| Commit message (Collapse) | Author | Age |
|
|
| |
Co-authored-by: pirate486743186 <>
|
| |
|
|\
| |
| | |
New profile: parsecd
|
| | |
|
| | |
|
|\ \
| | |
| | | |
build: Fix whitespace and add .editorconfig
|
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | | |
Commands used to search and replace:
$ git grep -Ilz '[[:blank:]]$' |
xargs -0 -I '{}' sh -c "printf '%s\n' \"\$(sed -E \
's/[[:blank:]]+$//' '{}')\" >'{}'"
This fixes all of the "trailing whitespace" errors raised by git:
$ git diff --check 4b825dc642cb6eb9a060e54bf8d69288fbee4904..HEAD |
grep '^[^+]' | cut -f 3 -d : | LC_ALL=C sort | uniq -c
72 space before tab in indent.
4 trailing whitespace.
|
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | | |
Commands used to search and replace:
$ git grep -Ilz '.' | xargs -0 -I '{}' sh -c \
"printf '%s\n' \"\$(cat '{}')\" >'{}'"
The above commands ensure that there is exaclty 1 line terminator at EOF
(rather than 0 or more than 1) on all non-empty text files.
This fixes all of the "new blank line at EOF" errors raised by git:
$ git diff --check 4b825dc642cb6eb9a060e54bf8d69288fbee4904..HEAD |
grep '^[^+]' | cut -f 3 -d : | LC_ALL=C sort | uniq -c
21 new blank line at EOF.
72 space before tab in indent.
4 trailing whitespace.
|
| | | |
|
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | | |
* Create qpdf.profile and redirects
qpdf (CLI) provides PDF metadata cleaning.
See privacy-handbuch.de[1] for details.
The site offers pdf-meta-clean.sh[2], which works very well with
firejailed qpdf.
[1] https://www.privacy-handbuch.de/handbuch_43a.htm
[2] https://www.privacy-handbuch.de/download/pdf-meta-clean.sh
* RELNOTES: add qpdf and redirects to new profiles section
* firecfg.config: add qpdf and redirects
* qpdf: use 'seccomp socket' instead of 'protocol unix'
See https://github.com/netblue30/firejail/issues/639. Thanks @rusty-snake in code review.
|
| | | |
|
|/ /
| |
| |
| |
| |
| |
| |
| |
| |
| |
| |
| |
| |
| | |
Arch Linux got systemd v253:
https://github.com/archlinux/svntogit-packages/commit/05d0aedb2b83a2e1ba07cab47205772f82cb4814
It adds a few new files we should blacklist in `disable-common.inc`:
- /etc/credstore
- /etc/credstore.encrypted
- /run/credentials/systemd-sysctl.service
- /run/credentials/systemd-sysusers.service
- /run/credentials/systemd-tmpfiles-setup.service
- /run/credentials/systemd-tmpfiles-setup-dev.service
|
| | |
|
| | |
|
| | |
|
| |
| |
| |
| |
| |
| |
| | |
Fixes #5639.
qutebrowser: drop apparmor
Suggested in PR review.
|
| |
| |
| |
| | |
profiles
|
|\ \
| | |
| | | |
disable-programs.inc: blacklist sendgmail config
|
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | | |
sendgmail is a cli tool by Google that "uses Gmail in order to mimic
sendmail for git send-email" as per its own description. In other words it
is a basic sendmail replacement with OAuth2 support to send emails from
Gmail accounts.
https://github.com/google/gmail-oauth2-tools/tree/master/go/sendgmail
Config files location depends on "xdg" build tag. Without the tag it would
be "~/.sendgmail.*". With the tag it is either under
"$XDG_CONFIG_HOME/sendgmail" if set or "~/.config/sendgmail" otherwise.
|
|\ \ \
| | | |
| | | | |
transmission-cli: allow web client
|
| | | | |
|
|/ / / |
|
|/ / |
|
| | |
|
| | |
|
|/
|
|
| |
md5sum/sha512sum, more sysutils testing, fix electron-hardened.inc.profile
|
| |
|
| |
|
|\
| |
| | |
ephemeral: use newly introduced private-etc @groups syntax
|
| | |
|
|\| |
|
| | |
|
| | |
|
| |
| |
| | |
There is no `/etc/ssli` AFAIK. Existing typo prior to private-etc rework likely caused this.
|
| |
| |
| | |
There is no `/etc/jwhois.conf` AFAIK. Existing typo prior to private-etc rework likely caused this.
|
| |
| |
| | |
`dconfgtk-3.0` was missing a `,` prior to the private-etc rework.
|
| |
| |
| | |
There is no `/etc/groups` AFAIK. Existing typo prior to private-etc rework likely caused this.
|
| |
| |
| | |
There is no `/etc/groups` AFAIK. Existing typo prior to private-etc rework likely caused this.
|
| |
| |
| | |
`passwd` is already in @default group.
|
|/
|
| |
There is no `/etc/groups` AFAIK. Existing typo prior to private-etc rework likely caused this.
|
| |
|
|\
| |
| | |
disable-common.inc: add more ro editor/browser paths
|
| |
| |
| |
| |
| |
| | |
Similarly to the existing ~/.nanorc entry.
Taken from nano.profile.
|
| |
| |
| |
| |
| |
| |
| |
| |
| | |
Move some paths from mutt.profile and neomutt.profile.
Added on commit 6b9bfad37 ("Fix python; add read-only to editors/cli
browsers;re-add cache directory", 2020-12-29) / PR #3849.
Misc: This is a follow-up to #5626.
|
|\ \
| | |
| | | |
inkscape: additional hardening and settings saving via D-Bus
|
| | | |
|
| |\| |
|
| | | |
|
|\ \ \
| | |/
| |/| |
|
| | | |
|