Commit message (Collapse) | Author | Age | ||
---|---|---|---|---|
... | ||||
* | | Merge pull request #2392 from glitsj16/netlink | 2019-02-08 | ||
|\ \ | | | | | | | Add netlink to QMediathekView | |||
| * | | Add netlink to QMediathekView | 2019-02-08 | ||
|/ / | ||||
* | | small changes | 2019-02-07 | ||
| | | | | | | | | | | | | - merges - klavaro nitpick - vscodium alias for code, from ParrotSec downstream fork | |||
* | | move more copyright statements to 2019 | 2019-02-07 | ||
| | | ||||
* | | move copyright statement to 2019 | 2019-02-07 | ||
| | | ||||
* | | Merge pull request #2391 from rusty-snake/add_klavaro-profile | 2019-02-06 | ||
|\ \ | | | | | | | Add a profile for klavaro | |||
| * | | Review klavaro.profile | 2019-02-06 | ||
| | | | ||||
| * | | Add a profile for klavaro | 2019-02-06 | ||
| | | | ||||
* | | | Merge branch 'master' of https://github.com/netblue30/firejail | 2019-02-06 | ||
|\| | | ||||
| * | | fix small memleak | 2019-02-05 | ||
| | | | ||||
| * | | variable only used when whitelisting enabled | 2019-02-05 | ||
| | | | ||||
| * | | cnt only used for debugging | 2019-02-05 | ||
| | | | ||||
| * | | move usage check to single place | 2019-02-05 | ||
| | | | ||||
| * | | use correct struct member for offset | 2019-02-05 | ||
| | | | | | | | | | | | | Fixes: #2381 | |||
| * | | simplify yes/no option parsing | 2019-02-05 | ||
| | | | ||||
| * | | profiles: grant zoom access to its configuration | 2019-02-05 | ||
| | | | | | | | | | | | | https://bugs.debian.org/921454 | |||
| * | | Merge pull request #2390 from glitsj16/apparmor | 2019-02-05 | ||
| |\ \ | | | | | | | | | Retain local apparmor customizations | |||
| | * | | Update firejail-local | 2019-02-05 | ||
| | | | | ||||
| | * | | Stress apparmor local overrides | 2019-02-05 | ||
| | | | | | | | | | | | | As per discussion on https://github.com/netblue30/firejail/pull/2390, we better use slightly stronger/less optional wording when it comes to where local apparmor overrides need to be done. | |||
| | * | | Retain local apparmor customizations | 2019-02-05 | ||
| |/ / | | | | | | | This fixes https://github.com/netblue30/firejail/issues/2388. | |||
* / / | strncmp byte count fixes | 2019-02-06 | ||
|/ / | ||||
* | | firejail.config fixes | 2019-02-04 | ||
| | | | | | | | | always print a warning, treat join-or-start like join | |||
* | | Add '$HOME/.local/share/pki' to blacklist | 2019-02-03 | ||
| | | | | | | | | | | Since nss 3.42, '$HOME/.local/share/pki' is supported dir for storing certs https://hg.mozilla.org/projects/nss/rev/da45424cb9a0b4d8e45e5040e2e3b574d994e254 | |||
* | | relnotes | 2019-02-02 | ||
| | | ||||
* | | remove noexec home from chromium-based browsers | 2019-02-02 | ||
| | | ||||
* | | Merge pull request #2386 from SkewedZeppelin/noexecpf | 2019-02-02 | ||
|\ \ | | | | | | | Temporary fix for noexec ${HOME} breakage | |||
| * | | Temporary fix for noexec ${HOME} breakage | 2019-02-02 | ||
|/ / | ||||
* | | Add a missing path to vivaldi profile, partial fix for #2383 | 2019-02-01 | ||
| | | ||||
* | | Merge pull request #2384 from carloabelli/mpris | 2019-02-01 | ||
|\ \ | | | | | | | remove nodbus from MPRIS client profiles | |||
| * | | remove nodbus from MPRIS client profiles | 2019-02-01 | ||
| | | | | | | | | | | | | | | | | | | | | | MPRIS is a D-Bus interface for controlling media players. The nodbus option prevents these players from being controlled through MPRIS. It seems that most of the other media players did not have the nodbus option or it was already commented out. | |||
* | | | --name rework | 2019-02-01 | ||
|/ / | ||||
* | | Merge pull request #2372 from rusty-snake/additional-blacklisting | 2019-01-30 | ||
|\ \ | | | | | | | additional blacklisting | |||
| * | | Update some IDE profiles | 2019-01-29 | ||
| | | | ||||
| * | | Update wget.profile | 2019-01-27 | ||
| | | | ||||
| * | | additional blacklisting | 2019-01-27 | ||
| | | | ||||
* | | | pybitmessage.profile: remove memory-deny-write-execute | 2019-01-30 | ||
| | | | | | | | | | On some systems it causes app to crash on startup, see https://github.com/netblue30/firejail/issues/2379 | |||
* | | | alphabetize | 2019-01-30 | ||
| | | | ||||
* | | | misc profile hardening (xdg blacklist, private-cache, netfilter) | 2019-01-30 | ||
| | | | ||||
* | | | Fixup qtox profile, closes #2374 | 2019-01-28 | ||
| | | | ||||
* | | | Fixup cliqz profile, closes #2377 | 2019-01-28 | ||
| | | | ||||
* | | | Fix parsing of cgroup option in config | 2019-01-27 | ||
| | | | ||||
* | | | enable/disable cgroup in firejail.config | 2019-01-27 | ||
| | | | ||||
* | | | Merge pull request #2373 from rusty-snake/fix_gnome-maps | 2019-01-27 | ||
|\ \ \ | | | | | | | | | Fix gnome-maps | |||
| * | | | Fix gnome-maps | 2019-01-27 | ||
| |/ / | ||||
* | | | Allow processes confined with AppArmor to obtain some process information | 2019-01-27 | ||
| | | | | | | | | | | | | | | | | | | | | | | | | 'firejail --apparmor chromium' logged a huge amount of apparmor denials, because it wants to use read/readby permissions. Allow those accesses, but keep full tracing disabled by default. See also: https://bugs.debian.org/912587 and apparmor.d(5) | |||
* | | | moving to 0.9.59 | 2019-01-27 | ||
|/ / | ||||
* | | Merge branch 'master' of http://github.com/netblue30/firejail0.9.58 | 2019-01-26 | ||
|\ \ | ||||
| * | | Add deb-apparmor build to Gitlab CI | 2019-01-26 | ||
| | | | ||||
| * | | Switch ubuntu:latest to ubuntu:rolling for Gitlab CI | 2019-01-26 | ||
| | | | | | | | | | | | | | | | | | | | | | Ubuntu:rolling is the latest Ubuntu release (LTS and/or non-LTS). Since debian:latest already provides a reasonable base for testing firejail builds on older Debian-based systems, use ubuntu:rolling to test on relatively new systems. | |||
* | | | fix seccomp-run-files.exp | 2019-01-26 | ||
|/ / |