Commit message (Collapse) | Author | Age | |
---|---|---|---|
* | --writable-run-user, solving ssh/gnupg authentication problems for smarcards | 2017-09-14 | |
| | |||
* | Feature: switch/config option to block secondary architectures | 2017-08-19 | |
| | | | | | | | | | Add a feature for a new (opt-in) command line switch and config file option to block secondary architectures entirely. Also block changing Linux execution domain with personality() system call for the primary architecture. Closes #1479 | ||
* | private-lib | 2017-08-17 | |
| | |||
* | memory-deny-write-execute | 2017-08-17 | |
| | |||
* | added --nodvd | 2017-08-12 | |
| | |||
* | typo | 2017-08-10 | |
| | |||
* | --notv for #1446 | 2017-08-10 | |
| | |||
* | support for Xephyr screen size | 2017-07-19 | |
| | |||
* | per-profile disable-mnt | 2017-07-04 | |
| | |||
* | merges | 2017-06-22 | |
| | |||
* | novideo fixes | 2017-06-11 | |
| | |||
* | --novideo option | 2017-05-22 | |
| | | | | | Still a work in progress. Code needs cleanup and improvement, but it does block /dev/video* in all of my tests so far. | ||
* | man pages | 2017-04-28 | |
| | |||
* | --nowhitelist | 2017-03-09 | |
| | |||
* | allow /tmp in mkdir and mkfile profile commands | 2017-03-07 | |
| | |||
* | xvfb X11 server support (--x11=xvfb) | 2017-03-03 | |
| | |||
* | adding macro for include command in profile files | 2017-02-09 | |
| | |||
* | --writable-var-log | 2017-01-30 | |
| | |||
* | --hosts-file option | 2017-01-22 | |
| | |||
* | fix PulseAudio/machine-id problem | 2017-01-18 | |
| | |||
* | local customization | 2017-01-14 | |
| | |||
* | spoof machine-id | 2016-12-05 | |
| | |||
* | private-opt, private-srv | 2016-11-30 | |
| | |||
* | private-tmp changes | 2016-11-03 | |
| | |||
* | added /srv in whitelist option | 2016-10-15 | |
| | |||
* | --x11=xorg | 2016-10-03 | |
| | |||
* | renamed --x11=block to --x11=none, brought back the requirement for network ↵ | 2016-10-02 | |
| | | | | namespaces for x11 sandboxing | ||
* | Fix typos found by lintian | 2016-10-02 | |
| | |||
* | --veth-name option | 2016-09-28 | |
| | |||
* | --no3d - disable 3D hardware acceleration | 2016-09-28 | |
| | |||
* | allusers support in profile files | 2016-09-25 | |
| | |||
* | update man | 2016-09-23 | |
| | |||
* | document blacklist-nolog | 2016-09-19 | |
| | |||
* | remove man firejail-config | 2016-09-19 | |
| | |||
* | update man | 2016-09-15 | |
| | |||
* | update man | 2016-09-10 | |
| | |||
* | bringing back --private-home | 2016-09-04 | |
| | |||
* | x11 command in profile files | 2016-08-22 | |
| | |||
* | fixed whitelist description in man pages | 2016-08-21 | |
| | |||
* | apparmor | 2016-08-02 | |
| | |||
* | added quiet profile command | 2016-08-01 | |
| | |||
* | Allow recursive mkdir (Closes #305) | 2016-07-30 | |
| | |||
* | --noexec | 2016-07-10 | |
| | |||
* | seccomp filter update | 2016-07-09 | |
| | |||
* | added mkfile profile command | 2016-07-08 | |
| | |||
* | fix some typos | 2016-06-27 | |
| | |||
* | Document nonewprivs | 2016-05-25 | |
| | |||
* | allow regular users to use --writable-var and --writable-etc | 2016-05-15 | |
| | |||
* | update seccomp default list in firejail-profile | 2016-05-14 | |
| | |||
* | rename generic.profile as default.profile | 2016-05-04 | |
| |