Commit graph

2067 commits

Author SHA1 Message Date
Alexandre Pujol
7be8aca10d
Minor fixes. 2021-04-12 19:59:41 +01:00
Alexandre Pujol
3734e5aedf
Add include if exists abstractions *.d 2021-04-12 19:59:04 +01:00
Alexandre Pujol
8d22bc10b2
Add nautilus profile. 2021-04-12 19:04:42 +01:00
Alexandre Pujol
2175a86979
Profiles update. 2021-04-12 13:33:24 +01:00
Mikhail Morfikov
0573b2d996
update apparmor profiles
Adpated to the apparmor.d structure.

Signed-off-by: Mikhail Morfikov <mmorfikov@gmail.com>
2021-04-10 15:12:56 +01:00
Alexandre Pujol
3d9fc84a41
Profile fixes. 2021-04-10 14:20:23 +01:00
Alexandre Pujol
c04c260cfa
Enforce some profiles. 2021-04-10 14:19:43 +01:00
Alexandre Pujol
89f35e502f
Add gtk 4 support. 2021-04-10 14:18:42 +01:00
Alexandre Pujol
17806e9ee7
Profiles update and general fixes. 2021-04-09 14:47:06 +01:00
Alexandre Pujol
ec9f197842
dbus-daemon: arch & gnome support. 2021-04-08 22:48:40 +01:00
Alexandre Pujol
33296ae19e
Add full gnome shell confinement. 2021-04-08 22:47:42 +01:00
Alexandre Pujol
6bf2a7e826
Update gsd-power. 2021-04-08 22:45:44 +01:00
Alexandre Pujol
87dd65a52d
Add fsck-ext4 2021-04-08 22:44:53 +01:00
Alexandre Pujol
fbc001e786
Add initial auditd. 2021-04-08 22:43:27 +01:00
Alexandre Pujol
ca6006152a
Add initial acpid 2021-04-08 22:42:48 +01:00
Alexandre Pujol
bba7a8e09c
openvpn: network manager support & more classic file strucure. 2021-04-08 22:41:55 +01:00
Alexandre Pujol
a789d518b2
Fix openvpn integration with network manager. 2021-04-08 22:41:05 +01:00
Alexandre Pujol
604a95119d
Add usbguard-notifier. 2021-04-08 22:40:03 +01:00
Alexandre Pujol
731dbe9d70
Add xbrlapi. 2021-04-08 22:39:41 +01:00
Alexandre Pujol
4d883c82d6
Add aa-notify 2021-04-08 22:32:39 +01:00
Alexandre Pujol
29253d0888
Fix licence id. 2021-04-08 22:28:37 +01:00
Alexandre Pujol
81b6f2d960
ps: environ is needed. 2021-04-08 22:26:12 +01:00
Alexandre Pujol
0b171d1330
Cleanup some new profiles. 2021-04-08 22:25:48 +01:00
Alexandre Pujol
91c7069ee1
Abstractions: more definitions. 2021-04-08 22:24:00 +01:00
Alexandre Pujol
04f2d2c9a3
Rules fix. 2021-04-07 18:05:15 +01:00
Alexandre Pujol
9446af57f8
Cleanup. 2021-04-07 18:04:10 +01:00
Alexandre Pujol
550c3957de
Profiles update. 2021-04-06 12:42:47 +01:00
Alexandre Pujol
64d8379375
Global profile update. 2021-04-05 13:15:52 +01:00
Alexandre Pujol
6aa99d3ec5
chromium **needs** dconf. 2021-04-04 22:03:18 +01:00
Alexandre Pujol
f3a982fdf6
Add xdg-dbus-proxy. 2021-04-04 21:28:39 +01:00
Alexandre Pujol
9f17f48c6e
xwayland: small fixes. 2021-04-04 21:28:20 +01:00
Alexandre Pujol
a48b6eed2e
Add gitstatusd & test git. 2021-04-04 20:05:07 +01:00
Alexandre Pujol
d68e8cdf97
Header cosmetic. 2021-04-04 17:37:09 +01:00
Alexandre Pujol
db2501b517
Add Xwayland. 2021-04-04 17:33:35 +01:00
Alexandre Pujol
d570ff123e
Add arch-audit & pacdiff. 2021-04-04 17:28:12 +01:00
Alexandre Pujol
5353729d73
Add pacman-{conf,key} profiles. 2021-04-04 17:27:14 +01:00
Alexandre Pujol
131ef331f5
Update gnome-keyring-daemon. 2021-04-04 17:25:31 +01:00
Alexandre Pujol
62c7e77ffd
Add gnome-shell-calendar-server. 2021-04-04 17:24:53 +01:00
Alexandre Pujol
adf48a2052
Add seahorse profile. 2021-04-04 17:24:44 +01:00
Alexandre Pujol
441f3f776f
Add browserpass profile. 2021-04-04 17:23:53 +01:00
Mikhail Morfikov
046443a702
Update apparmor profiles
Adpated to the apparmor.d structure.

Signed-off-by: Mikhail Morfikov <mmorfikov@gmail.com>
2021-04-04 14:43:10 +01:00
Alexandre Pujol
19521569ce
Complete ss_cert abstraction. 2021-04-04 01:13:25 +01:00
Alexandre Pujol
d38c781bbd
Apparmor Parser issue fix. 2021-04-04 00:46:12 +01:00
Alexandre Pujol
547076dda3
systemd: update related profiles. 2021-04-04 00:37:27 +01:00
Alexandre Pujol
b2c0ead2de
nm: access to all net interfaces. 2021-04-04 00:35:41 +01:00
Alexandre Pujol
f1e3574e2e
media-keys: access to sound settings. 2021-04-04 00:34:54 +01:00
Alexandre Pujol
ec2e1fc1c2
Add mkinitcpio support. 2021-04-04 00:34:05 +01:00
Alexandre Pujol
a0d634b48f
usermod: nscd is required. 2021-04-04 00:01:13 +01:00
Alexandre Pujol
61038bdfa8
Sudo needs much more cap for normal usage. 2021-04-03 23:28:16 +01:00
Alexandre Pujol
660921f57c
ssh: better keys & network access. 2021-04-03 23:26:09 +01:00
Alexandre Pujol
093af6982b
Browser: allow browserpass acess. 2021-04-03 23:25:02 +01:00
Alexandre Pujol
a15061700b
chromium: for now, no access to mozilla files. 2021-04-03 23:24:28 +01:00
Alexandre Pujol
8c935281fd
Evolution: allow access to osrelease & kernel cmd.
Is it really needed?
2021-04-03 23:23:03 +01:00
Alexandre Pujol
5941b784cc
Remove some complain mode. 2021-04-02 18:10:21 +01:00
Alexandre Pujol
6069cf32a7
gpg: better integration with gpg* profiles. 2021-04-02 10:49:27 +01:00
Alexandre Pujol
e5ce66d1ca
Add NetworkManager profiles. 2021-04-02 10:46:28 +01:00
Alexandre Pujol
2107e94b5c
Remove firejail-default. 2021-04-02 10:39:42 +01:00
Alexandre Pujol
37d9ac6c3c
Move obex profiles in the desktop group. 2021-04-02 10:38:56 +01:00
Alexandre Pujol
8315c74897
Add less (from krathalan). 2021-04-02 10:31:10 +01:00
Alexandre Pujol
3807a4387f
Finish full gnome support for gvfsd-*. 2021-04-02 10:29:37 +01:00
Alexandre Pujol
0682ff0789
Complete gvfsd-dav & gvfsd-recent. 2021-04-02 10:29:12 +01:00
Alexandre Pujol
4dc8d53c0e
Add 7 systemd profiles. 2021-04-02 10:28:21 +01:00
Alexandre Pujol
b6152def16
Add all gsd-* profiles. 2021-04-02 10:26:15 +01:00
Alexandre Pujol
e3d08f3de7
Add mission-control 2021-04-02 10:25:17 +01:00
Alexandre Pujol
651b34fcca
Move gnome-keyring-daemon. 2021-04-02 10:24:32 +01:00
Alexandre Pujol
d2252c10da
Fix SPDX-License-Identifier on some of my profiles. 2021-04-02 10:23:57 +01:00
Alexandre Pujol
6fd5d5f56f
udevadm -> systemd-udevd 2021-04-02 10:22:54 +01:00
Alexandre Pujol
facade62b6
Add more apparmor profiles. 2021-04-02 10:22:03 +01:00
Alexandre Pujol
604b184c9d
Profile update after tests on Arch. 2021-04-02 10:18:29 +01:00
Alexandre Pujol
e4266d9cda
Some rules addition for gnome support. 2021-04-02 10:11:59 +01:00
Alexandre Pujol
e57dd4e3a7
Firefox: gvfsd and gnome support 2021-04-02 10:10:08 +01:00
Alexandre Pujol
dc7a83886c
Firefox: allow dconf as it breaks firefox settings and extension otherwise. 2021-04-02 10:08:24 +01:00
Alexandre Pujol
d6c1e0b020
chromium: add gnome support. 2021-04-02 10:07:09 +01:00
Alexandre Pujol
a5cad68c36
Firefox & Chromium: allow read access to some user file. 2021-04-02 10:05:38 +01:00
Alexandre Pujol
212105f21e
Add haveged (from krathalan). 2021-04-02 00:07:07 +01:00
Alexandre Pujol
f52668628d
Add gnome-calendar and gnome-contacts. 2021-04-02 00:06:05 +01:00
Alexandre Pujol
9b19b979d6
Add goa-daemon and its id service. 2021-04-02 00:05:19 +01:00
Alexandre Pujol
df7211667c
Add tracker-miner 2021-04-02 00:04:13 +01:00
Alexandre Pujol
7c60224447
Gio: add gnome support. 2021-04-02 00:02:30 +01:00
Alexandre Pujol
70ad571cbe
Add glib-compile-schemas. 2021-04-02 00:01:54 +01:00
Alexandre Pujol
efe56f3841
Add gjs profile. 2021-04-02 00:01:15 +01:00
Alexandre Pujol
59d33e0cc6
Add evolution services. 2021-04-02 00:00:33 +01:00
Alexandre Pujol
1632b6c1b4
mandb: add path for arch. 2021-04-01 23:59:16 +01:00
Alexandre Pujol
c35f793ba1
Add rules for xdg-* profiles. 2021-04-01 23:54:41 +01:00
Alexandre Pujol
6044e403e7
Replace last remaining home files by the xdg variables. 2021-04-01 23:45:21 +01:00
Alexandre Pujol
4db3745a35
Add user-read abstract. 2021-04-01 23:37:27 +01:00
Alexandre Pujol
9f02bd0ab9
Archlinux has no libexec.
/usr/libexec ->{lib,libexec}
2021-04-01 23:36:58 +01:00
Alexandre Pujol
08c220deee
Add 'if exists' to some include. 2021-04-01 23:26:06 +01:00
Alexandre Pujol
79904cb616
Archlinux has no sbin.
sbin -> {s,}bin for Archlinux support.
Purposelly not replaced on Debian only programs
2021-04-01 23:15:47 +01:00
Alexandre Pujol
1d1492c750
Trash: needs more control over expunged directory. 2021-04-01 21:59:14 +01:00
Alexandre Pujol
0ad600f90f
Add /mnt as possible mount point. 2021-04-01 21:56:33 +01:00
Alexandre Pujol
84f24133e9
More XDG replacement. 2021-04-01 21:44:23 +01:00
Alexandre Pujol
54ac285b7d
@{HOME}/.local/share -> @{user_share_dirs} 2021-04-01 17:23:34 +01:00
Alexandre Pujol
7f6ea8d44d
@{HOME}/.config -> @{user_config_dirs} 2021-04-01 17:21:33 +01:00
Alexandre Pujol
1c9fc00c13
@{HOME}/.cache -> @{user_cache_dirs} 2021-04-01 17:20:05 +01:00
Alexandre Pujol
091d20d086
Reorganise the directories. 2021-04-01 17:02:49 +01:00
Alexandre Pujol
e9b8e62fcd
apparmor.d -> profiles 2021-04-01 16:02:59 +01:00
Alexandre Pujol
c408a878b7
Remove profiles already present in deps. 2021-04-01 16:01:57 +01:00
Alexandre Pujol
2129e23596
Remove and merge sources that are already present deps. 2021-04-01 15:33:57 +01:00
Mikhail Morfikov
62f1b6b854
update apparmor profiles 2021-03-21 17:13:02 +01:00
Mikhail Morfikov
c5ca6e1d90
update apparmor profiles 2021-03-21 17:04:10 +01:00
Mikhail Morfikov
f7ddca7289
add bt apparmor profiles 2021-03-21 17:00:23 +01:00
Mikhail Morfikov
4c0c878409
update apparmor profiles 2021-03-14 18:57:00 +01:00
Mikhail Morfikov
e1f16545e0
update apparmor profiles 2021-03-13 16:52:36 +01:00
Mikhail Morfikov
5b12c89dba
update apparmor profiles 2021-03-13 09:47:36 +01:00
Mikhail Morfikov
0f64093e46
update apparmor profiles 2021-02-13 15:00:16 +01:00
Mikhail Morfikov
8e075d25fa
update apparmor profiles 2021-01-10 16:35:07 +01:00
Mikhail Morfikov
756e2071e1
update apparmor profiles 2020-12-24 13:55:12 +01:00
Mikhail Morfikov
156f5d4e3b
update apparmor profiles 2020-12-18 11:12:55 +01:00
Mikhail Morfikov
7067edcf70
update profiles for apparmor3 2020-12-10 22:33:39 +01:00
Mikhail Morfikov
503cf496bf
update apparmor profiles 2020-12-09 10:30:52 +01:00
Mikhail Morfikov
f73da4a046
update apparmor profiles 2020-10-25 10:23:34 +01:00
Mikhail Morfikov
2cd06e74d6
update apparmor profiles 2020-10-13 16:47:49 +02:00
Mikhail Morfikov
b9343c50c2
update apparmor profiles 2020-09-27 22:26:01 +02:00
Mikhail Morfikov
a03db72f91
update apparmor profiles 2020-09-18 20:05:47 +02:00
Mikhail Morfikov
d1605c62b3
update apparmor profiles 2020-09-12 17:46:51 +02:00
Mikhail Morfikov
244b2c88a2
move apparmor profiles to a seperate repo 2020-09-12 17:19:23 +02:00