Commit graph

192 commits

Author SHA1 Message Date
Alexandre Pujol
2431ba98aa
feat(profile): include more rule from #94. 2023-01-14 13:00:01 +00:00
Alexandre Pujol
ee83e1c33c
feat(profiles): general update. 2022-12-09 19:14:56 +00:00
nobody43
038e2882b5 wireshark 2022-11-30 20:45:13 +00:00
Alexandre Pujol
1e5d90afe8
feat(profiles): general update. 2022-11-29 12:02:38 +00:00
Alexandre Pujol
d52a7bd52a
fix(profiles): fix wayland cursor path. 2022-11-29 11:57:23 +00:00
Alexandre Pujol
9a46df81b9
feat(profiles): remove rules promoted into the base abstraction. 2022-11-28 18:05:29 +00:00
Alexandre Pujol
0837c158cb
feat(profiles): general update. 2022-11-13 18:27:47 +00:00
Alexandre Pujol
26f838b73f
feat(profiles): general update. 2022-11-11 22:18:55 +00:00
Alexandre Pujol
157e2a5df6
feat(profiles): grub update. 2022-11-03 21:42:16 +00:00
nobody43
f94faf697e
Read-only root compatibility (#86)
* Read-only root compatibility

* remove complain

Co-authored-by: nobodysu <nobodysu@users.noreply.github.com>
2022-10-18 18:23:52 +00:00
nobodysu
643a84997e
Unbreak Debian 11 and partially Ubuntu 22.04 (Wayland+GDM+Gnome) (#81)
* Unbreaking Debian 11 and partially Ubuntu 22.04

* pre-cleanup

* pre-cleanup2

* Update im-launch

* Update gnome-extension-ding

* polishing

* not yet

* Update ubuntu.flags

Allow GDM to boot. `No new privs` fix.

* Update debian.flags

Allow GDM to boot. `No new privs` fix.

* Update CONTRIBUTING.md

* fixes

* reverting w

* move setpriv to main.flags
2022-10-14 21:21:56 +00:00
Alexandre Pujol
b1950cbe91
feat(profiles): general update. 2022-10-14 22:17:27 +01:00
Alexandre Pujol
eddf6bfc4f
feat(profiles): general update. 2022-10-08 13:13:44 +01:00
Alexandre Pujol
ddedb39f3d
refactor: move profile in correct group. 2022-10-06 20:51:30 +01:00
Alexandre Pujol
4681a495b3
feat(profiles): general update. 2022-10-01 18:45:08 +01:00
Alexandre Pujol
205c2d7184
feat(profiles): new children group.
This group is reserved for profile  without an attachment path because
it is ended to be used only via "Px -> <profile-name>".
2022-09-26 14:59:18 +01:00
Alexandre Pujol
a02e67d980
feat(profiles): askpass -> code-askpass. 2022-09-24 18:08:00 +01:00
Alexandre Pujol
f2989321eb
feat(profiles): general update. 2022-09-24 18:06:06 +01:00
Alexandre Pujol
ae6cecde52
feat(profiles): deny gvfs-metadata when possible. 2022-09-24 17:59:20 +01:00
beroal
fcee586e9e
viewing DjVu and PostScript files (#78) 2022-09-24 11:13:21 +00:00
Alexandre Pujol
58e060c470
Merge branch 'master' of github.com:roddhjav/apparmor.d
* 'master' of github.com:roddhjav/apparmor.d:
  bulk cross-OS awk (#75)
2022-09-11 20:48:03 +01:00
Alexandre Pujol
8ff5ed7a69
feat(profiles): general update. 2022-09-11 20:45:14 +01:00
nobodysu
78a180b2f6
bulk cross-OS awk (#75) 2022-09-11 19:40:34 +00:00
Jeroen
9818daba5f
LVM and general update (#68)
* Small fixes

* General update

* Add LVM

* Various small fixes

* Add profile

* Typo

* sbin to regex

* Date and time to extends

* Read cmdline

* Remove grep duplicate

* Small fixes

* Typo

* Permissions for warning scripts

* Add net_admin for multipath
2022-09-06 21:01:17 +00:00
nobodysu
1649b427f8
Ubuntu 22.04, third batch (#65)
* initial

* ready

* cleanup

* cleanup2

* Update dbus-gtk
2022-09-06 17:00:18 +00:00
Alexandre Pujol
3b56d3ff0f
feat(profiles): use the new hex variable. 2022-09-03 14:43:34 +01:00
Alexandre Pujol
5d0c521e44
feat(profiles): move aurpublish profile. 2022-09-03 14:29:07 +01:00
Alexandre Pujol
14fd88aa2f
feat(profiles): add profiles for cups. 2022-08-31 22:10:41 +01:00
Alexandre Pujol
30f0b69a67
feat(profiles): add losetup profile. 2022-08-31 21:58:55 +01:00
Alexandre Pujol
0f61c4649c
feat(profiles): general update. 2022-08-31 21:54:33 +01:00
Jeroen Rijken
af603fbc62 Revert "tty and pts are part of abstractions/consoles"
This reverts commit 51a33f3f5e.
2022-08-19 19:25:22 +01:00
Jeroen Rijken
75a66e573e Use openssl abstraction 2022-08-19 19:25:22 +01:00
Jeroen Rijken
af0c622b35 Replace rm with mr. 2022-08-19 19:25:22 +01:00
Jeroen Rijken
7621dc9974 Fix typo's 2022-08-19 19:25:22 +01:00
Jeroen Rijken
099a97cb36 General update 2022-08-19 19:25:22 +01:00
Jeroen Rijken
005dec1a53 tty and pts are part of abstractions/consoles 2022-08-19 19:25:22 +01:00
Jeroen Rijken
7ee9644325 Add profiles for whoami, whereis, which, findmnt, users, sanoid and syncoid. 2022-08-19 19:25:22 +01:00
Alexandre Pujol
c0356e92e5
feat(aa-log): add support dbus session log using journactl. 2022-08-19 19:05:46 +01:00
Alexandre Pujol
3e331bd656
fix(profiles): @{PROC}/@{uid} -> @{PROC}/@{pid} 2022-08-13 20:33:58 +01:00
Alexandre Pujol
c148aa978c
feat(profiles): general update. 2022-08-13 20:31:57 +01:00
Alexandre Pujol
177d27d94c
feat(profiles): general update. 2022-07-21 22:37:17 +01:00
Alexandre Pujol
5b01f7963b
feat(profiles): add file-roller. 2022-07-18 23:58:12 +01:00
Alexandre Pujol
c750cb1b77
feat(profiles): general update. 2022-07-18 11:36:16 +01:00
Alexandre Pujol
23642eb0be
feat(profiles): general update. 2022-07-10 14:28:44 +01:00
Alexandre Pujol
f6de2fbe7a
feat(profiles): general update. 2022-07-03 20:27:48 +01:00
Alexandre Pujol
08beefe867
feat(profiles): general update. 2022-06-26 23:05:09 +01:00
Alexandre Pujol
e087349662
feat(profiles): define more xdg variables. 2022-06-26 17:32:12 +01:00
Alexandre Pujol
e69182e1df
feat(profiles): general update. 2022-06-26 16:40:48 +01:00
Alexandre Pujol
c04363c1b6
feat(profiles): reorganise a few profiles. 2022-06-25 00:18:26 +01:00
Alexandre Pujol
fcbe764ccf
feat(profiles): general update. 2022-06-25 00:16:05 +01:00
Alexandre Pujol
e942c057bd
feat(profiles): move netstat 2022-06-25 00:08:51 +01:00
Alexandre Pujol
08bb1b44a6
style(profiles): small rules improvment. 2022-06-14 19:25:45 +01:00
Alexandre Pujol
10de7941b0
feat(profiles): add fprintd. 2022-06-14 19:12:38 +01:00
Alexandre Pujol
2c6843f5fe
feat(profiles): add audit related profiles. 2022-06-13 22:15:13 +01:00
Alexandre Pujol
10148786d2
feat(profiles): add some freedesktop related profiles. 2022-06-13 22:08:33 +01:00
Alexandre Pujol
d998b1dd6e
feat(profiles): improve ubuntu compatibility. 2022-06-13 22:04:12 +01:00
Alexandre Pujol
779853dc7f
feat(profiles): new definition for MOUNTs, add MOUNTDIRS. 2022-06-12 22:51:37 +01:00
Alexandre Pujol
5d45b8e7a7
feat(profiles): add the dconf-write abstraction. 2022-06-09 21:55:55 +01:00
Alexandre Pujol
e949654614
feat(profiles): dbus abstactions and related rules. 2022-06-05 22:57:29 +01:00
Alexandre Pujol
63e5980d8d
feat(profiles): general update. 2022-06-05 22:47:37 +01:00
Alexandre Pujol
aa9a673fb6
feat(profiles): add anacron. 2022-06-03 20:21:20 +01:00
Alexandre Pujol
c32b19a808
feat(profiles): general update. 2022-06-03 20:13:11 +01:00
Alexandre Pujol
879416b062
feat(profiles): better system nss rules in nameservice-strict. 2022-06-03 19:38:34 +01:00
nobodysu
4a76a69632 polishing 2022-06-03 17:42:22 +00:00
nobodysu
b42b8c66cc Ubuntu 22.04, first batch and misc 2022-06-03 17:42:22 +00:00
nobodysu
6c30e362ee
Add consoles abstraction where needed (#36)
* add consoles abstraction where needed

* not now
2022-05-23 16:43:42 +00:00
Alexandre Pujol
e46e9cfcf4
feat(profiles): add boltd. 2022-05-21 17:09:12 +01:00
Alexandre Pujol
5c382d7eb3
feat(profiles): general update. 2022-05-15 22:56:42 +01:00
Alexandre Pujol
0b66933b45
feat(profiles): general update. 2022-05-09 21:51:18 +01:00
Alexandre Pujol
940c9de083
chore: reorganise the freedesktop group. 2022-05-07 13:18:36 +01:00
Alexandre Pujol
da1b3e1f1c
feat(profiles): general update. 2022-05-07 11:42:18 +01:00
Alexandre Pujol
3018ce3bbd
feat(profiles): add flatpak-portal. 2022-05-02 18:07:15 +01:00
Mikhail Morfikov
35a281d045
update apparmor profiles
Signed-off-by: Alexandre Pujol <alexandre@pujol.io>
2022-04-26 22:30:01 +01:00
Alexandre Pujol
e845a172c2
feat: update profiles. 2022-04-26 22:05:29 +01:00
Alexandre Pujol
1ad60d3b1c
feat: profiles update. 2022-04-13 22:04:36 +01:00
Alexandre Pujol
87496adbc7
feat: add initial flatpack-system-helper 2022-04-07 21:28:13 +01:00
Alexandre Pujol
c60787b5f3
feat: add initial version of fail2ban. 2022-04-07 21:10:16 +01:00
Alexandre Pujol
5eb4e1f526
feat: add initial version of atd. 2022-04-07 21:06:24 +01:00
Alexandre Pujol
e078fe2767
feat: add etckeeper profile. 2022-04-07 20:58:58 +01:00
Alexandre Pujol
711c7d917c
feat: add agetty profile. 2022-04-07 20:57:32 +01:00
Alexandre Pujol
10cdde9fb7
feat: update profiles. 2022-04-07 20:53:35 +01:00
Alexandre Pujol
6d1fa42f25
feat: update profiles. 2022-03-30 22:20:56 +01:00
Alexandre Pujol
a59387ac9e
Profile update. 2022-03-27 14:25:29 +01:00
Alexandre Pujol
d7be27411b
Update profiles. 2022-03-23 19:56:11 +00:00
Alexandre Pujol
4ff371e739
Profiles update. 2022-03-17 14:01:50 +00:00
Alexandre Pujol
bb0847f5df
Profiles update. 2022-03-13 21:04:42 +00:00
Alexandre Pujol
f9fde0b482
Profiles update. 2022-03-06 13:56:12 +00:00
Alexandre Pujol
1e729e6b46
Profiles update. 2022-03-04 21:30:34 +00:00
Alexandre Pujol
84e2a56eb9
Profiles update. 2022-02-27 12:18:10 +00:00
Alexandre Pujol
d701e39939
update apparmor profiles
Co-authored-by: Mikhail Morfikov <mmorfikov@gmail.com>
Signed-off-by: Alexandre Pujol <alexandre@pujol.io>
2022-02-27 01:22:35 +00:00
Alexandre Pujol
477d3f28a0
Add downloadhelper profile. 2022-02-22 20:55:27 +00:00
Alexandre Pujol
8c2d39c232
Flatpack: add flatpak-session-helper. 2022-02-22 20:52:46 +00:00
Alexandre Pujol
2064783251
Update profiles. 2022-02-22 20:51:28 +00:00
Alexandre Pujol
0ee2e4f7ad
New @{uuid} variable. 2022-02-22 13:14:46 +00:00
Alexandre Pujol
ac39df1af2
Update profiles. 2022-02-16 19:18:14 +00:00
Alexandre Pujol
1143ea4d6d
aa-log: allow reading more log files. 2022-02-16 13:30:31 +00:00
Alexandre Pujol
6876938719
aa-log: add -f option to set a log file. 2022-02-10 21:30:51 +00:00
Alexandre Pujol
810985a0cd
Update profile from #25 (2). 2022-02-09 19:35:18 +00:00
Alexandre Pujol
6294159d7a
Update profile from #25. 2022-02-08 19:49:31 +00:00
Alexandre Pujol
9ecc1aa240
Update profiles. 2022-02-08 18:16:45 +00:00