aboutsummaryrefslogtreecommitdiffstats
Commit message (Collapse)AuthorAge
* blacklist sockets in /runLibravatar netblue302015-09-27
|
* seccomp errno testingLibravatar netblue302015-09-27
|
* seccomp errno: man page and usageLibravatar netblue302015-09-27
|
* seccomp.errno manpage exampleLibravatar netblue302015-09-26
|
* seccomp testingLibravatar netblue302015-09-26
|
* ./configure --enable-fatal-warningsLibravatar netblue302015-09-26
|
* seccomp errno - compile on Debian wheezyLibravatar netblue302015-09-26
|
* Merge pull request #66 from wader/seccomp-errnoLibravatar netblue302015-09-26
|\ | | | | Add seccomp errno filter support
| * Add seccomp errno filter supportLibravatar Matias Wadman2015-09-23
| |
* | disabled Wine and VirtualBox in default profilesLibravatar netblue302015-09-24
| |
* | fixesLibravatar netblue302015-09-24
| |
* | security profile workLibravatar netblue302015-09-24
|/
* profile workLibravatar netblue302015-09-22
|
* added --interface optionLibravatar netblue302015-09-22
|
* fixed macvlan problemLibravatar netblue302015-09-18
|
* fix for issue #64Libravatar netblue302015-09-16
|
* Default profiles workLibravatar netblue302015-09-16
|
* release 0.9.300.9.30Libravatar netblue302015-09-14
|
* coverity scanLibravatar netblue302015-09-11
|
* make install, make install-stripLibravatar netblue302015-09-11
|
* Merge pull request #60 from pstn/masterLibravatar netblue302015-09-11
|\ | | | | added install-strip, make install now without strip.
| * added install-strip, make install now without strip.Libravatar Philipp Steinpass2015-09-10
| |
* | 0.9.30-rc2 development startLibravatar netblue302015-09-10
| |
* | 0.9.30-rc10.9.30-rc1Libravatar netblue302015-09-10
|/
* implemented --whitelist optionLibravatar netblue302015-09-07
|
* Merge pull request #55 from sarneaud/globbingLibravatar netblue302015-09-05
|\ | | | | Stop blacklisting from traversing . and .. after a glob
| * Stop blacklisting from traversing . and .. after a globLibravatar sarneaud2015-09-04
| |
* | cleanup and small fixesLibravatar netblue302015-09-05
|/
* testing, admin workLibravatar netblue302015-09-01
|
* Merge pull request #53 from sarneaud/noblacklistLibravatar netblue302015-09-01
|\ | | | | Noblacklist
| * Add noblacklist command to firejail.Libravatar sarneaud2015-09-01
| | | | | | | | | | | | * Basic implementation * Updates to standard profiles * Update to firejail-profile manpage
| * Update profiles to use the new noblacklist command.Libravatar sarneaud2015-09-01
| |
| * Simple implementation of noblacklist command.Libravatar sarneaud2015-09-01
| |
* | Merge pull request #51 from sarneaud/gitignoreLibravatar netblue302015-09-01
|\ \ | | | | | | Add tags file and vim temporary files to .gitignore
| * | Add tags file and vim temporary files to .gitignoreLibravatar sarneaud2015-09-01
| | |
* | | Merge pull request #52 from sarneaud/strncmpLibravatar netblue302015-09-01
|\ \ \ | | |/ | |/| Clean up some fragile uses of strncmp.
| * | Clean up some fragile uses of strncmp.Libravatar sarneaud2015-09-01
| |/ | | | | | | | | | | | | In some places the code compares the first n characters of a string and then assumes a valid string starts from the n+2th character. I didn't find any places where this wasn't justifiable, but I think it's better to stick to safer patterns, especially in SUID code.
* / cleanupLibravatar netblue302015-09-01
|/
* using /etc/firejail/server.profile as default profile if the sandbox is ↵Libravatar netblue302015-08-31
| | | | started by root
* admin workLibravatar netblue302015-08-30
|
* Merge pull request #48 from sarneaud/globLibravatar netblue302015-08-30
|\ | | | | Rewrite globbing code to fix various minor issues
| * Rewrite globbing code to fix various minor issuesLibravatar sarneaud2015-08-29
| | | | | | | | | | | | | | | | | | | | | | | | | | * Plug a memory leak. * Remove the short-circuit. (This breaks when someone uses [] or ? patterns without using *. I figure it's best to use the principle of least surprise and just let the system glob() implementation do what it does.) * Stop sorting results. I've also replaced a lot of disable-history.inc with a glob pattern. Now it catches files like .sqlite_history and whatever the user runs under rlwrap.
* | fixing manpagesLibravatar netblue302015-08-30
|/
* more fixes for blacklist on Arch systemsLibravatar netblue302015-08-28
|
* don't blacklist directory links, print a warningLibravatar netblue302015-08-28
|
* fix firejail-in-firejail againLibravatar netblue302015-08-28
|
* cleanup unfinished featuresLibravatar netblue302015-08-28
|
* testing default.profileLibravatar netblue302015-08-28
|
* fixed thunderbird profile to allow a browser to startLibravatar netblue302015-08-28
|
* firejail-in-firejail fixesLibravatar netblue302015-08-28
|