selinux-policy-src - Source of the SELinux reference policy for customization

Property Value
Distribution Debian Sid
Repository Debian Main amd64
Package name selinux-policy-src
Package version 2.20180114
Package release 4
Package architecture all
Package type deb
Installed size 1.25 KB
Download size 1.21 MB
Official Mirror
Description -


Package Version Architecture Repository
selinux-policy-src_2.20180114-4_all.deb 2.20180114 all Debian Main
selinux-policy-src - - -


Name Value
checkpolicy >= 2.4
gawk -
make -
policycoreutils >= 2.4
policycoreutils-python-utils >= 2.4
python3 -


Type URL
Binary Package selinux-policy-src_2.20180114-4_all.deb
Source Package refpolicy

Install Howto

  1. Update the package index:
    # sudo apt-get update
  2. Install selinux-policy-src deb package:
    # sudo apt-get install selinux-policy-src




2018-05-30 - Laurent Bigonville <>
refpolicy (2:2.20180114-4) unstable; urgency=medium
* Team upload.
* debian/control: Point Vcs-* fields to new (salsa) machine
* debian/control: Bump Standards-Version to 4.1.4 (no further changes)
* debian/control: Bump debhelper build-dependency version to 11 to match
debian/compat version
* debian/control: Bump python {build-}dependencies to python3 (Closes:
* debian/rules: Drop --parallel flag passed to dh command, this is the
default with debhelper >= 10
* debian/control: Bump Priority of selinux-policy-mls to optional, Priority
extra is now deprecated
* debian/policygentool: Port to python3
* debian/patches/python3-buildsystem.patch: Port the buildsystem to use
* Drop debian/source/lintian-overrides, overrides not used anymore
2018-05-19 - Russell Coker <>
refpolicy (2:2.20180114-3) unstable; urgency=medium
* Added git patch for 20180319.
* Added git patch for 20180419, fixes lots of typos which changes the
way things work.  Also adds sctp protocol support.
* Added git patch for 20180519.
* Build-depend on version 2.7-2 of checkpolicy and libsepol1-dev and Depend
on version 2.7-2 of libsepol1 for sctp support.
* Changed all Build-depends and Depends to version 2.7 from 2.5 and 2.6
because there's no reason to try to build against ancient versions and we
don't want to deal with annoying bugs later.
* Allow mon_t to read generic certs for using SSL for notifications
* Allow systemd_nspawn_t the mcs_killall if systemd_nspawn_labeled_namespace
is enabled
* Allow udev_t to run iptables in iptables_t
* Some other little systemd stuff
2018-03-06 - Russell Coker <>
refpolicy (2:2.20180114-2) unstable; urgency=medium
* Included changelog entry 2:2.20161023.1-10
2018-02-26 - Russell Coker <>
refpolicy (2:2.20180114-1) unstable; urgency=medium
* New upstream 2.20180114 with patch from git version 2.20180220.
Took that patch because a lot of it was policy I developed.
* Delete the deprecated macro mmap_file_perms, anyone who uses this should
change to mmap_exec_file_perms instead.  Closes: #885771
* Now build-depend on recent toolchain.  Closes: #875546
* Removed typebounds patch that upstream didn't like, seems to work ok
without it now, but we can use nnp_transition if necessary.
2017-12-28 - Russell Coker <>
refpolicy (2:2.20171228-1) unstable; urgency=medium
* New upstream from git with lots of Debian patches merged.  This policy is
not a candidate for Buster or anything, I'm uploading it to facilitate
SE Linux development.  The next time Tresys make an official release I'll
put it in Debian Git and make it a candidate for Buster.
* Removed authbind policy
* Set WERROR=y to remove deprecated interfaces
* Enable UBAC for mcs policy
* Use compat level 11

