Commit Graph

1174 Commits

Author SHA1 Message Date
Alexandre Pujol
66b529497d
feat(profiles): initial support for steam & steam games. 2022-08-13 20:36:52 +01:00
Alexandre Pujol
3e331bd656
fix(profiles): @{PROC}/@{uid} -> @{PROC}/@{pid} 2022-08-13 20:33:58 +01:00
Alexandre Pujol
c148aa978c
feat(profiles): general update. 2022-08-13 20:31:57 +01:00
Jeroen Rijken
e02b12aa6d Add libexec for apt 2022-08-13 15:21:35 +01:00
Jeroen Rijken
cd93d98bf4 Add support for adding snapshots to grub. 2022-08-13 15:21:35 +01:00
Jeroen Rijken
30cbac1181 Fix typo 2022-08-13 15:21:35 +01:00
Jeroen Rijken
5646c90d4c Fix zsysd profile name 2022-08-13 15:21:35 +01:00
Jeroen Rijken
b6b510aa36 Remove entries duplicate with base abstractions. 2022-08-13 15:21:35 +01:00
Jeroen Rijken
ddf5f1f512 Use nameservice-strict, fix exec 2022-08-13 15:21:35 +01:00
Jeroen Rijken
e2e14510ff Small fixes 2022-08-13 15:21:35 +01:00
Jeroen Rijken
2affbf6734 Cosmetic fixes 2022-08-13 15:21:35 +01:00
Jeroen Rijken
03881d5614 Add capability, dbus and some proc 2022-08-13 15:21:35 +01:00
Jeroen Rijken
a9fd0706d1 Move complain flag 2022-08-13 15:21:35 +01:00
Jeroen Rijken
d083e927a4 Initial support for zsys 2022-08-13 15:21:35 +01:00
nobodysu
33ff1abc35
Update thunderbird 2022-08-12 14:41:58 +00:00
nobodysu
db8e881c06
Merge branch 'master' into thunderbird2 2022-08-12 14:35:53 +00:00
nobodysu
00a1e70720 polishing 2022-08-12 17:23:13 +03:00
nobodysu
f2394963d0 cleanup 2022-08-08 02:39:35 +03:00
nobodysu
2c2f6e5557 rearrangement 2022-08-02 19:31:00 +03:00
nobodysu
af49797425 cleanup 2022-08-02 01:59:54 +03:00
nobodysu
c96b6d8ee7 dbus-gtk 2022-08-02 01:47:47 +03:00
Alexandre Pujol
2878fa6a2e
feat(profiles): general update. 2022-07-29 16:47:09 +01:00
Jeroen Rijken
58cfe9ad37 Small fixes 2022-07-29 16:41:19 +01:00
Jeroen Rijken
616753aea0 Consolidate rules 2022-07-29 16:41:19 +01:00
Jeroen Rijken
fcea04c69b Remove complain flags 2022-07-29 16:41:19 +01:00
Jeroen Rijken
e724d835ed Add ps to ptrace 2022-07-29 16:41:19 +01:00
Jeroen Rijken
e4d118365a Add Kubernetes pause container 2022-07-29 16:41:19 +01:00
Jeroen Rijken
e6525e1f04 Add missing volumes 2022-07-29 16:41:19 +01:00
Jeroen Rijken
07f1db2725 Fix some typo's 2022-07-29 16:41:19 +01:00
Jeroen Rijken
465a31c638 General updates 2022-07-29 16:41:19 +01:00
Jeroen Rijken
33da7af6e8 container updates 2022-07-29 16:41:19 +01:00
Jeroen Rijken
3af11c4d16 ZFS updates 2022-07-29 16:41:19 +01:00
Alexandre Pujol
b55c3f7d06
ci: fix build image name. 2022-07-22 12:09:07 +01:00
Alexandre Pujol
7aca29b244
feat(profiles): initial snap support. 2022-07-21 22:40:06 +01:00
Alexandre Pujol
177d27d94c
feat(profiles): general update. 2022-07-21 22:37:17 +01:00
Alexandre Pujol
58b96a7ba9
feat(profiles): add aptd profile. 2022-07-21 22:31:59 +01:00
Alexandre Pujol
595a27560f
feat(profiles): add mullvad profiles. 2022-07-21 20:17:03 +01:00
Alexandre Pujol
48c023d4bd
feat(profiles): containerd support for docker & cosmetic. 2022-07-21 20:15:02 +01:00
Jeroen Rijken
55bd85796c packagekitd dbus updates 2022-07-21 20:05:56 +01:00
Jeroen Rijken
137433ce6e dbus to NetworkManager 2022-07-21 20:05:56 +01:00
Jeroen Rijken
eb87e035b8 Initial containerd-shim-runc support 2022-07-21 20:05:56 +01:00
Jeroen Rijken
266d5c6dc0 Add IPV6 2022-07-21 19:46:45 +01:00
Jeroen Rijken
b404d7e4c4 Move xtables-nft to separate profile 2022-07-21 19:46:45 +01:00
Jeroen Rijken
130c562488 Allow containerd signal from k3s 2022-07-21 19:46:45 +01:00
Jeroen Rijken
61eab33cd8 Add ptrace subprofile 2022-07-21 19:46:45 +01:00
Jeroen Rijken
d6d9c943ae Add missing permission 2022-07-21 19:46:45 +01:00
Jeroen Rijken
dca33292f7 Update ruleset for clean installation. 2022-07-21 19:46:45 +01:00
Jeroen Rijken
a1f4dbee50 First batch of cleanups based on PR comments. 2022-07-21 19:46:45 +01:00
Jeroen Rijken
c03c624472 Allow signals from containerd to calico 2022-07-21 19:46:45 +01:00
Jeroen Rijken
8f81a39df1 Support read AppArmor profiles 2022-07-21 19:46:45 +01:00