Commit graph

  • 55225aa30e
    description Patrick Schleizer 2019-12-07 07:16:07 -05:00
  • 34a2bc16c8
    description Patrick Schleizer 2019-12-07 07:15:58 -05:00
  • d823f06c78
    description Patrick Schleizer 2019-12-07 07:13:42 -05:00
  • 9ba84f34c6
    comment Patrick Schleizer 2019-12-07 06:51:59 -05:00
  • dc1dfc8c20
    output Patrick Schleizer 2019-12-07 06:51:16 -05:00
  • 8636d2f629
    add securetty Patrick Schleizer 2019-12-07 06:51:10 -05:00
  • 532a1525c2
    comment Patrick Schleizer 2019-12-07 06:26:55 -05:00
  • 14aa6c5077
    comment Patrick Schleizer 2019-12-07 06:26:23 -05:00
  • 8b3f5a555b
    add console lockdown to pam info output Patrick Schleizer 2019-12-07 06:25:45 -05:00
  • 021b06dac9
    add hvc0 to hvc9 Patrick Schleizer 2019-12-07 06:04:45 -05:00
  • 8a59662a44
    comment Patrick Schleizer 2019-12-07 06:02:45 -05:00
  • 090ddbe96a
    description Patrick Schleizer 2019-12-07 06:00:41 -05:00
  • cda6724755
    add pts/0 to pts/9 Patrick Schleizer 2019-12-07 05:56:57 -05:00
  • 218cbddba9
    comment Patrick Schleizer 2019-12-07 05:52:06 -05:00
  • 6479c883bf
    Console Lockdown. Patrick Schleizer 2019-12-07 05:40:20 -05:00
  • 52934c9288
    bumped changelog version 10.6-1 Patrick Schleizer 2019-12-07 02:02:32 -05:00
  • 6faa977cd7
    readme Patrick Schleizer 2019-12-07 02:02:06 -05:00
  • 6d92d03b31
    description Patrick Schleizer 2019-12-07 01:54:50 -05:00
  • 5a4eda0d05
    also support /usr/local/etc/remount-disable and /usr/local/etc/noexec Patrick Schleizer 2019-12-07 01:53:33 -05:00
  • 0afcc5e798
    bumped changelog version 10.5-1 Patrick Schleizer 2019-12-06 12:43:21 -05:00
  • 2954dcbccf
    minor Patrick Schleizer 2019-12-06 12:24:55 -05:00
  • f3647e7478
    RemainAfterExit=yes Patrick Schleizer 2019-12-06 12:18:18 -05:00
  • af0cf058e7
    bumped changelog version 10.4-1 Patrick Schleizer 2019-12-06 11:18:20 -05:00
  • 9b14f24d5e
    refactoring Patrick Schleizer 2019-12-06 11:17:32 -05:00
  • a6133f5912
    output Patrick Schleizer 2019-12-06 11:16:43 -05:00
  • c1ea35e2ef
    output Patrick Schleizer 2019-12-06 11:15:54 -05:00
  • 4bec41379d
    fix remount with noexec if /etc/noexec exists Patrick Schleizer 2019-12-06 11:15:13 -05:00
  • bff425fec2
    bumped changelog version 10.3-1 Patrick Schleizer 2019-12-06 09:32:18 -05:00
  • b22289f2a8
    readme Patrick Schleizer 2019-12-06 09:30:05 -05:00
  • 470cad6e91
    remount /home /tmp /dev/shm /run with nosuid,nodev (default) and noexec (opt-in) Patrick Schleizer 2019-12-06 05:14:02 -05:00
  • 8cf5ed990a
    comment Patrick Schleizer 2019-12-05 15:52:24 -05:00
  • 19add3299c
    Merge remote-tracking branch 'origin/master' Patrick Schleizer 2019-12-05 15:46:19 -05:00
  • 9679292878
    Merge pull request #39 from madaidan/rp_filter Patrick Schleizer 2019-12-05 20:33:47 +00:00
  • af9e19c51f
    Update control madaidan 2019-12-05 20:14:55 +00:00
  • 30289c68c2
    Enable reverse path filtering madaidan 2019-12-05 20:13:10 +00:00
  • 0c25a96b59
    description / comments Patrick Schleizer 2019-12-03 02:18:32 -05:00
  • d26ba05c47
    Merge remote-tracking branch 'origin/master' Patrick Schleizer 2019-12-03 01:52:04 -05:00
  • 73c6410a0e
    Merge pull request #38 from madaidan/distrust-cpu Patrick Schleizer 2019-12-03 06:51:31 +00:00
  • 8d63da3cef
    Update control madaidan 2019-12-02 16:46:12 +00:00
  • 5da2a27bf0
    Distrust the CPU for initial entropy madaidan 2019-12-02 16:43:00 +00:00
  • 6ca48fffdc
    bumped changelog version 10.2-1 Patrick Schleizer 2019-11-28 10:22:41 -05:00
  • ab696f5571
    readme Patrick Schleizer 2019-11-28 10:05:39 -05:00
  • 25aed91eb1
    description Patrick Schleizer 2019-11-28 09:20:46 -05:00
  • 0c4e5df3e0
    description Patrick Schleizer 2019-11-28 09:18:05 -05:00
  • 5ac2a6f9ac
    description Patrick Schleizer 2019-11-28 09:17:32 -05:00
  • ff3412fbe0
    fix, make sure to undo pam changes on package removal Patrick Schleizer 2019-11-27 10:22:31 -05:00
  • 62b924eea7
    Merge remote-tracking branch 'origin/master' Patrick Schleizer 2019-11-26 13:00:36 -05:00
  • ba02dcb267
    Merge pull request #37 from madaidan/apparmor-fixes Patrick Schleizer 2019-11-26 18:00:11 +00:00
  • d9d6d07714
    /dev/pts/[0-9]* rw, madaidan 2019-11-26 17:12:12 +00:00
  • 9091f69edd
    bumped changelog version 10.1-1 Patrick Schleizer 2019-11-25 08:51:36 +00:00
  • 57ce06c0eb
    readme Patrick Schleizer 2019-11-25 08:41:45 +00:00
  • aa5451c8cd
    Lock user accounts after 50 rather than 100 failed login attempts. Patrick Schleizer 2019-11-25 01:39:53 -05:00
  • 6277db1383
    bumped changelog version 9.12-1 Patrick Schleizer 2019-11-23 14:07:45 +00:00
  • 6a6a638ef0
    readme Patrick Schleizer 2019-11-23 14:06:28 +00:00
  • fe1f1b73a7
    load jitterentropy_rng kernel module for better entropy collection Patrick Schleizer 2019-11-23 11:20:32 +00:00
  • d32024a3da
    /usr/sbin/pam_tally2 mrix, Patrick Schleizer 2019-11-23 05:53:19 -05:00
  • 03e8023847
    output Patrick Schleizer 2019-11-22 14:11:30 -05:00
  • e76e1475b0
    comment Patrick Schleizer 2019-11-22 12:24:35 -05:00
  • a99dfd067a
    bumped changelog version 9.11-1 Patrick Schleizer 2019-11-19 15:31:55 +00:00
  • 81e4f580af
    etc/apparmor.d/usr.lib.security-misc.permission-lockdown: /usr/bin/chmod mrix, Patrick Schleizer 2019-11-19 15:29:02 +00:00
  • 8ad8dbea5a
    bumped changelog version 9.10-1 Patrick Schleizer 2019-11-18 19:16:16 +00:00
  • 9a20b85fe1
    Merge remote-tracking branch 'origin/master' Patrick Schleizer 2019-11-17 11:20:17 -05:00
  • 2b17c0f3e4
    Merge pull request #36 from madaidan/hidepid-fix Patrick Schleizer 2019-11-17 16:19:55 +00:00
  • e92022a21c
    Remove systemd sandboxing madaidan 2019-11-16 14:56:28 +00:00
  • 477d476bb1
    etc/apparmor.d/usr.lib.security-misc.pam_tally2-info: add '#include <abstractions/base>' Patrick Schleizer 2019-11-10 08:29:44 -05:00
  • 11dc23bf08
    etc/apparmor.d/usr.lib.security-misc.permission-lockdown: add '#include <abstractions/base>' Patrick Schleizer 2019-11-10 08:28:32 -05:00
  • d1d61b106b
    bumped changelog version 9.9-1 Patrick Schleizer 2019-11-09 18:44:50 +00:00
  • 9f2932faab
    /usr/bin/id rix, Patrick Schleizer 2019-11-09 13:32:21 -05:00
  • 6b7df973f6
    bumped changelog version 9.8-1 Patrick Schleizer 2019-11-09 12:57:45 +00:00
  • 2e73c053b5
    fix lintian warning Patrick Schleizer 2019-11-09 12:55:00 +00:00
  • 6e28774f95
    bumped changelog version 9.7-1 Patrick Schleizer 2019-11-09 12:23:15 +00:00
  • 94d40c68d4
    do not set kernel boot parameter page_poison=1 in Qubes since does not work Patrick Schleizer 2019-11-05 10:02:55 -05:00
  • f57702c158
    comments; copyright Patrick Schleizer 2019-11-05 09:55:43 -05:00
  • 74293bcd2f
    output Patrick Schleizer 2019-11-05 01:59:25 -05:00
  • 2b5b06b602
    output Patrick Schleizer 2019-11-05 01:59:19 -05:00
  • d6977becba
    refactoring Patrick Schleizer 2019-11-05 01:51:14 -05:00
  • daf0006795
    comment Patrick Schleizer 2019-11-05 01:50:27 -05:00
  • 78defc4d0b
    add /var/cache/security-misc/state-files/placeholder file Patrick Schleizer 2019-11-03 04:34:31 -05:00
  • 7c0ec7e507
    readme Patrick Schleizer 2019-11-03 04:23:40 -05:00
  • b55c2fd62e
    Enables punycode (network.IDN_show_punycode) by default in Thunderbird to make phising attacks more difficult. Fixing URL not showing real Domain Name (Homograph attack). Patrick Schleizer 2019-11-03 02:50:51 -05:00
  • bf62306d4f
    bumped changelog version 9.6-1 Patrick Schleizer 2019-10-31 16:34:35 +00:00
  • e1375802eb
    apparmor fix Patrick Schleizer 2019-10-31 16:32:28 +00:00
  • 6e5d8b357d
    bumped changelog version 9.5-1 Patrick Schleizer 2019-10-31 16:06:51 +00:00
  • 203d5cfa68
    copyright Patrick Schleizer 2019-10-31 11:19:44 -04:00
  • f001250ae6
    Merge remote-tracking branch 'origin/master' Patrick Schleizer 2019-10-28 10:31:30 -04:00
  • 5a3cbe8100
    Merge pull request #35 from madaidan/apparmor Patrick Schleizer 2019-10-28 14:30:45 +00:00
  • 0e49bdc45f
    Licensing madaidan 2019-10-28 14:26:14 +00:00
  • 5d5ad92638
    Licensing madaidan 2019-10-28 14:26:05 +00:00
  • 0699747fcb
    Debian packaging madaidan 2019-10-28 14:24:37 +00:00
  • fe4e29d392
    Depend on dh-apparmor madaidan 2019-10-28 14:22:47 +00:00
  • 1b8b3610b1
    Create usr.lib.security-misc.pam_tally2-info madaidan 2019-10-28 14:20:59 +00:00
  • 29b05546e4
    Create usr.lib.security-misc.permission-lockdown madaidan 2019-10-28 14:20:08 +00:00
  • d832ab91bd
    bumped changelog version 9.4-1 Patrick Schleizer 2019-10-23 10:22:03 +00:00
  • bce5274a15
    quotes fix Patrick Schleizer 2019-10-22 09:22:29 -04:00
  • e20b9e2133
    better solution when using pkexec with --user: wrap sudo --user with lxqt-sudo Patrick Schleizer 2019-10-22 09:08:18 -04:00
  • d4e02de43a
    set SUDO_ASKPASS for pkexec wrapper when using sudo --askpass Patrick Schleizer 2019-10-22 09:04:44 -04:00
  • 1a65a91039
    long rather than short option Patrick Schleizer 2019-10-22 08:56:05 -04:00
  • b55913637b
    silence output by mount/grep Patrick Schleizer 2019-10-22 08:54:48 -04:00
  • a1154170c9
    Call original pkexec in case there are no arguments. Patrick Schleizer 2019-10-22 08:54:17 -04:00
  • 9c8f678cb9
    bumped changelog version 9.3-1 Patrick Schleizer 2019-10-21 09:55:41 +00:00