Commit Graph

  • d2563ed923
    bumped changelog version 38.3-1 Patrick Schleizer 2024-07-21 10:40:14 +0000
  • 64f8b2eb58
    Revert "no longer disable Intel ME related kernel modules" Patrick Schleizer 2024-07-21 06:36:22 -0400
  • 4cae74d610
    Update 30_security-misc.conf monsieuremre 2024-07-21 11:19:32 +0200
  • 04fb00572f
    bumped changelog version 38.2-1 Patrick Schleizer 2024-07-20 17:02:05 +0000
  • f0a478c7c9
    permission hardener: allow postfix Patrick Schleizer 2024-07-20 12:57:56 -0400
  • a189956adc
    Typo Raja Grewal 2024-07-20 20:11:09 +1000
  • 3c720a0715
    Disable some legacy drivers These were all previously blacklisted for over 2 years. Raja Grewal 2024-07-20 15:03:21 +1000
  • c4965ed838
    Disable legacy framebuffer drivers These were all previously blacklisted for over 2 years. Raja Grewal 2024-07-20 14:55:10 +1000
  • 9f53a0182b
    undo io_uring related changes Patrick Schleizer 2024-07-19 07:20:59 -0400
  • 8791aecb38
    Merge remote-tracking branch 'raja/fixes' Patrick Schleizer 2024-07-19 07:19:09 -0400
  • 06894d1c98
    Typo Raja Grewal 2024-07-19 18:30:42 +1000
  • 2d11436432
    bumped changelog version 38.1-1 Patrick Schleizer 2024-07-18 18:05:07 +0000
  • cac5bbad99
    comment Patrick Schleizer 2024-07-18 14:04:00 -0400
  • a5eed00eba
    cleanup comments Patrick Schleizer 2024-07-18 14:02:38 -0400
  • 21efacf1b1
    cleanup duplicate comments which are already in /etc/dkms/framework.conf Patrick Schleizer 2024-07-18 14:00:28 -0400
  • 61628c2baf
    bumped changelog version 38.0-1 Patrick Schleizer 2024-07-18 14:11:35 +0000
  • 05cf438199
    no comments / copyright allowed in .displace-extension Patrick Schleizer 2024-07-18 10:11:03 -0400
  • 2ccc95f6d4
    bumped changelog version 37.9-1 Patrick Schleizer 2024-07-18 14:05:23 +0000
  • 95286df502
    Update README.md regarding secure ICMP redirects Raja Grewal 2024-07-18 15:28:31 +1000
  • 13cc1f0986
    Clarify (future) disabling of io_uring Raja Grewal 2024-07-18 12:25:00 +1000
  • 9e6facda70
    Update module disabling presentation Raja Grewal 2024-07-18 12:21:37 +1000
  • faa9181a6c
    Typos Raja Grewal 2024-07-18 12:19:27 +1000
  • 6d211faf59
    Restrict unprivileged user namespaces Raja Grewal 2024-07-18 11:04:54 +1000
  • b04828f858
    Disable the usage of ptrace() by all processes Raja Grewal 2024-07-18 11:01:41 +1000
  • d454f36c63
    spelling Patrick Schleizer 2024-07-17 11:52:29 -0400
  • f4da582aa3
    spelling Patrick Schleizer 2024-07-17 11:44:17 -0400
  • 9e976474d5
    spelling Patrick Schleizer 2024-07-17 11:40:51 -0400
  • b569fc02a4
    spelling Patrick Schleizer 2024-07-17 11:38:53 -0400
  • a2e26f441b
    spelling Patrick Schleizer 2024-07-17 11:04:03 -0400
  • c8be4ac83c
    comment Patrick Schleizer 2024-07-17 10:56:14 -0400
  • 24cd70a014
    spelling Patrick Schleizer 2024-07-17 10:55:12 -0400
  • 5cec685cf9
    spelling Patrick Schleizer 2024-07-17 10:49:21 -0400
  • 821a416fe3
    spelling Patrick Schleizer 2024-07-17 10:43:16 -0400
  • 9a387f95e9
    Merge remote-tracking branch 'raja/miscellaneous' Patrick Schleizer 2024-07-17 10:32:26 -0400
  • fd41acdc72
    Merge remote-tracking branch 'raja/fack_off' Patrick Schleizer 2024-07-17 10:27:31 -0400
  • 4afe257a42
    minor Raja Grewal 2024-07-18 00:14:13 +1000
  • d0a59617f6
    Add missing Copyright (C) statements Raja Grewal 2024-07-18 00:13:30 +1000
  • 8f3896c3da
    Upgrade hyperlinks to HTTPS Raja Grewal 2024-07-17 23:44:37 +1000
  • 1087387b36
    Remove obsolete #net.ipv4.tcp_fack=0 Raja Grewal 2024-07-17 23:35:25 +1000
  • 0da22c2031
    minor Patrick Schleizer 2024-07-17 09:07:31 -0400
  • c336b266f6
    Merge remote-tracking branch 'github-kicksecure/master' Patrick Schleizer 2024-07-17 09:06:44 -0400
  • df80385289
    Merge pull request #237 from raja-grewal/intel_pmt Patrick Schleizer 2024-07-17 09:04:18 -0400
  • afe3c25a49
    update readme Patrick Schleizer 2024-07-17 08:58:00 -0400
  • f7772fb85a
    minor Patrick Schleizer 2024-07-17 08:57:35 -0400
  • 6157e328f4
    no longer disable Intel ME related kernel modules Patrick Schleizer 2024-07-17 08:52:11 -0400
  • daee8b900b
    Merge remote-tracking branch 'github-kicksecure/master' Patrick Schleizer 2024-07-17 08:47:55 -0400
  • a4ba6e485d
    Merge pull request #236 from raja-grewal/intel_me Patrick Schleizer 2024-07-17 08:46:27 -0400
  • 954ff1be41
    Merge remote-tracking branch 'github-kicksecure/master' Patrick Schleizer 2024-07-17 08:42:52 -0400
  • 9a75135633
    Merge pull request #238 from raja-grewal/uvcvideo_2 Patrick Schleizer 2024-07-17 08:41:43 -0400
  • d29a616142
    minor Patrick Schleizer 2024-07-17 08:39:20 -0400
  • a2802f352f
    Merge remote-tracking branch 'raja/kargs' Patrick Schleizer 2024-07-17 08:38:23 -0400
  • 0b873b765e
    minor Patrick Schleizer 2024-07-17 08:05:27 -0400
  • 070bb46a08
    Merge remote-tracking branch 'raja/sysctl' Patrick Schleizer 2024-07-17 08:02:45 -0400
  • 6d6e5473f2
    minor Patrick Schleizer 2024-07-17 08:00:24 -0400
  • cf5f0edbb8
    Merge remote-tracking branch 'raja/sysctl' Patrick Schleizer 2024-07-17 07:59:35 -0400
  • 25fd532ce6
    Update README.md relating to sysctl's Raja Grewal 2024-07-17 21:56:40 +1000
  • 39fd125eb0
    Provide explanation on the disabling of IPv6 Privacy Extensions Raja Grewal 2024-07-17 21:44:44 +1000
  • a3408990ab
    Uncomment disabling of already disabled ATM modules Raja Grewal 2024-07-17 15:03:39 +1000
  • 693b47e623
    Clarify ICMP redirect acceptance and sending Raja Grewal 2024-07-17 14:58:30 +1000
  • 81a3715c7c
    Add info regarding the downsides of disabling SMT Raja Grewal 2024-07-17 13:32:08 +1000
  • abafb1945c
    Add Intel ME references Raja Grewal 2024-07-17 13:26:03 +1000
  • f317aaebab
    Disable two network modules These were previously blacklisted for two years in 61ef9bd59f. Raja Grewal 2024-07-17 01:09:02 +1000
  • d69fe88091
    Provide option to disable uvcvideo driver Raja Grewal 2024-07-17 01:08:01 +1000
  • 49594ccb22
    Partially revert f4d652fa7b Raja Grewal 2024-07-17 00:49:25 +1000
  • 824d9b82e5
    Uncomment redundant disabling of TCP FACK` Raja Grewal 2024-07-17 00:36:18 +1000
  • d1119c38b6
    Apply changes from code review Raja Grewal 2024-07-17 00:31:23 +1000
  • fe5c840b79
    bumped changelog version 37.8-1 Patrick Schleizer 2024-07-15 21:18:55 +0000
  • 6e63fc8985
    Merge remote-tracking branch 'ben-grande/fuzz' Patrick Schleizer 2024-07-15 17:14:25 -0400
  • fe0846c8c2
    fix Patrick Schleizer 2024-07-15 12:30:38 -0400
  • 94df2e3d24
    further discussion required Patrick Schleizer 2024-07-15 12:29:52 -0400
  • 41f0b53dd6
    Merge remote-tracking branch 'raja/kernel_modules' Patrick Schleizer 2024-07-15 12:28:03 -0400
  • 73f6d4b26f
    Fix transcription error Raja Grewal 2024-07-16 01:03:41 +1000
  • 724435e56e
    Disable some Intel Platform Monitoring Technology Telemetry (PMT) modules Raja Grewal 2024-07-15 22:38:43 +1000
  • 61941da375
    Create disabled-intelpmt-by-security-misc Raja Grewal 2024-07-15 22:38:09 +1000
  • 22ba7a7c39
    Disable more Intel Management Engine (ME) modules Raja Grewal 2024-07-15 22:21:20 +1000
  • 9300c208e2
    Fix script Raja Grewal 2024-07-15 21:36:25 +1000
  • f2db11269e
    Fix script Raja Grewal 2024-07-15 21:18:32 +1000
  • 382f1e9ec0
    Fix error Raja Grewal 2024-07-15 21:13:25 +1000
  • a8bc1144c3
    Updated wording of error files for disabled modules Raja Grewal 2024-07-15 21:10:13 +1000
  • fda3832eaf
    Replace bash file presented for disabling of miscellaneous modules Raja Grewal 2024-07-15 21:08:45 +1000
  • 8219a1e257
    Update README.md relating to disabled miscellaneous modules Raja Grewal 2024-07-15 21:02:10 +1000
  • cb2fb95b81
    Disable more miscellaneous drivers Raja Grewal 2024-07-15 21:01:36 +1000
  • c52b1a3fd2
    Create disabled-miscellaneous-by-security-misc Raja Grewal 2024-07-15 20:58:45 +1000
  • 96aa63267a
    Disable more Thunderbolt modules Raja Grewal 2024-07-15 20:57:14 +1000
  • 51f7776bc8
    Disable more network protocols/drivers Raja Grewal 2024-07-15 20:56:12 +1000
  • 9e40ff0551
    Disable more network file systems Raja Grewal 2024-07-15 20:54:18 +1000
  • 82c5a93f7c
    Disable another GPS module Raja Grewal 2024-07-15 20:53:07 +1000
  • 99b0ce7948
    Disable more file systems Raja Grewal 2024-07-15 20:47:56 +1000
  • 4476a477a7
    Provide option to disable more Bluetooth modules Raja Grewal 2024-07-15 20:47:07 +1000
  • e0696d02a2
    Update security-misc.maintscript Due to previous splitting IN b02230a783. Raja Grewal 2024-07-15 20:46:04 +1000
  • b2657bc61f
    Improve docs Raja Grewal 2024-07-15 15:05:00 +1000
  • 1c2afc1f25
    Update presentation of the kernel.printk sysctl Raja Grewal 2024-07-15 15:01:48 +1000
  • c8385d82fb
    Clarify instructions for increasing log verbosity Raja Grewal 2024-07-15 14:57:40 +1000
  • d229e8b04d
    Fix link Raja Grewal 2024-07-15 14:50:29 +1000
  • fbfdb0fa99
    Update security-misc.maintscript relating to grub Raja Grewal 2024-07-15 14:40:03 +1000
  • f4d652fa7b
    Update presentation of quiet loglevel=0 Raja Grewal 2024-07-15 14:39:12 +1000
  • 69c8e84927
    Fix typos Raja Grewal 2024-07-15 14:38:21 +1000
  • 48e1ac4163
    Remove the optional slub_debug parameter since it is no longer recommended Raja Grewal 2024-07-15 02:04:25 +1000
  • 99038c7a06
    Add option to disable support for x86 processes and syscalls in the future Raja Grewal 2024-07-15 02:02:01 +1000
  • f550fbe07c
    Add option to disable the entire IPv6 stack functionality Raja Grewal 2024-07-15 01:59:04 +1000