Commit graph

1043 commits

Author SHA1 Message Date
curiosityseeker
f3f5884abb Update brave-wrapper 2023-03-02 18:55:24 +00:00
curiosityseeker
0eaafaa8a4 Update brave-sandbox 2023-03-02 18:55:24 +00:00
curiosityseeker
02db2d9641 Update brave 2023-03-02 18:55:24 +00:00
curiosityseeker
c1adeb8c32 Update chromium
keepassxc-proxy rPUX -> rix
See issue #128
2023-03-02 18:55:24 +00:00
curiosityseeker
781e567d6b Update firefox
keepassxc-proxy rPX -> rix
See issue #128
2023-03-02 18:55:24 +00:00
nobody43
c4edf2a6c7 cleanup 2023-03-02 17:50:45 +00:00
nobody43
670411c114 fixes 2023-03-02 17:50:45 +00:00
nobody43
8c0e0a9de1 freedesktop 2023-03-02 17:50:45 +00:00
Alexandre Pujol
491d2176a8
feat(profiles): add systemd as user. 2023-02-24 20:40:04 +00:00
curiosityseeker
11458251c7 Update dhcpcd
Thanks!
2023-02-23 11:30:03 +00:00
curiosityseeker
f64edfe6b8 Update dhcpcd
Ups , that was an oversight.
2023-02-23 11:30:03 +00:00
curiosityseeker
46bf6f9016 Update dhcpcd 2023-02-23 11:30:03 +00:00
curiosityseeker
2e00023c23 Update dhcpcd
Tested on Arch Linux
2023-02-23 11:30:03 +00:00
curiosityseeker
1cc86685ae Create dhcpcd
Tested on Arch Linux.
2023-02-23 11:30:03 +00:00
nobody43
902420c721 vars 2023-02-22 21:52:55 +00:00
nobody43
7e3bb8b1ea polishing 2023-02-22 21:52:55 +00:00
nobody43
8b4407ca02 fixes 2023-02-22 21:52:55 +00:00
nobody43
01714cc4f0 fixes2 2023-02-22 21:52:55 +00:00
nobody43
d18e012f9e fixes 2023-02-22 21:52:55 +00:00
nobody43
a873af1f26 general_initial 2023-02-22 21:52:55 +00:00
Alexandre Pujol
6c88213562
feat(aa-log): new journalctl command means new log file. 2023-02-19 21:19:25 +00:00
Alexandre Pujol
a804fe7b56
feat(systemd): add systemd-cryptsetup 2023-02-19 20:35:03 +00:00
Alexandre Pujol
45ca052063
feat(systemd): add systemd-sulogin-shell 2023-02-19 20:33:29 +00:00
Alexandre Pujol
eca22caf8a
feat(systemd): add some systemd-user-generators. 2023-02-19 20:32:18 +00:00
Alexandre Pujol
5d6a4e4e4c
feat(systemd): add systemd-user{db,work} 2023-02-19 20:29:22 +00:00
Alexandre Pujol
c2076a213b
feat(systemd): add systemd-home{d,work} 2023-02-19 20:28:00 +00:00
Alexandre Pujol
da5a3fc6a2
feat: chrome has more multiple possible name. 2023-02-19 20:25:30 +00:00
Alexandre Pujol
c812507792
feat: better integration with Ubuntu Pro. 2023-02-19 20:24:57 +00:00
Alexandre Pujol
cf6aeb5b94
fix: rPX -> rPx 2023-02-19 20:23:37 +00:00
Alexandre Pujol
ef292b585c
feat(profiles): first set of rules for Ubuntu Core support. 2023-02-19 18:22:18 +00:00
Alexandre Pujol
d66a8fa082
feat(profiles): general update. 2023-02-19 17:42:05 +00:00
Alexandre Pujol
9b1aaeb68f
feat(firewalld): forgot non legacy nft.
See #101.
2023-02-12 21:59:41 +00:00
Alexandre Pujol
4d317cf807
feat(profiles): remove setpriv.
This program should be included by other profile, not generally confined.
2023-02-11 20:20:45 +00:00
Alexandre Pujol
fbd5996531
feat(profiles): general update. 2023-02-11 19:03:01 +00:00
Alexandre Pujol
ef4ed8ba95
fix(power-profiles): see #101 2023-02-08 16:47:52 +00:00
Alexandre Pujol
b53f7559db
feat(pass): better editor integration.
Co-authored-by: Andy Ramos <maplewood_broer@8shield.net>
2023-02-08 16:42:39 +00:00
Alexandre Pujol
77b9699270
feat(profiles): add sdcv.
Co-authored-by: Andy Ramos <maplewood_broer@8shield.net>
2023-02-08 16:39:37 +00:00
Alexandre Pujol
b4a09ab13a
feat(profiles): networkmanager: compatibility with some distribution
Co-authored-by: Andy Ramos <maplewood_broer@8shield.net>
2023-02-08 16:36:24 +00:00
Alexandre Pujol
f20ccedf4f
feat(profiles): general update. 2023-02-07 23:18:10 +00:00
Alexandre Pujol
37dd97a875
feat(profiles): a the XDG_IMG_DIR and user_img_dirs variables 2023-02-07 23:15:18 +00:00
Alexandre Pujol
a8808d3da6
feat(profiles): general update. 2023-02-06 21:25:09 +00:00
Alexandre Pujol
1ff3636fb5
fix: systemd-sleep-grub name. 2023-02-05 00:23:20 +00:00
Alexandre Pujol
a402200dbe
feat(profiles): general update. 2023-02-05 00:03:20 +00:00
Alexandre Pujol
d29bee2789
feat(profiles): add chronyd. 2023-02-04 23:56:56 +00:00
Alexandre Pujol
b16d172e22
feat(systemd): add systemd-cat & systemd-inhibit 2023-02-04 23:56:10 +00:00
Alexandre Pujol
e93e80ee20
feat(opensuse): final opensuse integration. 2023-02-04 23:55:14 +00:00
Alexandre Pujol
609097ef27
feat(opensuse): x11 integration. 2023-02-04 23:48:35 +00:00
Alexandre Pujol
faf7663cde
feat(opensuse): add pidof. 2023-02-04 23:45:39 +00:00
Alexandre Pujol
5bc4860c39
feat(opensuse): add firewalld 2023-02-04 23:44:46 +00:00
Alexandre Pujol
35fcb6fc71
feat(opensuse): desktop integration. 2023-02-04 23:43:18 +00:00
Alexandre Pujol
ff76602843
feat(systemd): split systemd-sleep profile. 2023-02-04 23:41:19 +00:00
Alexandre Pujol
ad23864094
feat(opensuse): gnome integration. 2023-02-04 23:39:19 +00:00
Alexandre Pujol
ff64fbfa51
feat(profiles): cleanup some profiles. 2023-02-04 23:36:49 +00:00
Alexandre Pujol
bac87f9547
feat(profiles): use /etc read only variable: etc_ro 2023-02-04 23:34:29 +00:00
Alexandre Pujol
6e56cfccc9
feat(profiles): make profile entrypoint more universal. 2023-02-04 23:28:17 +00:00
Alexandre Pujol
222b57acb5
feat(profiles): rethink the firefox profiles. 2023-02-04 19:43:05 +00:00
Alexandre Pujol
6061d4981b
feat(profiles): chromium_install_dirs -> chromium_lib_dirs 2023-02-04 19:08:02 +00:00
Alexandre Pujol
e9d61fb7d9
feat(profiles): gpg -> gpg{,2} 2023-02-04 19:02:47 +00:00
Alexandre Pujol
8dca20c5c6
feat(profiles): general update. 2023-02-01 22:37:33 +00:00
Alexandre Pujol
f19379c55f
feat(abs): extend deny-sensitive with new user_password_store_dirs var. 2023-02-01 22:34:54 +00:00
Vladimir Bauer
7d660f7c23
gpgconf: allow write access to @{run}/user/@{uid}/gnupg/ (#114) 2023-02-01 10:34:50 +00:00
Vladimir Bauer
01419d82c4
pacman: allow dir read in or below @{user_pkg_dirs} (#113) 2023-01-31 11:43:45 +00:00
Vladimir Bauer
3c3f164e91
minor syntax fix (#112) 2023-01-29 10:53:41 +00:00
Alexandre Pujol
72e0618aa2
feat(profile): libvirt allow CPU information.
See #101.
2023-01-28 19:09:15 +00:00
nobody43
9c61f7ad3e remove lsd 2023-01-28 15:25:01 +00:00
nobody43
5a9ae96ae8 let it error, works fine 2023-01-28 15:25:01 +00:00
nobody43
9739f2d69e Armbian 2023-01-28 15:25:01 +00:00
nobody43
8bb5b064d1 fixes 2023-01-28 15:25:01 +00:00
nobody43
4f3864a9b6 rustdesk 2023-01-28 15:25:01 +00:00
nobody43
02ced44a5c header 2023-01-28 15:25:01 +00:00
nobody43
80de79b66a Add new profiles 2023-01-28 15:25:01 +00:00
Alexandre Pujol
7a24f98f48
feat(profiles): general update. 2023-01-27 22:31:55 +00:00
Alexandre Pujol
23312c1640
feat(profile): ensure compatibility with userspace tools. 2023-01-27 22:00:10 +00:00
Alexandre Pujol
b7299cecbb
feat(profiles): remove avahi-daemon as it already exist. 2023-01-27 21:50:11 +00:00
Alexandre Pujol
3498be7a37
feat(profiles): better udev range. 2023-01-26 20:05:47 +00:00
Alexandre Pujol
4521061f73
feat(profiles): remove the unused jdownloader profile. 2023-01-26 20:03:08 +00:00
Alexandre Pujol
5a722c42a2
feat(profiles): rewrite the vlc profile. 2023-01-26 20:02:33 +00:00
Alexandre Pujol
807bf7f1c8
feat(profile): general update. 2023-01-24 20:07:10 +00:00
Alexandre Pujol
9343807632
feat(profiles): audit udev on the browsers. 2023-01-24 19:55:50 +00:00
Jeroen Rijken
118c412378 General update 2023-01-22 12:45:32 +00:00
Alexandre Pujol
64ad329dd9
feat(profiles): Cleanup udev rules. 2023-01-19 18:51:16 +00:00
Alexandre Pujol
43606814cc
fix(profiles): compilation fix. 2023-01-18 23:38:48 +00:00
Alexandre Pujol
2f563fa818
feat(profile): general update. 2023-01-18 23:37:06 +00:00
Alexandre Pujol
5b15521255
feat(profile): gemeral update.
See: #104.
2023-01-18 23:22:49 +00:00
Alexandre Pujol
a16d645dcb
feat(profile): improve xorg start from xinit.
See: #105.
2023-01-18 22:52:32 +00:00
Alexandre Pujol
477993df16
fix(profile): gnome-calculator is not yet confined.
This kind of program should not be confined but sandboxed anyway.
See #101
2023-01-18 10:04:17 +00:00
Alexandre Pujol
4b5d1e1a79
feat(profile): general update.
See:  #101
2023-01-16 19:01:22 +00:00
Alexandre Pujol
1f16025c10
feat(profile): general update.
See:  #102
2023-01-15 19:22:18 +00:00
Alexandre Pujol
8ba25a3f6e
feat(profile): rewrite keepassxc.
See:  #102
2023-01-15 18:57:35 +00:00
Alexandre Pujol
55edf06936
feat(profiles): second general update. See #101 2023-01-15 17:38:28 +00:00
Alexandre Pujol
c59a40ec4e
feat(profiles): general update. See #101 2023-01-15 17:15:26 +00:00
Alexandre Pujol
f20aa4f548
feat(profiles): general update. 2023-01-14 13:28:21 +00:00
Alexandre Pujol
c637d03d81
fix(profiles): profile build fix. 2023-01-14 13:24:53 +00:00
Alexandre Pujol
0ec39dfe98
fix(profile): journald: be less strict on file format.
Fix  #98.
2023-01-14 13:20:16 +00:00
Alexandre Pujol
4b10da9fc7
fix(profiles): do not break pacman if the pkg install script is not confined.
fix #99
2023-01-14 13:10:43 +00:00
Alexandre Pujol
356dfa08e8
fix(profiles): be less precise regarding hadware.
fix #97
2023-01-14 13:06:27 +00:00
Alexandre Pujol
2431ba98aa
feat(profile): include more rule from #94. 2023-01-14 13:00:01 +00:00
Alexandre Pujol
7c4c48f4c3
fix(profile): initial fix for #94. 2023-01-12 18:24:06 +00:00
Alexandre Pujol
600d929d85
feat(profiles): general update. 2022-12-15 19:41:51 +00:00
Alexandre Pujol
11cc9bd672
feat: merge pacman mkinitcpio hooks. 2022-12-10 19:12:10 +00:00
Alexandre Pujol
c453484eab
fix(profiles): docker pull need full access of the container. 2022-12-10 15:18:00 +00:00
Alexandre Pujol
ee83e1c33c
feat(profiles): general update. 2022-12-09 19:14:56 +00:00
Alexandre Pujol
19d005bf59
feat(profiles): add the @{XDG_WORK_DIR} variable. 2022-12-09 19:13:06 +00:00
Alexandre Pujol
2246e8ae63
feat(profiles): merge the two packagekitd profiles in one. 2022-12-09 19:12:19 +00:00
Alexandre Pujol
90dc848766
feat(profiles): mkinitcpio support for systemd hooks. 2022-12-09 18:55:42 +00:00
Alexandre Pujol
372766f757
Merge branch 'master' of github.com:roddhjav/apparmor.d
* 'master' of github.com:roddhjav/apparmor.d:
  wireshark
2022-12-09 18:54:11 +00:00
Alexandre Pujol
ac25454f02
feat(profiles): improve x11 integraion. 2022-12-09 18:53:18 +00:00
Alexandre Pujol
dd232695d3
feat(profiles): refractor all chromium based browsers.
All chromium based browser now use the new chromium abstraction.
2022-12-09 18:50:57 +00:00
Alexandre Pujol
7f231caf1b
feat(profiles): update some dbus rules. 2022-12-07 20:42:36 +00:00
Alexandre Pujol
bec892b179
fix: disk-write need access to /dev/mapper/ too. 2022-12-07 20:41:07 +00:00
Alexandre Pujol
53e04cc10e
feat(profiles): update chrome profiles. 2022-12-07 20:40:34 +00:00
nobody43
038e2882b5 wireshark 2022-11-30 20:45:13 +00:00
Alexandre Pujol
f8b6dfae5c
fix: ensure sys/device/cpu/possible is in the base abs for all dist. 2022-11-29 20:24:38 +00:00
Alexandre Pujol
1e5d90afe8
feat(profiles): general update. 2022-11-29 12:02:38 +00:00
Alexandre Pujol
d52a7bd52a
fix(profiles): fix wayland cursor path. 2022-11-29 11:57:23 +00:00
Alexandre Pujol
f5cb901eef
feat(profiles): new wayland cursor file. 2022-11-28 18:08:01 +00:00
Alexandre Pujol
9a46df81b9
feat(profiles): remove rules promoted into the base abstraction. 2022-11-28 18:05:29 +00:00
Alexandre Pujol
1fa427ca81
feat(profiles): general update. 2022-11-20 11:42:08 +00:00
Alexandre Pujol
0837c158cb
feat(profiles): general update. 2022-11-13 18:27:47 +00:00
Alexandre Pujol
26f838b73f
feat(profiles): general update. 2022-11-11 22:18:55 +00:00
Alexandre Pujol
fd88162c55
feat(profiles): disks access - add NBD devices. 2022-11-11 21:41:04 +00:00
Alexandre Pujol
dd13de385e
feat(profiles): general update. 2022-11-05 17:25:27 +00:00
Alexandre Pujol
18a8b42cbf
feat(profiles): add initial version of iwctl. 2022-11-05 17:13:39 +00:00
Alexandre Pujol
157e2a5df6
feat(profiles): grub update. 2022-11-03 21:42:16 +00:00
Alexandre Pujol
a90cdbe879
feat(profiles): general update. 2022-11-03 21:40:01 +00:00
Alexandre Pujol
fabddee9d6
feat(profiles): add os-prober. 2022-10-23 11:27:50 +01:00
Alexandre Pujol
d6cd1af9c8
feat(profiles): add initial version of nmcli. 2022-10-23 11:26:42 +01:00
Alexandre Pujol
0168f8b13b
feat(profiles): add gnome-software. 2022-10-23 11:25:23 +01:00
nobody43
f94faf697e
Read-only root compatibility (#86)
* Read-only root compatibility

* remove complain

Co-authored-by: nobodysu <nobodysu@users.noreply.github.com>
2022-10-18 18:23:52 +00:00
Alexandre Pujol
5fdbc2d00e
fix(profiles): minor bug fixes. 2022-10-18 19:20:12 +01:00
nobody43
81fd594be2
Update apparmor.d/profiles-g-l/htop
Co-authored-by: Alex <roddhjav@users.noreply.github.com>
2022-10-17 15:09:52 +00:00
nobodysu
8d61d3256a more profiles 2022-10-17 17:07:26 +03:00
nobodysu
349689cba4 polishing2 2022-10-16 17:46:39 +03:00
nobodysu
41659f073c polishing 2022-10-16 17:45:00 +03:00
nobodysu
c6ca84ded4 remove spaces 2022-10-16 17:20:49 +03:00
nobodysu
f637c70f99 remove complain 2022-10-16 17:17:53 +03:00
nobodysu
ac7c42eefd New user login 2022-10-16 17:12:23 +03:00
Alexandre Pujol
c15f2fbb7b
feat(profiles): ensure ibus-daemon integration with Ubuntu. 2022-10-16 12:15:12 +01:00
Alexandre Pujol
e7fbf5fbef
feat(profiles): better ubuntu integration. 2022-10-15 18:03:23 +01:00
Alexandre Pujol
2aa4618dda
feat(profiles): gnome-session-binary ensure compatibility across distribution. 2022-10-15 17:32:01 +01:00
nobodysu
643a84997e
Unbreak Debian 11 and partially Ubuntu 22.04 (Wayland+GDM+Gnome) (#81)
* Unbreaking Debian 11 and partially Ubuntu 22.04

* pre-cleanup

* pre-cleanup2

* Update im-launch

* Update gnome-extension-ding

* polishing

* not yet

* Update ubuntu.flags

Allow GDM to boot. `No new privs` fix.

* Update debian.flags

Allow GDM to boot. `No new privs` fix.

* Update CONTRIBUTING.md

* fixes

* reverting w

* move setpriv to main.flags
2022-10-14 21:21:56 +00:00
Alexandre Pujol
bdcaa040fe
feat(profiles): add packagekitd. 2022-10-14 22:18:49 +01:00
Alexandre Pujol
b1950cbe91
feat(profiles): general update. 2022-10-14 22:17:27 +01:00
Alexandre Pujol
3c841e6d6a
fix(profiles): ensure all firefox start is cached. 2022-10-14 22:13:23 +01:00
Alexandre Pujol
513abeb59d
refactor: move child profiles into children group. 2022-10-14 22:12:46 +01:00
Alexandre Pujol
eddf6bfc4f
feat(profiles): general update. 2022-10-08 13:13:44 +01:00
Alexandre Pujol
e226f4eb03
feat(profiles): add iwd. 2022-10-06 21:13:05 +01:00
Alexandre Pujol
736e44a483
feat(profiles): general update. 2022-10-06 20:53:54 +01:00
Alexandre Pujol
ddedb39f3d
refactor: move profile in correct group. 2022-10-06 20:51:30 +01:00
Alexandre Pujol
e4e54a26ef
feat(profiles): restrict path access in pacman. 2022-10-06 20:50:41 +01:00
Alexandre Pujol
ece6524886
fix(profile): fix gio-launch-desktop attachments. 2022-10-06 20:48:08 +01:00
Alexandre Pujol
418107f11e
feat(profiles): allow gvfs-metadata on some profile that really need it. 2022-10-06 20:47:22 +01:00
Alexandre Pujol
1c97feb5c2
feat(profiles): add modprobed-db. 2022-10-06 20:45:31 +01:00
Alexandre Pujol
c2952b1ec5
feat(profiles): more flexibility in password-store dir name. 2022-10-06 20:43:39 +01:00
Alexandre Pujol
ac47e292ac
feat(profiles): general update. 2022-10-04 21:11:13 +01:00
Alexandre Pujol
d0a8030af8
fix(profile): add deny-sensitive-home abstraction. 2022-10-01 19:18:54 +01:00
Alexandre Pujol
8a55eb8330
fix(profile): fontconfig-cache-write needs /var/cache/fontconfig/ access. 2022-10-01 19:11:19 +01:00
Alexandre Pujol
f45c07dfa1
feat(profiles): child-open integration 2/2 2022-10-01 19:10:00 +01:00
Alexandre Pujol
b29f9675eb
feat(profiles): browser - add child-open integration & cleanup. 2022-10-01 19:08:15 +01:00
Alexandre Pujol
7d3c52036b
feat(profiles): add child-open. 2022-10-01 19:05:44 +01:00
Alexandre Pujol
e7d73243af
refactor: move child-systemctl the children group. 2022-10-01 19:04:35 +01:00
Alexandre Pujol
39740f9369
feat(profiles): add systemd-dissect. 2022-10-01 18:56:02 +01:00
Alexandre Pujol
1a73271a1a
feat(profiles): add localectl. 2022-10-01 18:53:11 +01:00
Alexandre Pujol
65bf8278bc
feat(profiles): add gnome-browser-connector-host. 2022-10-01 18:47:49 +01:00
Alexandre Pujol
7c3fcf260c
feat(profiles): add systemd-id128. 2022-10-01 18:46:32 +01:00
Alexandre Pujol
4681a495b3
feat(profiles): general update. 2022-10-01 18:45:08 +01:00
Alexandre Pujol
5580a34184
refactor: move chrome-gnome-shell to the gnome group. 2022-10-01 18:38:29 +01:00
Alexandre Pujol
768e50c6ab
fix: remove not modified lxc rules.
Fix #79
2022-09-28 11:54:29 +01:00
Alexandre Pujol
9f2b68dd5d
feat(profiles): add ubuntu-advantage-desktop-daemon. 2022-09-26 14:59:54 +01:00
Alexandre Pujol
205c2d7184
feat(profiles): new children group.
This group is reserved for profile  without an attachment path because
it is ended to be used only via "Px -> <profile-name>".
2022-09-26 14:59:18 +01:00
Alexandre Pujol
42f305b244
feat(profiles): add XDG_GAMES_DIR and user_games_dirs variables. 2022-09-24 18:23:11 +01:00
Alexandre Pujol
060ea3acc9
feat(profiles): add archlinux-keyring-wkd-sync. 2022-09-24 18:21:56 +01:00
Alexandre Pujol
8ff571549a
feat(profiles): add gnome-extension-manager. 2022-09-24 18:09:05 +01:00
Alexandre Pujol
a02e67d980
feat(profiles): askpass -> code-askpass. 2022-09-24 18:08:00 +01:00
Alexandre Pujol
f2989321eb
feat(profiles): general update. 2022-09-24 18:06:06 +01:00
Alexandre Pujol
ae6cecde52
feat(profiles): deny gvfs-metadata when possible. 2022-09-24 17:59:20 +01:00
beroal
fcee586e9e
viewing DjVu and PostScript files (#78) 2022-09-24 11:13:21 +00:00
Alexandre Pujol
a432d656c8
feat(profiles): add sbctl. 2022-09-18 11:21:33 +01:00
Alexandre Pujol
4920922394
feat(profiles): add busctl. 2022-09-13 18:39:41 +01:00
Alexandre Pujol
3c7dda5060
feat(profiles): allow most dbus access to gnome. 2022-09-13 18:17:11 +01:00
Alexandre Pujol
58e060c470
Merge branch 'master' of github.com:roddhjav/apparmor.d
* 'master' of github.com:roddhjav/apparmor.d:
  bulk cross-OS awk (#75)
2022-09-11 20:48:03 +01:00
Alexandre Pujol
80a8be6d9e
feat(profiles): move some flags definition in main.flags 2022-09-11 20:47:49 +01:00
Alexandre Pujol
8ff5ed7a69
feat(profiles): general update. 2022-09-11 20:45:14 +01:00
nobodysu
78a180b2f6
bulk cross-OS awk (#75) 2022-09-11 19:40:34 +00:00
nobodysu
8fb8e7ced3 lost abi 2022-09-06 22:03:19 +01:00
nobodysu
912a6c48e5 cleanup2 2022-09-06 22:03:19 +01:00
nobodysu
7720802dac cleanup 2022-09-06 22:03:19 +01:00
nobodysu
cd646ea899 broader gdm 2022-09-06 22:03:19 +01:00
nobodysu
71a7c25a6d Delete lightdm-guest-session 2022-09-06 22:02:21 +01:00
nobodysu
fe59b4d3f8 Delete lightdm_chromium-browser 2022-09-06 22:02:21 +01:00
nobodysu
f02ec5d273 Delete lightdm 2022-09-06 22:02:21 +01:00
Jeroen
9818daba5f
LVM and general update (#68)
* Small fixes

* General update

* Add LVM

* Various small fixes

* Add profile

* Typo

* sbin to regex

* Date and time to extends

* Read cmdline

* Remove grep duplicate

* Small fixes

* Typo

* Permissions for warning scripts

* Add net_admin for multipath
2022-09-06 21:01:17 +00:00
nobodysu
1649b427f8
Ubuntu 22.04, third batch (#65)
* initial

* ready

* cleanup

* cleanup2

* Update dbus-gtk
2022-09-06 17:00:18 +00:00
Alexandre Pujol
70aea89ad4
Revert "fix: the trash abstraction has been upstreamed."
This reverts commit 688a62e9bc.

Fix #71
2022-09-06 17:52:08 +01:00
Alexandre Pujol
746a36bfb4
feat(profiles): add our virt-aa-helper. 2022-09-03 16:10:17 +01:00
Alexandre Pujol
769627fc25
feat(profiles): remove libvirt abstractions. 2022-09-03 16:06:31 +01:00
Alexandre Pujol
892d44cca2
feat(profiles): remove unused abstractions. 2022-09-03 16:05:37 +01:00
Alexandre Pujol
688a62e9bc
fix: the trash abstraction has been upstreamed. 2022-09-03 16:04:53 +01:00
Alexandre Pujol
3b56d3ff0f
feat(profiles): use the new hex variable. 2022-09-03 14:43:34 +01:00
Alexandre Pujol
5d0c521e44
feat(profiles): move aurpublish profile. 2022-09-03 14:29:07 +01:00
Alexandre Pujol
14fd88aa2f
feat(profiles): add profiles for cups. 2022-08-31 22:10:41 +01:00
Alexandre Pujol
30f0b69a67
feat(profiles): add losetup profile. 2022-08-31 21:58:55 +01:00
Alexandre Pujol
0f61c4649c
feat(profiles): general update. 2022-08-31 21:54:33 +01:00
Alexandre Pujol
0238adaaf1
Merge branch 'ubuntu2204__2' of https://github.com/nobodysu/apparmor.d into nobodysu-ubuntu2204__2
* 'ubuntu2204__2' of https://github.com/nobodysu/apparmor.d:
  Update pkexec
  Update polkitd
  update
  polishing
  polishing
  Ubuntu 22.04, second batch
2022-08-22 22:10:46 +01:00
nobodysu
bea1aab15a
Update pkexec 2022-08-21 21:24:20 +00:00
nobodysu
43a366cca3
Update polkitd 2022-08-21 21:23:05 +00:00
Alexandre Pujol
9d4956df0d
feat(profiles): general update. 2022-08-21 20:16:29 +01:00
Alexandre Pujol
e1e7d611ed
fix(profiles): ensure pinentry can start. See #66. 2022-08-20 13:45:42 +01:00
Alexandre Pujol
79860f207d
feat(profiles): initial support for dockerd. 2022-08-19 21:26:17 +01:00
Alexandre Pujol
e6c91fdfd7
feat(profiles): general update. 2022-08-19 21:10:10 +01:00
Jeroen Rijken
af603fbc62 Revert "tty and pts are part of abstractions/consoles"
This reverts commit 51a33f3f5e.
2022-08-19 19:25:22 +01:00
Jeroen Rijken
35087ea4bb Add missing brackets 2022-08-19 19:25:22 +01:00
Jeroen Rijken
d538d2a718 Add write to block 2022-08-19 19:25:22 +01:00
Jeroen Rijken
be2a66afff read all block devices 2022-08-19 19:25:22 +01:00
Jeroen Rijken
c680dfe7db sort rules 2022-08-19 19:25:22 +01:00
Jeroen Rijken
e64011c4de zed temp file 2022-08-19 19:25:22 +01:00
Jeroen Rijken
3c634e8967 Create sanoid under run 2022-08-19 19:25:22 +01:00
Jeroen Rijken
f5634b2803 Move update-grub to grub 2022-08-19 19:25:22 +01:00
Jeroen Rijken
5c6bf4c91b Remove duplicate consoles 2022-08-19 19:25:22 +01:00
Jeroen Rijken
75a66e573e Use openssl abstraction 2022-08-19 19:25:22 +01:00
Jeroen Rijken
af0c622b35 Replace rm with mr. 2022-08-19 19:25:22 +01:00
Jeroen
e62465b72f Use multiarch for lib
Co-authored-by: Alex <roddhjav@users.noreply.github.com>
2022-08-19 19:25:22 +01:00
Jeroen Rijken
20f7e01ccc Brackets 2022-08-19 19:25:22 +01:00
Jeroen Rijken
7621dc9974 Fix typo's 2022-08-19 19:25:22 +01:00
Jeroen Rijken
689f48b217 motd fixes 2022-08-19 19:25:22 +01:00
Jeroen Rijken
cf63b97c9b Add avahi 2022-08-19 19:25:22 +01:00
Jeroen Rijken
099a97cb36 General update 2022-08-19 19:25:22 +01:00
Jeroen Rijken
575d781c88 Various ZFS fixes 2022-08-19 19:25:22 +01:00
Jeroen Rijken
005dec1a53 tty and pts are part of abstractions/consoles 2022-08-19 19:25:22 +01:00
Jeroen Rijken
7ee9644325 Add profiles for whoami, whereis, which, findmnt, users, sanoid and syncoid. 2022-08-19 19:25:22 +01:00
Jeroen Rijken
6af5c76fb8 Add and update CNI profiles 2022-08-19 19:25:22 +01:00
Jeroen Rijken
b1112e35a7 Add templates for all grub commands 2022-08-19 19:25:22 +01:00
Jeroen Rijken
169a730d3f Add profiles for grub-mkconfig, grub-mkrelpath, grub-probe, grub-script-check and update-grub. 2022-08-19 19:25:22 +01:00
Alexandre Pujol
c0356e92e5
feat(aa-log): add support dbus session log using journactl. 2022-08-19 19:05:46 +01:00
nobodysu
e65a78972b
Merge branch 'master' into ubuntu2204__2 2022-08-18 15:36:21 +00:00
nobodysu
355d958e26 update 2022-08-18 18:22:56 +03:00
Alexandre Pujol
a2fa2421cb
feat(profiles): add the @{hex} variables. 2022-08-13 20:44:59 +01:00
Alexandre Pujol
66b529497d
feat(profiles): initial support for steam & steam games. 2022-08-13 20:36:52 +01:00
Alexandre Pujol
3e331bd656
fix(profiles): @{PROC}/@{uid} -> @{PROC}/@{pid} 2022-08-13 20:33:58 +01:00
Alexandre Pujol
c148aa978c
feat(profiles): general update. 2022-08-13 20:31:57 +01:00
Jeroen Rijken
e02b12aa6d Add libexec for apt 2022-08-13 15:21:35 +01:00
Jeroen Rijken
cd93d98bf4 Add support for adding snapshots to grub. 2022-08-13 15:21:35 +01:00
Jeroen Rijken
30cbac1181 Fix typo 2022-08-13 15:21:35 +01:00
Jeroen Rijken
5646c90d4c Fix zsysd profile name 2022-08-13 15:21:35 +01:00
Jeroen Rijken
b6b510aa36 Remove entries duplicate with base abstractions. 2022-08-13 15:21:35 +01:00
Jeroen Rijken
ddf5f1f512 Use nameservice-strict, fix exec 2022-08-13 15:21:35 +01:00
Jeroen Rijken
e2e14510ff Small fixes 2022-08-13 15:21:35 +01:00
Jeroen Rijken
2affbf6734 Cosmetic fixes 2022-08-13 15:21:35 +01:00
Jeroen Rijken
03881d5614 Add capability, dbus and some proc 2022-08-13 15:21:35 +01:00
Jeroen Rijken
a9fd0706d1 Move complain flag 2022-08-13 15:21:35 +01:00