Commit message (Collapse) | Author | Age | |
---|---|---|---|
* | cleanup, small improvements | 2018-08-25 | |
| | |||
* | Add python program to more easily debug profiles | 2018-08-24 | |
| | | | | | Should help with issues like #1946 where the user needs to comment out all profile lines and then re-enable them individually to test | ||
* | Fixup obs.profile (no python) | 2018-08-23 | |
| | |||
* | Merges | 2018-08-23 | |
| | |||
* | Create pybitmessage.profile (#2092) | 2018-08-23 | |
| | | | tested on fedora-28 with pybitmessage 0.6.3.2 | ||
* | Merge pull request #2094 from 1dnrr/patch-3 | 2018-08-23 | |
|\ | | | | | Update disable-common.inc | ||
| * | Update disable-common.inc | 2018-08-23 | |
|/ | |||
* | Misc fixes | 2018-08-22 | |
| | |||
* | fix microphone in slack profile - #2034 | 2018-08-23 | |
| | |||
* | removed --disable-bind configuration option; some ohter minor cleanup | 2018-08-22 | |
| | |||
* | relax restrictions imposed on filesystem log (fslogger) in ↵ | 2018-08-22 | |
| | | | | ec7f59b8d370c29bd229fa9124640611c0667159 | ||
* | close private-cache memleak | 2018-08-22 | |
| | |||
* | drop privs when permissions are changed in /run/user/$UID | 2018-08-22 | |
| | |||
* | Update steam.profile to support proton/steamplay | 2018-08-21 | |
| | |||
* | refactor, check the sandbox status for all join options | 2018-08-20 | |
| | |||
* | Document how to access local mail with thunderbird and claws-mail (fixes #1509) | 2018-08-20 | |
| | |||
* | Simplify fix for #2062 | 2018-08-20 | |
| | |||
* | fix check for find_child return value (bandwidth.c, netfilter.c) | 2018-08-20 | |
| | |||
* | Merge branch 'master' of https://github.com/netblue30/firejail | 2018-08-19 | |
|\ | |||
| * | Add a profile for ClamTK | 2018-08-19 | |
| | | |||
| * | Minor steam.profile fixup from downstream ParrotSec fork | 2018-08-19 | |
| | | |||
| * | Fixup f9aeac080a830fc1aaf07f0beff781a1ed7e42ad | 2018-08-19 | |
| | | |||
* | | check privileges for dns.print | 2018-08-19 | |
| | | |||
* | | fix also the second instance of pid_get_uid | 2018-08-19 | |
|/ | |||
* | fix pid_get_uid for the root user | 2018-08-19 | |
| | |||
* | qutebrowser.profile: noblacklist /usr/lib/llvm | 2018-08-19 | |
| | | | Fixes https://github.com/netblue30/firejail/issues/2087 | ||
* | Merge branch 'master' of https://github.com/netblue30/firejail | 2018-08-19 | |
|\ | |||
| * | Warn when /usr/local/bin/<program> already exists and is not a symlink ↵ | 2018-08-19 | |
| | | | | | | | | (fixes #667) | ||
| * | Revert "apparmor fix: somehow it cannot find the firejail profile to load it" | 2018-08-19 | |
| | | | | | | | | | | | | | | | | | | | | | | | | This reverts commit 949a221a1b92e422e6dcb7ea6089ed5c8d5cc22a. The 'firejail-default' is the name of 'unnatached' profile not path to it. Moreover names starting with '/' are changing profile type back to 'standard' which in this case means we literally create profile for the profile file itself '/etc/apparmor.d/firejail-default'. That means firejail would never load this profile to contain any app thus we have to revert this. For more info, see https://www.suse.com/documentation/sles-15/singlehtml/book_security/book_security.html#sec.apparmor.profiles.types.unattached | ||
* | | small enhancement to join.c (ready-for-join is always a regular file) | 2018-08-19 | |
|/ | |||
* | Fix for #2062 | 2018-08-19 | |
| | |||
* | fix failing travis build (make no assumptions about C standard) | 2018-08-19 | |
| | | | | plus function rename | ||
* | man: fix example for --build command | 2018-08-19 | |
| | |||
* | Merge branch 'master' of http://github.com/netblue30/firejail | 2018-08-19 | |
|\ | |||
| * | fix issue with join option | 2018-08-19 | |
| | | |||
* | | apparmor fix: somehow it cannot find the firejail profile to load it | 2018-08-19 | |
| | | |||
* | | minor cleanup | 2018-08-19 | |
|/ | |||
* | tests: increase some timeouts in which I was running | 2018-08-16 | |
| | |||
* | tests: make top output independent of username, which could be too long | 2018-08-16 | |
| | |||
* | Unlink files at end | 2018-08-16 | |
| | |||
* | Generate temporary filenames instead of using a fixed one (fixes #2083) | 2018-08-16 | |
| | |||
* | harden private-home mounting, small improvements | 2018-08-16 | |
| | |||
* | tests: skip fs_dev_shm.exp if /dev/shm is not writable | 2018-08-15 | |
| | |||
* | tests: make sure needed directories exist | 2018-08-15 | |
| | |||
* | improve detection of symbolic links | 2018-08-15 | |
| | |||
* | fix NP deref | 2018-08-15 | |
| | | | | private-home and private-bin are included just for consistency | ||
* | wireshark.profile: enable apparmor | 2018-08-15 | |
| | |||
* | apparmor: cleanup duplicate rules | 2018-08-15 | |
| | | | Those are already covered with https://github.com/netblue30/firejail/blob/0.9.56-rc1/etc/firejail-default#L33 | ||
* | apparmor: allow execution from /usr/lib64 | 2018-08-15 | |
| | | | /usr/lib64 was missing from execution whitelist and it's used in openSUSE, see https://github.com/netblue30/firejail/issues/2078 | ||
* | Merge pull request #2081 from SkewedZeppelin/descriptions | 2018-08-14 | |
|\ | | | | | Add descriptions to profiles |