Commit graph

814 commits

Author SHA1 Message Date
Jeroen Rijken
118c412378 General update 2023-01-22 12:45:32 +00:00
Alexandre Pujol
64ad329dd9
feat(profiles): Cleanup udev rules. 2023-01-19 18:51:16 +00:00
Alexandre Pujol
43606814cc
fix(profiles): compilation fix. 2023-01-18 23:38:48 +00:00
Alexandre Pujol
2f563fa818
feat(profile): general update. 2023-01-18 23:37:06 +00:00
Alexandre Pujol
5b15521255
feat(profile): gemeral update.
See: #104.
2023-01-18 23:22:49 +00:00
Alexandre Pujol
a16d645dcb
feat(profile): improve xorg start from xinit.
See: #105.
2023-01-18 22:52:32 +00:00
Alexandre Pujol
477993df16
fix(profile): gnome-calculator is not yet confined.
This kind of program should not be confined but sandboxed anyway.
See #101
2023-01-18 10:04:17 +00:00
Alexandre Pujol
4b5d1e1a79
feat(profile): general update.
See:  #101
2023-01-16 19:01:22 +00:00
Alexandre Pujol
1f16025c10
feat(profile): general update.
See:  #102
2023-01-15 19:22:18 +00:00
Alexandre Pujol
8ba25a3f6e
feat(profile): rewrite keepassxc.
See:  #102
2023-01-15 18:57:35 +00:00
Alexandre Pujol
55edf06936
feat(profiles): second general update. See #101 2023-01-15 17:38:28 +00:00
Alexandre Pujol
c59a40ec4e
feat(profiles): general update. See #101 2023-01-15 17:15:26 +00:00
Alexandre Pujol
f20aa4f548
feat(profiles): general update. 2023-01-14 13:28:21 +00:00
Alexandre Pujol
c637d03d81
fix(profiles): profile build fix. 2023-01-14 13:24:53 +00:00
Alexandre Pujol
0ec39dfe98
fix(profile): journald: be less strict on file format.
Fix  #98.
2023-01-14 13:20:16 +00:00
Alexandre Pujol
4b10da9fc7
fix(profiles): do not break pacman if the pkg install script is not confined.
fix #99
2023-01-14 13:10:43 +00:00
Alexandre Pujol
356dfa08e8
fix(profiles): be less precise regarding hadware.
fix #97
2023-01-14 13:06:27 +00:00
Alexandre Pujol
2431ba98aa
feat(profile): include more rule from #94. 2023-01-14 13:00:01 +00:00
Alexandre Pujol
7c4c48f4c3
fix(profile): initial fix for #94. 2023-01-12 18:24:06 +00:00
Alexandre Pujol
600d929d85
feat(profiles): general update. 2022-12-15 19:41:51 +00:00
Alexandre Pujol
11cc9bd672
feat: merge pacman mkinitcpio hooks. 2022-12-10 19:12:10 +00:00
Alexandre Pujol
c453484eab
fix(profiles): docker pull need full access of the container. 2022-12-10 15:18:00 +00:00
Alexandre Pujol
ee83e1c33c
feat(profiles): general update. 2022-12-09 19:14:56 +00:00
Alexandre Pujol
19d005bf59
feat(profiles): add the @{XDG_WORK_DIR} variable. 2022-12-09 19:13:06 +00:00
Alexandre Pujol
2246e8ae63
feat(profiles): merge the two packagekitd profiles in one. 2022-12-09 19:12:19 +00:00
Alexandre Pujol
90dc848766
feat(profiles): mkinitcpio support for systemd hooks. 2022-12-09 18:55:42 +00:00
Alexandre Pujol
372766f757
Merge branch 'master' of github.com:roddhjav/apparmor.d
* 'master' of github.com:roddhjav/apparmor.d:
  wireshark
2022-12-09 18:54:11 +00:00
Alexandre Pujol
ac25454f02
feat(profiles): improve x11 integraion. 2022-12-09 18:53:18 +00:00
Alexandre Pujol
dd232695d3
feat(profiles): refractor all chromium based browsers.
All chromium based browser now use the new chromium abstraction.
2022-12-09 18:50:57 +00:00
Alexandre Pujol
7f231caf1b
feat(profiles): update some dbus rules. 2022-12-07 20:42:36 +00:00
Alexandre Pujol
bec892b179
fix: disk-write need access to /dev/mapper/ too. 2022-12-07 20:41:07 +00:00
Alexandre Pujol
53e04cc10e
feat(profiles): update chrome profiles. 2022-12-07 20:40:34 +00:00
nobody43
038e2882b5 wireshark 2022-11-30 20:45:13 +00:00
Alexandre Pujol
f8b6dfae5c
fix: ensure sys/device/cpu/possible is in the base abs for all dist. 2022-11-29 20:24:38 +00:00
Alexandre Pujol
1e5d90afe8
feat(profiles): general update. 2022-11-29 12:02:38 +00:00
Alexandre Pujol
d52a7bd52a
fix(profiles): fix wayland cursor path. 2022-11-29 11:57:23 +00:00
Alexandre Pujol
f5cb901eef
feat(profiles): new wayland cursor file. 2022-11-28 18:08:01 +00:00
Alexandre Pujol
9a46df81b9
feat(profiles): remove rules promoted into the base abstraction. 2022-11-28 18:05:29 +00:00
Alexandre Pujol
1fa427ca81
feat(profiles): general update. 2022-11-20 11:42:08 +00:00
Alexandre Pujol
0837c158cb
feat(profiles): general update. 2022-11-13 18:27:47 +00:00
Alexandre Pujol
26f838b73f
feat(profiles): general update. 2022-11-11 22:18:55 +00:00
Alexandre Pujol
fd88162c55
feat(profiles): disks access - add NBD devices. 2022-11-11 21:41:04 +00:00
Alexandre Pujol
dd13de385e
feat(profiles): general update. 2022-11-05 17:25:27 +00:00
Alexandre Pujol
18a8b42cbf
feat(profiles): add initial version of iwctl. 2022-11-05 17:13:39 +00:00
Alexandre Pujol
157e2a5df6
feat(profiles): grub update. 2022-11-03 21:42:16 +00:00
Alexandre Pujol
a90cdbe879
feat(profiles): general update. 2022-11-03 21:40:01 +00:00
Alexandre Pujol
fabddee9d6
feat(profiles): add os-prober. 2022-10-23 11:27:50 +01:00
Alexandre Pujol
d6cd1af9c8
feat(profiles): add initial version of nmcli. 2022-10-23 11:26:42 +01:00
Alexandre Pujol
0168f8b13b
feat(profiles): add gnome-software. 2022-10-23 11:25:23 +01:00
nobody43
f94faf697e
Read-only root compatibility (#86)
* Read-only root compatibility

* remove complain

Co-authored-by: nobodysu <nobodysu@users.noreply.github.com>
2022-10-18 18:23:52 +00:00
Alexandre Pujol
5fdbc2d00e
fix(profiles): minor bug fixes. 2022-10-18 19:20:12 +01:00
nobody43
81fd594be2
Update apparmor.d/profiles-g-l/htop
Co-authored-by: Alex <roddhjav@users.noreply.github.com>
2022-10-17 15:09:52 +00:00
nobodysu
8d61d3256a more profiles 2022-10-17 17:07:26 +03:00
nobodysu
349689cba4 polishing2 2022-10-16 17:46:39 +03:00
nobodysu
41659f073c polishing 2022-10-16 17:45:00 +03:00
nobodysu
c6ca84ded4 remove spaces 2022-10-16 17:20:49 +03:00
nobodysu
f637c70f99 remove complain 2022-10-16 17:17:53 +03:00
nobodysu
ac7c42eefd New user login 2022-10-16 17:12:23 +03:00
Alexandre Pujol
c15f2fbb7b
feat(profiles): ensure ibus-daemon integration with Ubuntu. 2022-10-16 12:15:12 +01:00
Alexandre Pujol
e7fbf5fbef
feat(profiles): better ubuntu integration. 2022-10-15 18:03:23 +01:00
Alexandre Pujol
2aa4618dda
feat(profiles): gnome-session-binary ensure compatibility across distribution. 2022-10-15 17:32:01 +01:00
nobodysu
643a84997e
Unbreak Debian 11 and partially Ubuntu 22.04 (Wayland+GDM+Gnome) (#81)
* Unbreaking Debian 11 and partially Ubuntu 22.04

* pre-cleanup

* pre-cleanup2

* Update im-launch

* Update gnome-extension-ding

* polishing

* not yet

* Update ubuntu.flags

Allow GDM to boot. `No new privs` fix.

* Update debian.flags

Allow GDM to boot. `No new privs` fix.

* Update CONTRIBUTING.md

* fixes

* reverting w

* move setpriv to main.flags
2022-10-14 21:21:56 +00:00
Alexandre Pujol
bdcaa040fe
feat(profiles): add packagekitd. 2022-10-14 22:18:49 +01:00
Alexandre Pujol
b1950cbe91
feat(profiles): general update. 2022-10-14 22:17:27 +01:00
Alexandre Pujol
3c841e6d6a
fix(profiles): ensure all firefox start is cached. 2022-10-14 22:13:23 +01:00
Alexandre Pujol
513abeb59d
refactor: move child profiles into children group. 2022-10-14 22:12:46 +01:00
Alexandre Pujol
eddf6bfc4f
feat(profiles): general update. 2022-10-08 13:13:44 +01:00
Alexandre Pujol
e226f4eb03
feat(profiles): add iwd. 2022-10-06 21:13:05 +01:00
Alexandre Pujol
736e44a483
feat(profiles): general update. 2022-10-06 20:53:54 +01:00
Alexandre Pujol
ddedb39f3d
refactor: move profile in correct group. 2022-10-06 20:51:30 +01:00
Alexandre Pujol
e4e54a26ef
feat(profiles): restrict path access in pacman. 2022-10-06 20:50:41 +01:00
Alexandre Pujol
ece6524886
fix(profile): fix gio-launch-desktop attachments. 2022-10-06 20:48:08 +01:00
Alexandre Pujol
418107f11e
feat(profiles): allow gvfs-metadata on some profile that really need it. 2022-10-06 20:47:22 +01:00
Alexandre Pujol
1c97feb5c2
feat(profiles): add modprobed-db. 2022-10-06 20:45:31 +01:00
Alexandre Pujol
c2952b1ec5
feat(profiles): more flexibility in password-store dir name. 2022-10-06 20:43:39 +01:00
Alexandre Pujol
ac47e292ac
feat(profiles): general update. 2022-10-04 21:11:13 +01:00
Alexandre Pujol
d0a8030af8
fix(profile): add deny-sensitive-home abstraction. 2022-10-01 19:18:54 +01:00
Alexandre Pujol
8a55eb8330
fix(profile): fontconfig-cache-write needs /var/cache/fontconfig/ access. 2022-10-01 19:11:19 +01:00
Alexandre Pujol
f45c07dfa1
feat(profiles): child-open integration 2/2 2022-10-01 19:10:00 +01:00
Alexandre Pujol
b29f9675eb
feat(profiles): browser - add child-open integration & cleanup. 2022-10-01 19:08:15 +01:00
Alexandre Pujol
7d3c52036b
feat(profiles): add child-open. 2022-10-01 19:05:44 +01:00
Alexandre Pujol
e7d73243af
refactor: move child-systemctl the children group. 2022-10-01 19:04:35 +01:00
Alexandre Pujol
39740f9369
feat(profiles): add systemd-dissect. 2022-10-01 18:56:02 +01:00
Alexandre Pujol
1a73271a1a
feat(profiles): add localectl. 2022-10-01 18:53:11 +01:00
Alexandre Pujol
65bf8278bc
feat(profiles): add gnome-browser-connector-host. 2022-10-01 18:47:49 +01:00
Alexandre Pujol
7c3fcf260c
feat(profiles): add systemd-id128. 2022-10-01 18:46:32 +01:00
Alexandre Pujol
4681a495b3
feat(profiles): general update. 2022-10-01 18:45:08 +01:00
Alexandre Pujol
5580a34184
refactor: move chrome-gnome-shell to the gnome group. 2022-10-01 18:38:29 +01:00
Alexandre Pujol
768e50c6ab
fix: remove not modified lxc rules.
Fix #79
2022-09-28 11:54:29 +01:00
Alexandre Pujol
9f2b68dd5d
feat(profiles): add ubuntu-advantage-desktop-daemon. 2022-09-26 14:59:54 +01:00
Alexandre Pujol
205c2d7184
feat(profiles): new children group.
This group is reserved for profile  without an attachment path because
it is ended to be used only via "Px -> <profile-name>".
2022-09-26 14:59:18 +01:00
Alexandre Pujol
42f305b244
feat(profiles): add XDG_GAMES_DIR and user_games_dirs variables. 2022-09-24 18:23:11 +01:00
Alexandre Pujol
060ea3acc9
feat(profiles): add archlinux-keyring-wkd-sync. 2022-09-24 18:21:56 +01:00
Alexandre Pujol
8ff571549a
feat(profiles): add gnome-extension-manager. 2022-09-24 18:09:05 +01:00
Alexandre Pujol
a02e67d980
feat(profiles): askpass -> code-askpass. 2022-09-24 18:08:00 +01:00
Alexandre Pujol
f2989321eb
feat(profiles): general update. 2022-09-24 18:06:06 +01:00
Alexandre Pujol
ae6cecde52
feat(profiles): deny gvfs-metadata when possible. 2022-09-24 17:59:20 +01:00
beroal
fcee586e9e
viewing DjVu and PostScript files (#78) 2022-09-24 11:13:21 +00:00
Alexandre Pujol
a432d656c8
feat(profiles): add sbctl. 2022-09-18 11:21:33 +01:00
Alexandre Pujol
4920922394
feat(profiles): add busctl. 2022-09-13 18:39:41 +01:00