinux-nfast     /bin/sh/bin/shlibselinux-utilspolicycoreutilspolicycoreutils-python-utilsrpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsZstd)selinux-policyselinux-policy-baseselinux-policy-targetedselinux-policy-targeted3.0.4-14.6.0-14.0-15.4.18-141.3341.334.20.0g@gu@g@gPD@g? gff(@f3f3f@fffffWee@eeed@eeKx@e6`@e@e;eReRdQd@d[@d@dZ@dbd%yAlexander Bokovoy - 4.12.2-10Alexander Bokovoy - 4.12.2-9Alexander Bokovoy - 4.12.2-8Alexander Bokovoy - 4.12.2-7Alexander Bokovoy - 4.12.2-6Richard W.M. Jones - 4.12.2-5Alexander Bokovoy - 4.12.2-4Alexander Bokovoy - 4.12.2-1Alexander Bokovoy - 4.12.1-3Alexander Bokovoy - 4.12.1-2Fedora Release Engineering - 4.12.1-1.1Julien Rische - 4.12.1-1Python Maint - 4.12.0-1.1Alexander Bokovoy - 4.12.0-1Rob Crittenden - 4.11.1-4Alexander Bokovoy - 4.11.1-3Fedora Release Engineering - 4.11.1-2Fedora Release Engineering - 4.11.1-1.2Fedora Release Engineering - 4.11.1-1.1Alexander Bokovoy - 4.11.1-1Alexander Bokovoy - 4.11.0-7Alexander Bokovoy - 4.11.0-6Alexander Bokovoy - 4.11.0-5Alexander Bokovoy - 4.11.0-4.beta1Alexander Bokovoy - 4.11.0-3.beta1Alexander Bokovoy - 4.11.0-2.beta1Alexander Bokovoy - 4.11.0-1.beta1Fedora Release Engineering - 4.10.2-1.3Miro Hrončok - 4.10.2-1.2Python Maint - 4.10.2-1.1Alexander Bokovoy - 4.10.2-1Alexander Bokovoy - 4.10.1-5Jerry James - 4.10.1-4- Rebuild for Samba 4.22.0 RC1- Do not pass OAuth2 client secret for public clients (freeipa#9734) - Fix upgrade for two-way trust to Active Directory (freeipa#9471 post-fix) - Allow extending certmonger request timeouts to accomodate for slow HSMs (freeipa#9725)- CVE-2024-11029 - Release notes: https://www.freeipa.org/release-notes/4-12-3.html- Apply upstream fixes since 4.12.2 - Fix OTP LDAP bind regression - Resolves: rhbz#2321307 - add ipa-idrange-fix tool - Support PyCA 44.0.0- Adjust to Samba 4.21- Rebuild for Jansson 2.14 (https://lists.fedoraproject.org/archives/list/devel@lists.fedoraproject.org/thread/3PYINSQGKQ4BB25NQUI2A2UCGGLAG5ND/)- Bump release to handle F41 updates which went out of sync due to rebuilds - Fix CA uninstall in case ACME instance is available - Bump SSSD requirement to 2.9.5 to ensure sssd-idp can handle Entra ID - Make sure to use correct nodejs version for build- Upstream release 4.12.2 - Rebuild against Samba 4.21.0-RC3- Few more fixes, including tests and python-cryptography 43.0 compatibility- Post-4.12.1 fixes: - ipa-migrate tool fixes - HSM support fixes including SELinux policy changes - ipa-backup/ipa-restore uniqueness fix - improvements in replication topology access controls - allow PKINIT cert renewal on hidden replica - cleanup more files during uninstall - support for python-cryptography 43.0+ - Remove support for NIS server emulation. Requires slapi-nis 0.70.0- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild- Upstream release 4.12.1 - Release notes: https://www.freeipa.org/release-notes/4-12-1.html - Security release: CVE-2024-2698 CVE-2024-3183- Rebuilt for Python 3.13- Upstream release 4.12 - Release notes: https://www.freeipa.org/release-notes/4-12-0.html- Security release: CVE-2024-1481 - Resolves: rhbz#2265129- Support 389-ds with lmdb backend- Rebuild against Samba 4.20rc1 - Fix memory leak in Kerberos KDC driver - Fix possible crash in IPA command line tool when accessing Kerberos credentials - Compatibility fix for Python Cryptography 42.0.0 - NetBIOS defaults fix - Fix default host keytab retrieval permissions- Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild- Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild- Security release: CVE-2023-5455 - Resolves: rhbz#2257646- ipalib: fix the IPACertificate validity dates (python 3.12 compatibility) - Handle PKI revocation response differences in JSON API - Allow removal of minimal length from a custom password policy- Adopt trust to AD code to Samba changes in case SIDs are malformed- FreeIPA 4.11.0 release - Simplify Fedora spec file - Release notes: https://www.freeipa.org/release-notes/4-11-0.html- Depend on selinux-policy-38.28-1.fc39 - Add SELinux policy for passkey_child to be used without ipa-otpd - Related: rhbz#2238474- Restore properly SELinux context during IPA client uninstallation - Related: rhbz#2238474- Set 'sssd_use_usb' SELinux boolean when enrolling IPA client - Resolves: rhbz#2238474- FreeIPA 4.11.0 beta 1 - Release notes: https://www.freeipa.org/release-notes/4-11-0-beta.html- Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild- Use ssl.match_hostname from urllib3 as it was removed from Python 3.12- Rebuilt for Python 3.12- Upstream release FreeIPA 4.10.2 - Synchronize patches with CentOS 9 Stream- Support python-cryptography 40.0- Change fontawesome-fonts R to match fontawesome 4.x/bin/sh/bin/sh4.12.2-10.fc42ipa-nfast.pp.bz2ipa-nfast/usr/share/selinux/packages/targeted//var/lib/selinux/targeted/active/modules/200/-O2 -flto=auto -ffat-lto-objects -fexceptions -g -grecord-gcc-switches -pipe -Wall -Wno-complain-wrong-lang -Werror=format-security -Wp,-U_FORTIFY_SOURCE,-D_FORTIFY_SOURCE=3 -Wp,-D_GLIBCXX_ASSERTIONS -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -fstack-protector-strong -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -m32 -march=i686 -mtune=generic -msse2 -mfpmath=sse -mstackrealign -fasynchronous-unwind-tables -fstack-clash-protectioncpiozstd19i686-redhat-linux-gnuhttps://bugz.fedoraproject.org/freeipautf-8d8334bf65485eab93cfa4acc6c8e211d5dbcf2afc1e4c60bf78e1b9550e9f9d2986c31b070fb553c13cbe0598d07aa0f1364d5efdaf9c47f932a5999fddb9858?(/h6Z071081a40167a9418285703./usr/share/selinux/packages/targeted/ipa-nfast.pp.bz2BZh91AY&SY}T7?(gh |>{;604@+P@(|GH`hPda444 d46†Qh(?Rz4@Ѡ 2L2d44hh 3TT i2 14dCh` Fd4 i4фdd0@ɠ#C@i @$ lF h ?TJ"bh2hh 44b2hh24hdɡF@A4@d0!Qjah1j4i4mM 4hF44L44@ "dh&S2hlSiL&Gh&L&am&M4F&&=44  ZI'RjK8m*7T,.VGo9іy3 N<|w2~+\Co{ӱ JNWk{e{ys}*h9iZO_uTA# % xG'vs]|{Cb:]nc{ VJxqt>cIxT4 Ɇy" dKt f&/ PJ%-24Dd$Qr{~Hc Jyot*.6q~̷_LmQfqQq[=:e 8,;VE-ʠ뗳 &}h+܈z,Qd@׆P>^NvOb+"Ta =ag{:zY~޺oN6wi:G{qp.wv{3!^Κ=v 9y;ĎaԈ*2udΤFSw۳&fI2I H O98kZ3?O:u5>n66uEdܥg-W]S5mUw5[_4S,,d1=@1a$d$FH1thlICo53NgxSlu31.j' mxI(f񦻯sJ|=WL{ȓ`45y8^doy9iUM-JHm4Jڲm&LɣJ5,Xws7i'3v`$//%&@'eDP= "{!ƂHB$#B<Ě>b,,!! zJiTR%.V*"QQ("+" I$I$,=Py'&HtX׎1~@Oߗcsssw"Ոl 5i6żxK#=1.@TQ}x[ۻ QRPo G׀_ϩU=$W~;[ƺc|$!+aώ5G/,ib(zU;[w5:ݹTy|}ΙOw7-*tŎsf7XҡI\xf37|L< 5q1VKIDZNV`6"Z#wTwfjLOjsf\εoڨķ]d\l/{ms(nx6pjU7tq;lq\1[,75<916{O:pڍw7 5ܽʠ\ZUfBss ])Z uUbrG3vn[ؙQPY>۸gkwEqEtEn$2$!"N3 K߯4T4+RfR/'KAt Kvtx@J6 59X\ z27xhs{$@hpHBI 2HH "9:GuH%W#{Yè"5[̄͟jX{pUʅVK-䲼FE71-'k]-4Yx_9oK6d%ya~t NĬWISZ@B@OZ7B)T!UJ2{{xJ H~g" ᷤ#8(3= wU%' aΡxE5fOGAoH~Q5>1NyY7Qimr)aTmυ]7pvDYL+R#3un[Np{v$Rc5rL^tDٞjgQMmJ={>T)9}ΨG;Ή>E#Așs\+~|o{]/;ϑ`6oa9 G#zX 6`qm&6`qY)*x0'( %rz:xVg&3Onxwsd#|w.I-;+2HAr|^3u7qsj!xyNj+qZ)JG#?^z#ϟ.{5=ӽ[o;jzu%޶wF*zө.5ޝm{FO{ޝFFP]NHbFm"5m.P{x{>#z`r*s7TWs]v=Zd%6se]\hwY=r*jW(Os;H|eǷ5R\Va3qg/rqbyX}=N>OFwzkDn{ӽQAE`m5#Q{m X6E[BHXJxRr+@3-ELbQL#W-1UTyUV'|)-EJ4NAz)ZbmW9n]6vkREGNKDIXߩַ}/m r!veL|'|n ctew}Ew|<qS'1weEAAfeU`y`wh.o1P@b haM Fbj2 &`xz}t$ F@|%7X,?"I dfɆdYZ[.] 56*}M2"蟏>jjf}]Sq욦I4ˢk-Rl)V#D$Jb@$ KJ xUH`1r!Pɉ' mE*ߪ@NC1s쥹_ j}p Kۀ^`@8t- 0(NB@R3[4MϟWgȰ37;={%}mm[q cPb:2iMMUgٮBZgX弖9i[lb_\~jL;A8G-Ӕ@oMJV!`=@;>IL!$$"i7Cv<;e.M|} 9HI& K4B'|{v(a@- 0n5;m2>b6;l}Vrޑ8r+π[ L*!hU 6 Ψ,`.+6%,1FYBp1}&խZ U@PTEQ'D E5tJK)H6[U'"I;Nn!a $a gh֜Uu{]A/rɯ{yxP4QP*(-?"kHa i%Fj :%Gp6"c:)7 EW<8:U*P 2AjQIE(4FLE}*QC+u QIuq;yu5̾a ßs!9<;YySNYUꆛ'^T(B8Zg8_P%cb֌ bU]uLXP3( ;hqQNuK=˜%.D,[~s7ꎩ[[7 7T&Ә()BbB\Y_.t@a+^}ss :dvq dylcq @t(8* ,PW4*!>/$$8"UdĪBH_ CT2{iÂya wG9|sQTV D<Ùxv1`$ kaM3 Jc[@B=_Ԡ(Lg犱* E\DbS6x/(LCh_aOX`NREsx|`,  HQl׃VsJ>Ύv a@t|QC4mmDN}$Ӧ$יs;󋆸nIW lS|r" l>g!ݓFj7jA,Z,( *YIIMcχ0pP <@`ڹ-jHU~A4DpOw9BCB5XD =npQ2QohP` =.\ChPXQ7 ( ll`7eQ^,XQ;39bZnr MBxBQ8PT(\I:yH@hiU^{] ̊j䛐}d@,an/`q1#-NGyg#2-dBʁQ/.xT7U@Ecuc=^+k+$/D3v@gYݡ3ʪы*僷㉟3,nc1OTiQ,k0q/ a( o<1#B:2})F.Mcеm@^k` Q7 et\N%>)bq@f\Q^VE֛IZBz3<" $-yW21((/ǞeיPCha-q(74qCX*yw6g}Z~s|#c⫔ X{RIԂ%ખI „ &#"ݢ@oHBH jbTRAILER!!!v(@є8bl2G STRkVL.Oi-GͶΓH/鼈tr @3 ,0eh3)e!JfHJUCue>H8/Wݫ BkTq x_1xPQGb6k5 @:qq(MH Y_W5?)򐿒ꒅ14\mvj\2 a1*ѬF| 1i ڇs0|:$3p*a L6pF ,akOY{A,k Ut߀l