Commit Graph

  • 8ed29e9d6e
    Merge ce4b57d1cb179f18c1ac41681626d01054355fe6 into 2a4a228b150e06c7ff796315719d41e825dd8ad3 raja-grewal 2025-02-03 00:34:07 +00:00
  • ce4b57d1cb
    Update docs on kernel panics raja-grewal 2025-02-03 00:31:45 +00:00
  • 2a4a228b15
    bumped changelog version master 44.2-1 Patrick Schleizer 2025-01-31 19:38:42 +00:00
  • 041caf286b
    update pkg_installed function Patrick Schleizer 2025-01-31 14:33:54 -05:00
  • ac1493fcfc
    comment Patrick Schleizer 2025-01-31 14:33:17 -05:00
  • c0f2f11014
    bumped changelog version 44.1-1 Patrick Schleizer 2025-01-30 12:58:48 +00:00
  • 9f5e522b83
    LC_ALL=C Patrick Schleizer 2025-01-30 07:53:04 -05:00
  • 7c150d116d
    LANG=C str_replace: no longer requires LANG=C, therefore removed Patrick Schleizer 2025-01-30 07:45:08 -05:00
  • 6aaf708217
    bumped changelog version 44.0-1 Patrick Schleizer 2025-01-29 14:36:41 +00:00
  • 10508cb580
    Merge remote-tracking branch 'github-kicksecure/master' Patrick Schleizer 2025-01-29 09:36:28 -05:00
  • b9dee26331
    Merge pull request #296 from raja-grewal/cpu_details Patrick Schleizer 2025-01-29 09:35:50 -05:00
  • 974b0417f8
    Merge 4cae74d610ad37066e8a334019cfa5c82f088a2e into 6b4fa1ef0055d36a45d65481129dabfee77027e4 monsieuremre 2025-01-23 20:31:03 +00:00
  • 6b4fa1ef00
    bumped changelog version 43.9-1 Patrick Schleizer 2025-01-23 16:28:58 +00:00
  • b10f5489a3
    copyright Patrick Schleizer 2025-01-23 11:12:26 -05:00
  • 3c18734db3
    bumped changelog version 43.8-1 Patrick Schleizer 2025-01-22 14:11:21 +00:00
  • f90ffacac3
    bump permission hardner migration code version Patrick Schleizer 2025-01-22 09:09:56 -05:00
  • 3a056c9d9c
    bump permission hardner migration code version Patrick Schleizer 2025-01-22 09:05:50 -05:00
  • d5ad29a732
    add /usr/lib/polkit-1/polkit-agent-helper-1 to permission hardener hardcoded statoverride file Patrick Schleizer 2025-01-22 09:04:44 -05:00
  • c8a2483cf6
    bumped changelog version 43.7-1 Patrick Schleizer 2025-01-22 13:52:29 +00:00
  • 80bd314436
    add .whonix files to hardcoded files Patrick Schleizer 2025-01-22 08:25:14 -05:00
  • 9b012bdeee
    Merge remote-tracking branch 'ArrayBolt3/arraybolt3/permission-hardener-symlink-fix' Patrick Schleizer 2025-01-22 08:23:49 -05:00
  • 507130a1cc
    Merge remote-tracking branch 'ArrayBolt3/arraybolt3/permission-hardener-diag' Patrick Schleizer 2025-01-22 08:21:39 -05:00
  • 42f34f5a4c
    Don't handle files with multiple hardlinks Aaron Rainbolt 2025-01-21 21:49:03 -06:00
  • 5e60416c86
    Make permission-hardener always apply changes to real files, not symlinks Aaron Rainbolt 2025-01-21 21:05:03 -06:00
  • ed767e00b0
    Add some local variable declarations Aaron Rainbolt 2025-01-21 16:41:30 -06:00
  • 4b1e530674
    README.md: List CPU mitigations raja-grewal 2025-01-21 12:39:06 +00:00
  • 15d13a8571
    Add info on DBX updates via the UEFI Revocation List raja-grewal 2025-01-21 12:36:04 +00:00
  • a97620a2e4
    Add print-diagnostics command to permission-hardener Aaron Rainbolt 2025-01-20 22:43:55 -06:00
  • f1b6bff30b
    bumped changelog version 43.6-1 Patrick Schleizer 2025-01-20 11:35:08 +00:00
  • df9d058ed9
    usrmerge Patrick Schleizer 2025-01-20 06:28:16 -05:00
  • 8ff5f3b221
    bumped changelog version 43.5-1 Patrick Schleizer 2025-01-20 10:11:43 +00:00
  • 4e0d5a196c
    delete comment only configuration file (moved to user-sysmaint-split) Patrick Schleizer 2025-01-20 04:30:26 -05:00
  • 1b4d1edfc3
    comments Patrick Schleizer 2025-01-20 04:29:42 -05:00
  • 51c7010e8f
    bumped changelog version 43.4-1 Patrick Schleizer 2025-01-17 13:35:28 +00:00
  • 876d596a07
    comment Patrick Schleizer 2025-01-17 07:55:54 -05:00
  • c9e2f82bd0
    Merge remote-tracking branch 'ArrayBolt3/master' Patrick Schleizer 2025-01-17 07:53:59 -05:00
  • bf73f1f2b5
    Avoid impossible-to-satisfy dependency on helper-scripts, improve string handling robustness in postinst Aaron Rainbolt 2025-01-15 19:10:41 -06:00
  • 597186972e
    bumped changelog version 43.3-1 Patrick Schleizer 2025-01-15 15:02:44 +00:00
  • ca25716410
    improve permission hardener migration code Patrick Schleizer 2025-01-15 09:44:48 -05:00
  • 2dfd30a44a
    Merge remote-tracking branch 'ArrayBolt3/arraybolt3/more-permission-hardener' Patrick Schleizer 2025-01-15 09:33:57 -05:00
  • 328f747179
    Restore permission-hardener's notice about how to compare old and new states Aaron Rainbolt 2025-01-14 20:35:28 -06:00
  • c6f09748f3
    Handle de-corruption of new_mode a bit better Aaron Rainbolt 2025-01-14 20:27:53 -06:00
  • a0f81958df
    De-corrupt the new_mode permission-hardener statoverride database too Aaron Rainbolt 2025-01-14 19:25:15 -06:00
  • 396372c129
    Avoid scanning unnecessary packages for modified permission-hardener config Aaron Rainbolt 2025-01-14 18:50:24 -06:00
  • a84d3ba732
    bumped changelog version 43.2-1 Patrick Schleizer 2025-01-14 14:32:13 +00:00
  • 709036c79f
    debconf-updatepo Patrick Schleizer 2025-01-14 09:31:58 -05:00
  • 659c7037c6
    bumped changelog version 43.1-1 Patrick Schleizer 2025-01-14 14:30:58 +00:00
  • 86d3db15bf
    output Patrick Schleizer 2025-01-14 09:30:46 -05:00
  • 876c0b6187
    output Patrick Schleizer 2025-01-14 09:29:35 -05:00
  • c46178dee4
    output Patrick Schleizer 2025-01-14 09:27:37 -05:00
  • f3c07a2451
    update link Patrick Schleizer 2025-01-14 09:24:06 -05:00
  • bbc4ad7c2a
    bumped changelog version 43.0-1 Patrick Schleizer 2025-01-14 14:16:45 +00:00
  • 9bb92e91a8
    debhelper Patrick Schleizer 2025-01-14 09:16:25 -05:00
  • 95dd8f419f
    bumped changelog version 42.9-1 Patrick Schleizer 2025-01-14 14:07:50 +00:00
  • 0a2f06b456
    use pre.bsh Patrick Schleizer 2025-01-14 09:07:32 -05:00
  • 6a4f9c1bd8
    bumped changelog version 42.8-1 Patrick Schleizer 2025-01-14 14:06:50 +00:00
  • e60183ec07
    output Patrick Schleizer 2025-01-14 09:06:41 -05:00
  • a812961bea
    verbose Patrick Schleizer 2025-01-14 09:06:12 -05:00
  • 0e4dfc59dd
    bumped changelog version 42.7-1 Patrick Schleizer 2025-01-14 13:53:49 +00:00
  • cdf179f127
    fix Patrick Schleizer 2025-01-14 08:53:38 -05:00
  • 41cd09933a
    bumped changelog version 42.6-1 Patrick Schleizer 2025-01-14 09:26:05 +00:00
  • eec2e2c8ee
    comment Patrick Schleizer 2025-01-14 04:13:39 -05:00
  • 6d282226ef
    comment Patrick Schleizer 2025-01-14 04:12:12 -05:00
  • 466308e4f9
    permission hardener: disable SUID for chrome-sandbox Patrick Schleizer 2025-01-14 04:09:57 -05:00
  • 7a5f8b87af
    permission hardener: disable SUID for ssh-agent, ssh-keysign, /lib/openssh/* Patrick Schleizer 2025-01-14 04:06:44 -05:00
  • d89ffcde30
    comment Patrick Schleizer 2025-01-14 04:04:09 -05:00
  • 9f1759ba0e
    comment Patrick Schleizer 2025-01-14 03:56:55 -05:00
  • 0ac85ea9f5
    comment Patrick Schleizer 2025-01-14 03:54:35 -05:00
  • fce6a5f830
    comment Patrick Schleizer 2025-01-14 03:51:43 -05:00
  • 1e99404813
    comment Patrick Schleizer 2025-01-14 03:50:16 -05:00
  • b198591537
    comment Patrick Schleizer 2025-01-14 03:49:42 -05:00
  • 7d44db2cb2
    usrmerge Patrick Schleizer 2025-01-14 03:49:15 -05:00
  • 7e7632a553
    bumped changelog version 42.5-1 Patrick Schleizer 2025-01-14 08:24:05 +00:00
  • 420cb3f86f
    refactoring Patrick Schleizer 2025-01-14 03:19:21 -05:00
  • b7e7b2767e
    refactoring Patrick Schleizer 2025-01-14 03:18:17 -05:00
  • b2a1a0ec9f
    refactoring Patrick Schleizer 2025-01-14 03:17:00 -05:00
  • 69ae2d9ea0
    Merge remote-tracking branch 'ArrayBolt3/arraybolt3/permission-hardener-migrate' Patrick Schleizer 2025-01-14 03:15:45 -05:00
  • de9ebabd46
    Fix minor migration bugs, don't run the migration code on new image builds Aaron Rainbolt 2025-01-13 21:57:10 -06:00
  • a9e87e9d30
    Prevent installation failures when installing non-interactively Aaron Rainbolt 2025-01-12 21:13:43 -06:00
  • 5570d3e5b9
    Add a forgotten set -e Aaron Rainbolt 2025-01-12 20:40:41 -06:00
  • 07786de039
    Enable smooth migration from permission-hardener-v1 to permission-hardener-v2 Aaron Rainbolt 2025-01-12 19:34:41 -06:00
  • de1f31e3df
    bumped changelog version 42.4-1 Patrick Schleizer 2025-01-12 11:47:18 +00:00
  • b0baa8baa5
    add link Patrick Schleizer 2025-01-12 05:38:35 -05:00
  • d6a7cd3e0d
    formatting. Patrick Schleizer 2025-01-12 05:36:16 -05:00
  • 485d9abd1d
    bumped changelog version 42.3-1 Patrick Schleizer 2025-01-10 15:34:21 +00:00
  • c17485baa1
    Merge remote-tracking branch 'github-kicksecure/master' Patrick Schleizer 2025-01-10 10:32:26 -05:00
  • e9ef3602dd
    Merge pull request #292 from raja-grewal/cpu_table Patrick Schleizer 2025-01-10 10:30:34 -05:00
  • 1b33e83529
    Merge pull request #291 from raja-grewal/drop_gratuitous_arp Patrick Schleizer 2025-01-10 10:29:30 -05:00
  • 486757bfae
    Merge pull request #290 from raja-grewal/arp_ignore Patrick Schleizer 2025-01-10 10:29:12 -05:00
  • 17ff249150
    Merge pull request #289 from raja-grewal/arp_filter Patrick Schleizer 2025-01-10 10:28:48 -05:00
  • 27d19ba568
    Merge pull request #288 from raja-grewal/shared_media Patrick Schleizer 2025-01-10 10:28:05 -05:00
  • 482960d056
    permission-hardener: move to new state folder /var/lib/permission-hardener-v2 without migration Patrick Schleizer 2025-01-10 10:21:12 -05:00
  • cf435a8fa8
    README.md: Note importance of microcode updates raja-grewal 2025-01-10 13:22:21 +11:00
  • 3a31cc99b3
    Merge remote-tracking branch 'ArrayBolt3/arraybolt3/usrmerge' Patrick Schleizer 2025-01-09 09:30:58 -05:00
  • 538b312349
    Add comment about microcode updates raja-grewal 2025-01-09 15:28:56 +11:00
  • 1f8eee4720
    Add missing sentence full stop raja-grewal 2025-01-08 18:36:00 +11:00
  • 5e3785d76e
    README.md: Remove double space raja-grewal 2025-01-08 18:35:52 +11:00
  • 5941195e96
    Don't worry about files under /bin anymore, Bookworm uses a merged /usr directory Aaron Rainbolt 2025-01-07 14:10:46 -06:00
  • c4cfb8597d
    Merge remote-tracking branch 'ArrayBolt3/arraybolt3/permission-hardener-refactor' Patrick Schleizer 2025-01-06 08:43:54 -05:00
  • c6be621968
    bumped changelog version 42.2-1 Patrick Schleizer 2025-01-06 10:31:40 +00:00