Commit message (Collapse) | Author | Age | |
---|---|---|---|
* | join: add support for rlimit options | smitsohu | 2021-09-22 |
| | |||
* | hardcode PATH for internal use | smitsohu | 2021-09-22 |
| | |||
* | Merge pull request #4533 from smitsohu/exitcode | smitsohu | 2021-09-22 |
|\ | | | | | rework exitcodes | ||
| * | rework exitcodes | smitsohu | 2021-09-21 |
| | | | | | | | | | | | | | | * add 128 to exitcode if child receives a fatal signal (this is similar to what bash and other shells do) * unify exitcodes across firejail: treat join'ed processes the same as processes in the primary process tree | ||
* | | Fix typo of "parent" | Kelvin M. Klann | 2021-09-02 |
| | | |||
* | | Revert "allow/deny help and man pages" | Kelvin M. Klann | 2021-09-02 |
|/ | | | | | | | | | | | | | | | | | This reverts commit a11707ea273e5665047f8a7d9387ba07f08d72f6. The man pages currently direct users to use the aliases instead of the commands, which some users of firejail-git may end up doing. Example: https://github.com/netblue30/firejail/discussions/4496 So revert the man page changes as well to avoid confusion. Note: This is not a full revert. The commit in question also contains some string formatting fixes on src/firejail/usage.c (related to dbus and netmask), which are left intact. Relates to #4410. | ||
* | Merge pull request #4486 from pirate486743186/yt-dlp-profile | netblue30 | 2021-08-30 |
|\ | | | | | create yt-dlp.profile | ||
| * | create yt-dlp.profile | pirate486743186 | 2021-08-27 |
| | | |||
* | | Merge pull request #4484 from pirate486743186/gallery-dl | netblue30 | 2021-08-30 |
|\ \ | | | | | | | creating gallery-dl.profile | ||
| * | | creating gallery-dl.profile | pirate486743186 | 2021-08-27 |
| |/ | |||
* / | Fix hanging arp_check | minus | 2021-08-22 |
|/ | | | | | | | arp_check relied on select(2) decreasing the timeout. This doesn't seem to be the case on Linux anymore, thus arp_check tends to hang when the interface sees a lot of traffic. Calculating the timeout explicitly solves the problem. | ||
* | Give fbuilder full original environment | Topi Miettinen | 2021-08-16 |
| | | | | Closes: #4460 | ||
* | Move disable-passwordmgr.inc into disable-common.inc/disable-programs.inc ↵ | rusty-snake | 2021-08-12 |
| | | | | follow up | ||
* | fix man firejail-profile | rusty-snake | 2021-08-09 |
| | | | | | machine-id is not affected by --disable-network and matches in "User Environment" as well. | ||
* | Respect quiet if no dbus-user (filter|none) is set | rusty-snake | 2021-08-05 |
| | |||
* | Add --ids-* to zsh completion | rusty-snake | 2021-07-31 |
| | |||
* | private-lib: fix double symlink | netblue30 | 2021-07-30 |
| | |||
* | removed dependency on strace for --build option; added seccomp by default ↵ | netblue30 | 2021-07-29 |
| | | | | for --build run | ||
* | Merge pull request #4419 from glitsj16/ncdu2 | netblue30 | 2021-07-28 |
|\ | | | | | add ncdu2 redirect profile | ||
| * | add firecfg support for ncdu2 | glitsj16 | 2021-07-26 |
| | | |||
* | | remove compile warnings | netblue30 | 2021-07-28 |
| | | |||
* | | Merge branch 'master' of ssh://github.com/netblue30/firejail | netblue30 | 2021-07-28 |
|\ \ | |||
| * | | Add support for ignore to profcleaner.sh | rusty-snake | 2021-07-28 |
| |/ | |||
* / | intrusion detection system | netblue30 | 2021-07-28 |
|/ | |||
* | Merge branch 'master' of https://github.com/netblue30/firejail | smitsohu | 2021-07-24 |
|\ | |||
| * | Complete 42a03511d0877690276da83bf548635d7e8ca693 | Fred Barclay | 2021-07-23 |
| | | | | | | | | | | | | | | | | Add ms-edge-beta paths to disable-programs.inc Support firecfg Adding to release notes (already added to README.md) | ||
| * | output options: expand ~ | smitsohu | 2021-07-21 |
| | | |||
| * | new profiles | rusty-snake | 2021-07-20 |
| | | |||
| * | Merge branch 'master' of ssh://github.com/netblue30/firejail | netblue30 | 2021-07-14 |
| |\ | |||
| | * | tmpfs mounts: also clear MS_REMOUNT flag (#4387) | smitsohu | 2021-07-13 |
| | | | |||
| * | | Removing blacklisted files from top level /etc directory if the filse were ↵ | netblue30 | 2021-07-14 |
| |/ | | | | | | | blacklisted | ||
| * | profcleaner.sh: Change "# CMD" and "#CMD" too | rusty-snake | 2021-07-09 |
| | | | | | | | | See https://github.com/netblue30/firejail/commit/00cb8b611f0e35a56585061d689fbcca2af0566b#commitcomment-53262808 | ||
| * | Merge pull request #4389 from rusty-snake/profcleaner.sh | netblue30 | 2021-07-08 |
| |\ | | | | | | | Create profcleaner.sh | ||
| | * | profcleaner.sh: Rename --all to --system | rusty-snake | 2021-07-07 |
| | | | | | | | | | [skip ci] | ||
| | * | Create profcleaner.sh | rusty-snake | 2021-07-07 |
| | | | | | | | | | | | | profcleaner.c is just sed, I was wondering why we need C for that. | ||
| * | | Merge pull request #4388 from rusty-snake/allow-deny-zsh | netblue30 | 2021-07-08 |
| |\ \ | | | | | | | | | allow/deny in zsh completion | ||
| | * | | allow/deny in zsh completion | rusty-snake | 2021-07-07 |
| | |/ | |||
| * / | Fix clion | Vladislav Nepogodin | 2021-07-07 |
| |/ | | | | | | | | | Add new clion-eap profile Fix broken clion profile | ||
| * | allow/deny fbuilder | netblue30 | 2021-07-05 |
| | | |||
| * | move whitelist/blacklist to allow/deny | netblue30 | 2021-07-05 |
| | | |||
| * | deprecated whitelist=yes/no in /etc/firejail/firejail.config | netblue30 | 2021-07-04 |
| | | |||
| * | allow/deny help and man pages | netblue30 | 2021-07-03 |
| | | |||
| * | allow/noallow/deny/nodeny aliases for ↵ | netblue30 | 2021-07-03 |
| | | | | | | | | whitelist/nowhitelist/blacklist/noblacklist | ||
| * | deprecated --disable-whitelist at compile time | netblue30 | 2021-07-03 |
| | | |||
| * | Merge pull request #4365 from lxeiqr/sndio-fix | netblue30 | 2021-07-01 |
| |\ | | | | | | | Fix sndio support | ||
| | * | Convert spaces to tabs in firejail/fs.c | lxeiqr | 2021-06-20 |
| | | | |||
| | * | Whitelist /tmp/sndio in private-tmp | lxeiqr | 2021-06-20 |
| | | | |||
| * | | Merge pull request #4376 from kmk3/gcov-add-nop-functions | netblue30 | 2021-06-27 |
| |\ \ | | | | | | | | | gcov: use no-op functions if not enabled | ||
| | * | | gcov: use no-op functions if not enabled | Kelvin M. Klann | 2021-06-27 |
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Instead of wrapping every gcov function call in an ifdef. Note: The usage of `((void)0)` is based on section 7.2 of the C99 standard (N1256)[1] [2]: > 7.2 Diagnostics <assert.h> > > 1 The header <assert.h> defines the assert macro and refers to another > macro, > > NDEBUG > > which is not defined by <assert.h>. If NDEBUG is defined as a macro > name at the point in the source file where <assert.h> is included, the > assert macro is defined simply as > > #define assert(ignore) ((void)0) See also assert.h(0p) from POSIX.1-2017[3]. Note: This is a continuation of commit b408b20c7 ("gcov: fix build failure with gcc 11.1.0") / PR #4373. [1] http://www.open-std.org/JTC1/SC22/WG14/www/docs/n1256.pdf [2] https://port70.net/~nsz/c/c99/n1256.html#7.2 [3] https://pubs.opengroup.org/onlinepubs/9699919799/basedefs/assert.h.html | ||
| | * | | gcov: fix indentation | Kelvin M. Klann | 2021-06-27 |
| | | | |