Commit message (Collapse) | Author | Age | |
---|---|---|---|
* | fcopy part 1 | 2016-11-16 | |
| | |||
* | testing | 2016-11-09 | |
| | |||
* | gcov support | 2016-11-07 | |
| | |||
* | moving --profile to sbox | 2016-10-28 | |
| | |||
* | network code split | 2016-10-27 | |
| | |||
* | starting 0.9.45 devel version | 2016-10-23 | |
| | |||
* | 0.9.44 testing | 2016-10-21 | |
| | |||
* | allow user access to /sys/fs (--noblacklist=/sys/fs) | 2016-10-17 | |
| | |||
* | 0.9.44~rc1 testing | 2016-10-13 | |
| | |||
* | moved libx11 to libconnect | 2016-10-01 | |
| | |||
* | disable x11 abstract socket for --x11=block | 2016-10-01 | |
| | |||
* | fixed make deb | 2016-09-23 | |
| | |||
* | moved uids.h processing from configure to Makefile.in | 2016-09-19 | |
| | |||
* | starting new development | 2016-09-09 | |
| | |||
* | 0.9.42 testing | 2016-09-08 | |
| | |||
* | bringing back --private-home | 2016-09-04 | |
| | |||
* | 0.9.42~rc3 starting | 2016-08-29 | |
| | |||
* | compile time config option for overlayfs | 2016-08-20 | |
| | |||
* | workaround for systems where common UNIX utilities are symlinks to busybox | 2016-08-09 | |
| | |||
* | apparmor | 2016-08-02 | |
| | |||
* | using UID_MIN/GID_MIN values from /etc/login.def | 2016-07-29 | |
| | |||
* | 0.9.42~rc2 development | 2016-07-24 | |
| | |||
* | 0.9.42~rc1 testing0.9.42-rc1 | 2016-07-21 | |
| | |||
* | audit compile and install | 2016-07-01 | |
| | |||
* | support to disable enforcing firejail.config | 2016-06-12 | |
| | |||
* | whitelist support in /etc/firejail/firejail.config | 2016-06-09 | |
| | |||
* | 0.9.41 development starting | 2016-05-31 | |
| | |||
* | 0.9.40 testing | 2016-05-17 | |
| | |||
* | Moved to ~ | 2016-04-16 | |
| | |||
* | moving to 0.9.40-rc2, fixed firecfg.config path | 2016-04-03 | |
| | |||
* | testing | 2016-03-31 | |
| | |||
* | added firecfg utility | 2016-03-25 | |
| | |||
* | added firejail.config | 2016-03-12 | |
| | |||
* | compile time support to disable file transfer | 2016-03-12 | |
| | |||
* | cleanup | 2016-03-02 | |
| | |||
* | 0.9.40-rc1 testing | 2016-02-29 | |
| | |||
* | ./configure --enable-network=restricted | 2016-02-24 | |
| | |||
* | Merge branch 'master' of https://github.com/netblue30/firejail | 2016-02-24 | |
|\ | |||
| * | Add compile-time option to restrict --net= to root only | 2016-02-23 | |
| | | | | | | | | | | | | | | | | | | | | | | | | | | ./configure --enable-network=restricted allows only --net=none to non-root users. Other variants delegate too much power to non-root users and dangerous (it completely bypasses system-wide firewall and routing, it allows introducing arbitrary-chosen MAC and IP interfaces on LAN [disregarding DHCP policy], etc). Root already had power to twiddle with anything, so no sense to restrain her, and --net=none looks safe enough (and still useful) for ordinary users. | ||
* | | x11 work | 2016-02-23 | |
|/ | |||
* | default seccomp filter update | 2016-02-08 | |
| | |||
* | 0.9.38 testing | 2016-02-01 | |
| | |||
* | 0.9.38-rc1 testing | 2016-01-29 | |
| | |||
* | --disable-network --disable-userns compile time options | 2016-01-25 | |
| | |||
* | 0.9.38 testing | 2016-01-24 | |
| | |||
* | development version 0.9.37 | 2016-01-09 | |
| | |||
* | 0.9.36 testing | 2015-12-23 | |
| | |||
* | fixes | 2015-12-10 | |
| | |||
* | release 0.9.36-rc1 testing0.9.36-rc1 | 2015-12-08 | |
| | |||
* | --tracelog | 2015-12-03 | |
| |