Commit message (Collapse) | Author | Age | ||
---|---|---|---|---|
... | ||||
* | add switch to disable/enable private-cache | smitsohu | 2018-09-10 | |
| | ||||
* | small rlimits adjustment | smitsohu | 2018-09-10 | |
| | ||||
* | remove seccomp warning | netblue30 | 2018-09-09 | |
| | ||||
* | Merge branch 'master' of http://github.com/netblue30/firejail | netblue30 | 2018-09-09 | |
|\ | ||||
| * | set rlimits at later timepoint during sandbox setup | smitsohu | 2018-09-09 | |
| | | ||||
* | | support for firetunnel utility | netblue30 | 2018-09-09 | |
|/ | ||||
* | remove blacklist /usr/lib/llvm* in dusable-devel.inc - problems with ↵ | netblue30 | 2018-09-07 | |
| | | | | hardware acceleration on Radeon cards, see issue #2106 | |||
* | Disable tracelog in Tor Browser profiles, see #1930, fixes #2108 | Tad | 2018-09-06 | |
| | ||||
* | disallow overriding of global rlimits, tiny improvements | smitsohu | 2018-09-06 | |
| | ||||
* | cleanup | netblue30 | 2018-09-05 | |
| | ||||
* | improve safe_fd() function for better readability and auditability | smitsohu | 2018-09-05 | |
| | ||||
* | fix --shell | netblue30 | 2018-09-03 | |
| | ||||
* | adding fluxbox, blackbox, awesome, i3 profiles | netblue30 | 2018-09-03 | |
| | ||||
* | minor cleanup | netblue30 | 2018-09-03 | |
| | ||||
* | merges | netblue30 | 2018-09-03 | |
| | ||||
* | Merge pull request #2104 from matu3ba/profiles | netblue30 | 2018-09-03 | |
|\ | | | | | hardening evince, dbus not needed | |||
| * | hardening evince, dbus not needed | janph | 2018-09-01 | |
| | | ||||
* | | chroot problem (Debian) | netblue30 | 2018-09-03 | |
| | | ||||
* | | Merges | Tad | 2018-09-03 | |
| | | ||||
* | | created jdownloader profile (#2105) | veloute | 2018-09-03 | |
| | | | | | | | | | | | | | | | | * created jdownloader profile * fixed some issues * few more changes | |||
* | | additional restrictions for write-permissions on chroot | smitsohu | 2018-09-02 | |
| | | ||||
* | | chroot problem: default profile not configured by default | netblue30 | 2018-09-01 | |
|/ | ||||
* | --chroot fixes (Debian problem) | netblue30 | 2018-09-01 | |
| | ||||
* | error strings | smitsohu | 2018-09-01 | |
| | ||||
* | consolidate and enhance checks run on chroot directory hierarchy (patch n/n) | smitsohu | 2018-09-01 | |
| | ||||
* | reduce number of chown/chmod calls in fs_chroot | smitsohu | 2018-08-31 | |
| | ||||
* | added whois and dig profiles | startx2017 | 2018-08-30 | |
| | ||||
* | little tweak | smitsohu | 2018-08-30 | |
| | ||||
* | reject chroot if it is world-writable, related enhancements | smitsohu | 2018-08-30 | |
| | ||||
* | more silencing of /sys umount warnings | smitsohu | 2018-08-29 | |
| | ||||
* | cleanup | netblue30 | 2018-08-29 | |
| | ||||
* | apparmor: cleanup /home path | Vincent43 | 2018-08-29 | |
| | ||||
* | cleanup | netblue30 | 2018-08-29 | |
| | ||||
* | silence warning about failed unmounting of /sys (overlay options) | smitsohu | 2018-08-29 | |
| | ||||
* | cleanup | netblue30 | 2018-08-28 | |
| | ||||
* | Revert "improve --chroot directory check" | smitsohu | 2018-08-28 | |
| | | | | | | this was unnecessary This reverts commit 0c2cbf05aa9553fbf5c90fb69928f2b276fead8b. | |||
* | improve --chroot directory check | smitsohu | 2018-08-28 | |
| | ||||
* | fix private-tmp and private-dev in fbuilder | netblue30 | 2018-08-28 | |
| | ||||
* | Merge branch 'master' of http://github.com/netblue30/firejail | netblue30 | 2018-08-28 | |
|\ | ||||
| * | spotify.profile: allow /etc/hosts | Vincent43 | 2018-08-28 | |
| | | ||||
| * | Merge branch 'master' of https://github.com/netblue30/firejail | smitsohu | 2018-08-28 | |
| |\ | ||||
| * | | fix and harden overlay options | smitsohu | 2018-08-28 | |
| | | | ||||
* | | | fbuider cleanup | netblue30 | 2018-08-28 | |
| |/ |/| | ||||
* | | memory leaks | netblue30 | 2018-08-28 | |
| | | ||||
* | | apparmor: disable exec from home by default | Vincent43 | 2018-08-27 | |
| | | | | | | Executing from /home was supposed to be disabled by default | |||
* | | apparmor: improve rules for filesystem access | Vincent43 | 2018-08-27 | |
|/ | | | | | * Make clear distinction for read, write and execute. * Don't allow write and execute at the same time. * Simplify and improve syntax to catch more exceptions with fewer rules | |||
* | Add private-bin to 0ad | Fred-Barclay | 2018-08-26 | |
| | ||||
* | allow system users to run the sandbox | netblue30 | 2018-08-26 | |
| | ||||
* | support for local user directories in firecfg (--bindir) | netblue30 | 2018-08-25 | |
| | ||||
* | cleanup, small improvements | smitsohu | 2018-08-25 | |
| |