Alexandre Pujol
1131fdf412
feat(profiles): add kgx.
2023-03-31 16:49:41 +01:00
Alexandre Pujol
e84e22a917
feat(kde): move more sddm and kde profiles in the kde group.
2023-03-31 16:29:55 +01:00
Alexandre Pujol
cbc1d8faf3
feat(profiles): small profiles update.
2023-03-29 23:55:43 +01:00
Alexandre Pujol
f3d4912be8
feat(profiles): better kde integration
...
Step 1: Ensure it can boot.
2023-03-29 23:54:23 +01:00
Alexandre Pujol
df792530cd
feat(profile): add kreadconfig5 & some network integration.
...
See: #134
2023-03-28 22:11:12 +01:00
Alexandre Pujol
aaa24f644b
feat(profile): zypper & kde integration.
...
See: #134
2023-03-28 00:02:35 +01:00
Alexandre Pujol
e73fc07792
fix: single profile error.
2023-03-27 23:41:29 +01:00
Alexandre Pujol
ed4bd4628a
feat: remove conflicting files with upstream.
...
See: #131
2023-03-27 22:59:59 +01:00
Alexandre Pujol
41766ebd2a
feat(profiles): better integration with openSUSE.
...
See #134
2023-03-27 22:22:36 +01:00
Alexandre Pujol
4ca3ced1a5
feat(browserpass): gpg give access to password repo.
2023-03-27 21:43:38 +01:00
Alexandre Pujol
b793968690
feat(profiles): general update.
2023-03-27 21:42:13 +01:00
Alexandre Pujol
c7cf156de9
feat(profiles): add most virtio related profiles.
2023-03-25 15:54:20 +00:00
Alexandre Pujol
02499d90f0
feat(profiles): general update.
2023-03-25 15:48:59 +00:00
Alexandre Pujol
c5098007a5
feat(abs): cleanup abstraction completion.
...
Most of this is already upstreamed.
2023-03-23 17:33:35 +00:00
Alexandre Pujol
0dfce498c8
feat(profiles): general update.
2023-03-19 17:04:51 +00:00
Alexandre Pujol
1042728ca6
feat(profiles): general update.
2023-03-12 15:35:59 +00:00
Alexandre Pujol
25e2d9d1f4
feat(profiles): ensure gpg stays confined.
2023-03-12 15:33:21 +00:00
Alexandre Pujol
3349dbda7f
feat(full): systemd also need pulseaudio.
2023-03-12 15:30:44 +00:00
Alexandre Pujol
98a1a00a14
feat(profiles): add gsettings.
2023-03-12 15:30:33 +00:00
Alexandre Pujol
8bdce8bd62
feat(profiles): finishing replacing local *_ext variables.
2023-03-12 15:24:53 +00:00
Alexandre Pujol
e0fc80aaa9
feat(profiles): add onefetch and gping.
2023-03-10 10:26:00 +00:00
Alexandre Pujol
c4e607ebfe
feat(profiles): add landscape-sysinfo profiles.
2023-03-10 10:25:18 +00:00
Alexandre Pujol
0d6e3deb24
feat(profiles): start replacing local *_ext variables.
2023-03-10 10:24:02 +00:00
Alexandre Pujol
847eb3deeb
feat(profiles): add steam_lib_dirs local variables.
2023-03-10 10:22:23 +00:00
Alexandre Pujol
52b3c1bcc5
feat(profiles): general update.
2023-03-10 10:20:48 +00:00
Alexandre Pujol
5e77974546
feat(profiles): better cockpit integration.
2023-03-07 18:01:07 +00:00
Alexandre Pujol
558cb68f23
feat(profiles): general update.
2023-03-07 17:57:57 +00:00
Alexandre Pujol
3ff8e3847d
feat(profiles): general update.
2023-03-03 12:20:10 +00:00
Alex
1028e8a02b
fix: sddm profile.
2023-03-03 12:03:43 +00:00
Jeroen Rijken
2f0d31522f
Restructure ap lists
...
Signed-off-by: Jeroen Rijken <jeroen.rijken@xs4all.nl>
2023-03-03 11:56:23 +00:00
Jeroen Rijken
48953bcc6e
Remove duplicate
...
Signed-off-by: Jeroen Rijken <jeroen.rijken@xs4all.nl>
2023-03-03 11:56:23 +00:00
Jeroen Rijken
c2c7e69bc6
Syntax fix
...
Signed-off-by: Jeroen Rijken <jeroen.rijken@xs4all.nl>
2023-03-03 11:56:23 +00:00
Jeroen Rijken
dfadf0aef0
Resolve merge conflicts
...
Signed-off-by: Jeroen Rijken <jeroen.rijken@xs4all.nl>
2023-03-03 11:56:23 +00:00
Jeroen Rijken
6911ca7c13
General update
...
Signed-off-by: Jeroen Rijken <jeroen.rijken@xs4all.nl>
2023-03-03 11:56:23 +00:00
curiosityseeker
4bcfcb25c6
Adding capability net_admin ( #130 )
...
capability net_admin is needed to prevent breaking the boot process on Arch Linux with KDE.
2023-03-03 11:54:49 +00:00
curiosityseeker
3619065c5a
Update chromium
2023-03-02 18:55:24 +00:00
curiosityseeker
f78f46bf48
Update firefox
2023-03-02 18:55:24 +00:00
curiosityseeker
f3f5884abb
Update brave-wrapper
2023-03-02 18:55:24 +00:00
curiosityseeker
0eaafaa8a4
Update brave-sandbox
2023-03-02 18:55:24 +00:00
curiosityseeker
02db2d9641
Update brave
2023-03-02 18:55:24 +00:00
curiosityseeker
c1adeb8c32
Update chromium
...
keepassxc-proxy rPUX -> rix
See issue #128
2023-03-02 18:55:24 +00:00
curiosityseeker
781e567d6b
Update firefox
...
keepassxc-proxy rPX -> rix
See issue #128
2023-03-02 18:55:24 +00:00
nobody43
c4edf2a6c7
cleanup
2023-03-02 17:50:45 +00:00
nobody43
670411c114
fixes
2023-03-02 17:50:45 +00:00
nobody43
8c0e0a9de1
freedesktop
2023-03-02 17:50:45 +00:00
Alexandre Pujol
491d2176a8
feat(profiles): add systemd as user.
2023-02-24 20:40:04 +00:00
curiosityseeker
11458251c7
Update dhcpcd
...
Thanks!
2023-02-23 11:30:03 +00:00
curiosityseeker
f64edfe6b8
Update dhcpcd
...
Ups , that was an oversight.
2023-02-23 11:30:03 +00:00
curiosityseeker
46bf6f9016
Update dhcpcd
2023-02-23 11:30:03 +00:00
curiosityseeker
2e00023c23
Update dhcpcd
...
Tested on Arch Linux
2023-02-23 11:30:03 +00:00
curiosityseeker
1cc86685ae
Create dhcpcd
...
Tested on Arch Linux.
2023-02-23 11:30:03 +00:00
nobody43
902420c721
vars
2023-02-22 21:52:55 +00:00
nobody43
7e3bb8b1ea
polishing
2023-02-22 21:52:55 +00:00
nobody43
8b4407ca02
fixes
2023-02-22 21:52:55 +00:00
nobody43
01714cc4f0
fixes2
2023-02-22 21:52:55 +00:00
nobody43
d18e012f9e
fixes
2023-02-22 21:52:55 +00:00
nobody43
a873af1f26
general_initial
2023-02-22 21:52:55 +00:00
Alexandre Pujol
6c88213562
feat(aa-log): new journalctl command means new log file.
2023-02-19 21:19:25 +00:00
Alexandre Pujol
a804fe7b56
feat(systemd): add systemd-cryptsetup
2023-02-19 20:35:03 +00:00
Alexandre Pujol
45ca052063
feat(systemd): add systemd-sulogin-shell
2023-02-19 20:33:29 +00:00
Alexandre Pujol
eca22caf8a
feat(systemd): add some systemd-user-generators.
2023-02-19 20:32:18 +00:00
Alexandre Pujol
5d6a4e4e4c
feat(systemd): add systemd-user{db,work}
2023-02-19 20:29:22 +00:00
Alexandre Pujol
c2076a213b
feat(systemd): add systemd-home{d,work}
2023-02-19 20:28:00 +00:00
Alexandre Pujol
da5a3fc6a2
feat: chrome has more multiple possible name.
2023-02-19 20:25:30 +00:00
Alexandre Pujol
c812507792
feat: better integration with Ubuntu Pro.
2023-02-19 20:24:57 +00:00
Alexandre Pujol
cf6aeb5b94
fix: rPX -> rPx
2023-02-19 20:23:37 +00:00
Alexandre Pujol
ef292b585c
feat(profiles): first set of rules for Ubuntu Core support.
2023-02-19 18:22:18 +00:00
Alexandre Pujol
d66a8fa082
feat(profiles): general update.
2023-02-19 17:42:05 +00:00
Alexandre Pujol
9b1aaeb68f
feat(firewalld): forgot non legacy nft.
...
See #101 .
2023-02-12 21:59:41 +00:00
Alexandre Pujol
4d317cf807
feat(profiles): remove setpriv.
...
This program should be included by other profile, not generally confined.
2023-02-11 20:20:45 +00:00
Alexandre Pujol
fbd5996531
feat(profiles): general update.
2023-02-11 19:03:01 +00:00
Alexandre Pujol
ef4ed8ba95
fix(power-profiles): see #101
2023-02-08 16:47:52 +00:00
Alexandre Pujol
b53f7559db
feat(pass): better editor integration.
...
Co-authored-by: Andy Ramos <maplewood_broer@8shield.net>
2023-02-08 16:42:39 +00:00
Alexandre Pujol
77b9699270
feat(profiles): add sdcv.
...
Co-authored-by: Andy Ramos <maplewood_broer@8shield.net>
2023-02-08 16:39:37 +00:00
Alexandre Pujol
b4a09ab13a
feat(profiles): networkmanager: compatibility with some distribution
...
Co-authored-by: Andy Ramos <maplewood_broer@8shield.net>
2023-02-08 16:36:24 +00:00
Alexandre Pujol
f20ccedf4f
feat(profiles): general update.
2023-02-07 23:18:10 +00:00
Alexandre Pujol
37dd97a875
feat(profiles): a the XDG_IMG_DIR and user_img_dirs variables
2023-02-07 23:15:18 +00:00
Alexandre Pujol
a8808d3da6
feat(profiles): general update.
2023-02-06 21:25:09 +00:00
Alexandre Pujol
1ff3636fb5
fix: systemd-sleep-grub name.
2023-02-05 00:23:20 +00:00
Alexandre Pujol
a402200dbe
feat(profiles): general update.
2023-02-05 00:03:20 +00:00
Alexandre Pujol
d29bee2789
feat(profiles): add chronyd.
2023-02-04 23:56:56 +00:00
Alexandre Pujol
b16d172e22
feat(systemd): add systemd-cat & systemd-inhibit
2023-02-04 23:56:10 +00:00
Alexandre Pujol
e93e80ee20
feat(opensuse): final opensuse integration.
2023-02-04 23:55:14 +00:00
Alexandre Pujol
609097ef27
feat(opensuse): x11 integration.
2023-02-04 23:48:35 +00:00
Alexandre Pujol
faf7663cde
feat(opensuse): add pidof.
2023-02-04 23:45:39 +00:00
Alexandre Pujol
5bc4860c39
feat(opensuse): add firewalld
2023-02-04 23:44:46 +00:00
Alexandre Pujol
35fcb6fc71
feat(opensuse): desktop integration.
2023-02-04 23:43:18 +00:00
Alexandre Pujol
ff76602843
feat(systemd): split systemd-sleep profile.
2023-02-04 23:41:19 +00:00
Alexandre Pujol
ad23864094
feat(opensuse): gnome integration.
2023-02-04 23:39:19 +00:00
Alexandre Pujol
ff64fbfa51
feat(profiles): cleanup some profiles.
2023-02-04 23:36:49 +00:00
Alexandre Pujol
bac87f9547
feat(profiles): use /etc read only variable: etc_ro
2023-02-04 23:34:29 +00:00
Alexandre Pujol
6e56cfccc9
feat(profiles): make profile entrypoint more universal.
2023-02-04 23:28:17 +00:00
Alexandre Pujol
222b57acb5
feat(profiles): rethink the firefox profiles.
2023-02-04 19:43:05 +00:00
Alexandre Pujol
6061d4981b
feat(profiles): chromium_install_dirs -> chromium_lib_dirs
2023-02-04 19:08:02 +00:00
Alexandre Pujol
e9d61fb7d9
feat(profiles): gpg -> gpg{,2}
2023-02-04 19:02:47 +00:00
Alexandre Pujol
8dca20c5c6
feat(profiles): general update.
2023-02-01 22:37:33 +00:00
Alexandre Pujol
f19379c55f
feat(abs): extend deny-sensitive with new user_password_store_dirs var.
2023-02-01 22:34:54 +00:00
Vladimir Bauer
7d660f7c23
gpgconf: allow write access to @{run}/user/@{uid}/gnupg/ ( #114 )
2023-02-01 10:34:50 +00:00
Vladimir Bauer
01419d82c4
pacman: allow dir read in or below @{user_pkg_dirs} ( #113 )
2023-01-31 11:43:45 +00:00
Vladimir Bauer
3c3f164e91
minor syntax fix ( #112 )
2023-01-29 10:53:41 +00:00
Alexandre Pujol
72e0618aa2
feat(profile): libvirt allow CPU information.
...
See #101 .
2023-01-28 19:09:15 +00:00
nobody43
9c61f7ad3e
remove lsd
2023-01-28 15:25:01 +00:00
nobody43
5a9ae96ae8
let it error, works fine
2023-01-28 15:25:01 +00:00
nobody43
9739f2d69e
Armbian
2023-01-28 15:25:01 +00:00
nobody43
8bb5b064d1
fixes
2023-01-28 15:25:01 +00:00
nobody43
4f3864a9b6
rustdesk
2023-01-28 15:25:01 +00:00
nobody43
02ced44a5c
header
2023-01-28 15:25:01 +00:00
nobody43
80de79b66a
Add new profiles
2023-01-28 15:25:01 +00:00
Alexandre Pujol
7a24f98f48
feat(profiles): general update.
2023-01-27 22:31:55 +00:00
Alexandre Pujol
23312c1640
feat(profile): ensure compatibility with userspace tools.
2023-01-27 22:00:10 +00:00
Alexandre Pujol
b7299cecbb
feat(profiles): remove avahi-daemon as it already exist.
2023-01-27 21:50:11 +00:00
Alexandre Pujol
3498be7a37
feat(profiles): better udev range.
2023-01-26 20:05:47 +00:00
Alexandre Pujol
4521061f73
feat(profiles): remove the unused jdownloader profile.
2023-01-26 20:03:08 +00:00
Alexandre Pujol
5a722c42a2
feat(profiles): rewrite the vlc profile.
2023-01-26 20:02:33 +00:00
Alexandre Pujol
807bf7f1c8
feat(profile): general update.
2023-01-24 20:07:10 +00:00
Alexandre Pujol
9343807632
feat(profiles): audit udev on the browsers.
2023-01-24 19:55:50 +00:00
Jeroen Rijken
118c412378
General update
2023-01-22 12:45:32 +00:00
Alexandre Pujol
64ad329dd9
feat(profiles): Cleanup udev rules.
2023-01-19 18:51:16 +00:00
Alexandre Pujol
43606814cc
fix(profiles): compilation fix.
2023-01-18 23:38:48 +00:00
Alexandre Pujol
2f563fa818
feat(profile): general update.
2023-01-18 23:37:06 +00:00
Alexandre Pujol
5b15521255
feat(profile): gemeral update.
...
See: #104 .
2023-01-18 23:22:49 +00:00
Alexandre Pujol
a16d645dcb
feat(profile): improve xorg start from xinit.
...
See: #105 .
2023-01-18 22:52:32 +00:00
Alexandre Pujol
477993df16
fix(profile): gnome-calculator is not yet confined.
...
This kind of program should not be confined but sandboxed anyway.
See #101
2023-01-18 10:04:17 +00:00
Alexandre Pujol
4b5d1e1a79
feat(profile): general update.
...
See: #101
2023-01-16 19:01:22 +00:00
Alexandre Pujol
1f16025c10
feat(profile): general update.
...
See: #102
2023-01-15 19:22:18 +00:00
Alexandre Pujol
8ba25a3f6e
feat(profile): rewrite keepassxc.
...
See: #102
2023-01-15 18:57:35 +00:00
Alexandre Pujol
55edf06936
feat(profiles): second general update. See #101
2023-01-15 17:38:28 +00:00
Alexandre Pujol
c59a40ec4e
feat(profiles): general update. See #101
2023-01-15 17:15:26 +00:00
Alexandre Pujol
f20aa4f548
feat(profiles): general update.
2023-01-14 13:28:21 +00:00
Alexandre Pujol
c637d03d81
fix(profiles): profile build fix.
2023-01-14 13:24:53 +00:00
Alexandre Pujol
0ec39dfe98
fix(profile): journald: be less strict on file format.
...
Fix #98 .
2023-01-14 13:20:16 +00:00
Alexandre Pujol
4b10da9fc7
fix(profiles): do not break pacman if the pkg install script is not confined.
...
fix #99
2023-01-14 13:10:43 +00:00
Alexandre Pujol
356dfa08e8
fix(profiles): be less precise regarding hadware.
...
fix #97
2023-01-14 13:06:27 +00:00
Alexandre Pujol
2431ba98aa
feat(profile): include more rule from #94 .
2023-01-14 13:00:01 +00:00
Alexandre Pujol
7c4c48f4c3
fix(profile): initial fix for #94 .
2023-01-12 18:24:06 +00:00
Alexandre Pujol
600d929d85
feat(profiles): general update.
2022-12-15 19:41:51 +00:00
Alexandre Pujol
11cc9bd672
feat: merge pacman mkinitcpio hooks.
2022-12-10 19:12:10 +00:00
Alexandre Pujol
c453484eab
fix(profiles): docker pull need full access of the container.
2022-12-10 15:18:00 +00:00
Alexandre Pujol
ee83e1c33c
feat(profiles): general update.
2022-12-09 19:14:56 +00:00
Alexandre Pujol
19d005bf59
feat(profiles): add the @{XDG_WORK_DIR} variable.
2022-12-09 19:13:06 +00:00
Alexandre Pujol
2246e8ae63
feat(profiles): merge the two packagekitd profiles in one.
2022-12-09 19:12:19 +00:00
Alexandre Pujol
90dc848766
feat(profiles): mkinitcpio support for systemd hooks.
2022-12-09 18:55:42 +00:00
Alexandre Pujol
372766f757
Merge branch 'master' of github.com:roddhjav/apparmor.d
...
* 'master' of github.com:roddhjav/apparmor.d:
wireshark
2022-12-09 18:54:11 +00:00
Alexandre Pujol
ac25454f02
feat(profiles): improve x11 integraion.
2022-12-09 18:53:18 +00:00
Alexandre Pujol
dd232695d3
feat(profiles): refractor all chromium based browsers.
...
All chromium based browser now use the new chromium abstraction.
2022-12-09 18:50:57 +00:00
Alexandre Pujol
7f231caf1b
feat(profiles): update some dbus rules.
2022-12-07 20:42:36 +00:00
Alexandre Pujol
bec892b179
fix: disk-write need access to /dev/mapper/ too.
2022-12-07 20:41:07 +00:00
Alexandre Pujol
53e04cc10e
feat(profiles): update chrome profiles.
2022-12-07 20:40:34 +00:00
nobody43
038e2882b5
wireshark
2022-11-30 20:45:13 +00:00
Alexandre Pujol
f8b6dfae5c
fix: ensure sys/device/cpu/possible is in the base abs for all dist.
2022-11-29 20:24:38 +00:00
Alexandre Pujol
1e5d90afe8
feat(profiles): general update.
2022-11-29 12:02:38 +00:00
Alexandre Pujol
d52a7bd52a
fix(profiles): fix wayland cursor path.
2022-11-29 11:57:23 +00:00
Alexandre Pujol
f5cb901eef
feat(profiles): new wayland cursor file.
2022-11-28 18:08:01 +00:00
Alexandre Pujol
9a46df81b9
feat(profiles): remove rules promoted into the base abstraction.
2022-11-28 18:05:29 +00:00
Alexandre Pujol
1fa427ca81
feat(profiles): general update.
2022-11-20 11:42:08 +00:00
Alexandre Pujol
0837c158cb
feat(profiles): general update.
2022-11-13 18:27:47 +00:00
Alexandre Pujol
26f838b73f
feat(profiles): general update.
2022-11-11 22:18:55 +00:00
Alexandre Pujol
fd88162c55
feat(profiles): disks access - add NBD devices.
2022-11-11 21:41:04 +00:00
Alexandre Pujol
dd13de385e
feat(profiles): general update.
2022-11-05 17:25:27 +00:00
Alexandre Pujol
18a8b42cbf
feat(profiles): add initial version of iwctl.
2022-11-05 17:13:39 +00:00
Alexandre Pujol
157e2a5df6
feat(profiles): grub update.
2022-11-03 21:42:16 +00:00
Alexandre Pujol
a90cdbe879
feat(profiles): general update.
2022-11-03 21:40:01 +00:00
Alexandre Pujol
fabddee9d6
feat(profiles): add os-prober.
2022-10-23 11:27:50 +01:00
Alexandre Pujol
d6cd1af9c8
feat(profiles): add initial version of nmcli.
2022-10-23 11:26:42 +01:00
Alexandre Pujol
0168f8b13b
feat(profiles): add gnome-software.
2022-10-23 11:25:23 +01:00
nobody43
f94faf697e
Read-only root compatibility ( #86 )
...
* Read-only root compatibility
* remove complain
Co-authored-by: nobodysu <nobodysu@users.noreply.github.com>
2022-10-18 18:23:52 +00:00
Alexandre Pujol
5fdbc2d00e
fix(profiles): minor bug fixes.
2022-10-18 19:20:12 +01:00
nobody43
81fd594be2
Update apparmor.d/profiles-g-l/htop
...
Co-authored-by: Alex <roddhjav@users.noreply.github.com>
2022-10-17 15:09:52 +00:00
nobodysu
8d61d3256a
more profiles
2022-10-17 17:07:26 +03:00
nobodysu
349689cba4
polishing2
2022-10-16 17:46:39 +03:00
nobodysu
41659f073c
polishing
2022-10-16 17:45:00 +03:00
nobodysu
c6ca84ded4
remove spaces
2022-10-16 17:20:49 +03:00
nobodysu
f637c70f99
remove complain
2022-10-16 17:17:53 +03:00
nobodysu
ac7c42eefd
New user login
2022-10-16 17:12:23 +03:00
Alexandre Pujol
c15f2fbb7b
feat(profiles): ensure ibus-daemon integration with Ubuntu.
2022-10-16 12:15:12 +01:00
Alexandre Pujol
e7fbf5fbef
feat(profiles): better ubuntu integration.
2022-10-15 18:03:23 +01:00
Alexandre Pujol
2aa4618dda
feat(profiles): gnome-session-binary ensure compatibility across distribution.
2022-10-15 17:32:01 +01:00
nobodysu
643a84997e
Unbreak Debian 11 and partially Ubuntu 22.04 (Wayland+GDM+Gnome) ( #81 )
...
* Unbreaking Debian 11 and partially Ubuntu 22.04
* pre-cleanup
* pre-cleanup2
* Update im-launch
* Update gnome-extension-ding
* polishing
* not yet
* Update ubuntu.flags
Allow GDM to boot. `No new privs` fix.
* Update debian.flags
Allow GDM to boot. `No new privs` fix.
* Update CONTRIBUTING.md
* fixes
* reverting w
* move setpriv to main.flags
2022-10-14 21:21:56 +00:00
Alexandre Pujol
bdcaa040fe
feat(profiles): add packagekitd.
2022-10-14 22:18:49 +01:00
Alexandre Pujol
b1950cbe91
feat(profiles): general update.
2022-10-14 22:17:27 +01:00
Alexandre Pujol
3c841e6d6a
fix(profiles): ensure all firefox start is cached.
2022-10-14 22:13:23 +01:00
Alexandre Pujol
513abeb59d
refactor: move child profiles into children group.
2022-10-14 22:12:46 +01:00
Alexandre Pujol
eddf6bfc4f
feat(profiles): general update.
2022-10-08 13:13:44 +01:00
Alexandre Pujol
e226f4eb03
feat(profiles): add iwd.
2022-10-06 21:13:05 +01:00
Alexandre Pujol
736e44a483
feat(profiles): general update.
2022-10-06 20:53:54 +01:00
Alexandre Pujol
ddedb39f3d
refactor: move profile in correct group.
2022-10-06 20:51:30 +01:00
Alexandre Pujol
e4e54a26ef
feat(profiles): restrict path access in pacman.
2022-10-06 20:50:41 +01:00
Alexandre Pujol
ece6524886
fix(profile): fix gio-launch-desktop attachments.
2022-10-06 20:48:08 +01:00
Alexandre Pujol
418107f11e
feat(profiles): allow gvfs-metadata on some profile that really need it.
2022-10-06 20:47:22 +01:00
Alexandre Pujol
1c97feb5c2
feat(profiles): add modprobed-db.
2022-10-06 20:45:31 +01:00
Alexandre Pujol
c2952b1ec5
feat(profiles): more flexibility in password-store dir name.
2022-10-06 20:43:39 +01:00
Alexandre Pujol
ac47e292ac
feat(profiles): general update.
2022-10-04 21:11:13 +01:00
Alexandre Pujol
d0a8030af8
fix(profile): add deny-sensitive-home abstraction.
2022-10-01 19:18:54 +01:00
Alexandre Pujol
8a55eb8330
fix(profile): fontconfig-cache-write needs /var/cache/fontconfig/ access.
2022-10-01 19:11:19 +01:00
Alexandre Pujol
f45c07dfa1
feat(profiles): child-open integration 2/2
2022-10-01 19:10:00 +01:00
Alexandre Pujol
b29f9675eb
feat(profiles): browser - add child-open integration & cleanup.
2022-10-01 19:08:15 +01:00
Alexandre Pujol
7d3c52036b
feat(profiles): add child-open.
2022-10-01 19:05:44 +01:00
Alexandre Pujol
e7d73243af
refactor: move child-systemctl the children group.
2022-10-01 19:04:35 +01:00
Alexandre Pujol
39740f9369
feat(profiles): add systemd-dissect.
2022-10-01 18:56:02 +01:00
Alexandre Pujol
1a73271a1a
feat(profiles): add localectl.
2022-10-01 18:53:11 +01:00
Alexandre Pujol
65bf8278bc
feat(profiles): add gnome-browser-connector-host.
2022-10-01 18:47:49 +01:00
Alexandre Pujol
7c3fcf260c
feat(profiles): add systemd-id128.
2022-10-01 18:46:32 +01:00
Alexandre Pujol
4681a495b3
feat(profiles): general update.
2022-10-01 18:45:08 +01:00
Alexandre Pujol
5580a34184
refactor: move chrome-gnome-shell to the gnome group.
2022-10-01 18:38:29 +01:00
Alexandre Pujol
768e50c6ab
fix: remove not modified lxc rules.
...
Fix #79
2022-09-28 11:54:29 +01:00
Alexandre Pujol
9f2b68dd5d
feat(profiles): add ubuntu-advantage-desktop-daemon.
2022-09-26 14:59:54 +01:00
Alexandre Pujol
205c2d7184
feat(profiles): new children group.
...
This group is reserved for profile without an attachment path because
it is ended to be used only via "Px -> <profile-name>".
2022-09-26 14:59:18 +01:00
Alexandre Pujol
42f305b244
feat(profiles): add XDG_GAMES_DIR and user_games_dirs variables.
2022-09-24 18:23:11 +01:00
Alexandre Pujol
060ea3acc9
feat(profiles): add archlinux-keyring-wkd-sync.
2022-09-24 18:21:56 +01:00
Alexandre Pujol
8ff571549a
feat(profiles): add gnome-extension-manager.
2022-09-24 18:09:05 +01:00
Alexandre Pujol
a02e67d980
feat(profiles): askpass -> code-askpass.
2022-09-24 18:08:00 +01:00
Alexandre Pujol
f2989321eb
feat(profiles): general update.
2022-09-24 18:06:06 +01:00
Alexandre Pujol
ae6cecde52
feat(profiles): deny gvfs-metadata when possible.
2022-09-24 17:59:20 +01:00
beroal
fcee586e9e
viewing DjVu and PostScript files ( #78 )
2022-09-24 11:13:21 +00:00
Alexandre Pujol
a432d656c8
feat(profiles): add sbctl.
2022-09-18 11:21:33 +01:00
Alexandre Pujol
4920922394
feat(profiles): add busctl.
2022-09-13 18:39:41 +01:00
Alexandre Pujol
3c7dda5060
feat(profiles): allow most dbus access to gnome.
2022-09-13 18:17:11 +01:00
Alexandre Pujol
58e060c470
Merge branch 'master' of github.com:roddhjav/apparmor.d
...
* 'master' of github.com:roddhjav/apparmor.d:
bulk cross-OS awk (#75 )
2022-09-11 20:48:03 +01:00
Alexandre Pujol
80a8be6d9e
feat(profiles): move some flags definition in main.flags
2022-09-11 20:47:49 +01:00
Alexandre Pujol
8ff5ed7a69
feat(profiles): general update.
2022-09-11 20:45:14 +01:00
nobodysu
78a180b2f6
bulk cross-OS awk ( #75 )
2022-09-11 19:40:34 +00:00
nobodysu
8fb8e7ced3
lost abi
2022-09-06 22:03:19 +01:00
nobodysu
912a6c48e5
cleanup2
2022-09-06 22:03:19 +01:00
nobodysu
7720802dac
cleanup
2022-09-06 22:03:19 +01:00
nobodysu
cd646ea899
broader gdm
2022-09-06 22:03:19 +01:00
nobodysu
71a7c25a6d
Delete lightdm-guest-session
2022-09-06 22:02:21 +01:00
nobodysu
fe59b4d3f8
Delete lightdm_chromium-browser
2022-09-06 22:02:21 +01:00
nobodysu
f02ec5d273
Delete lightdm
2022-09-06 22:02:21 +01:00
Jeroen
9818daba5f
LVM and general update ( #68 )
...
* Small fixes
* General update
* Add LVM
* Various small fixes
* Add profile
* Typo
* sbin to regex
* Date and time to extends
* Read cmdline
* Remove grep duplicate
* Small fixes
* Typo
* Permissions for warning scripts
* Add net_admin for multipath
2022-09-06 21:01:17 +00:00
nobodysu
1649b427f8
Ubuntu 22.04, third batch ( #65 )
...
* initial
* ready
* cleanup
* cleanup2
* Update dbus-gtk
2022-09-06 17:00:18 +00:00
Alexandre Pujol
70aea89ad4
Revert "fix: the trash abstraction has been upstreamed."
...
This reverts commit 688a62e9bc
.
Fix #71
2022-09-06 17:52:08 +01:00
Alexandre Pujol
746a36bfb4
feat(profiles): add our virt-aa-helper.
2022-09-03 16:10:17 +01:00
Alexandre Pujol
769627fc25
feat(profiles): remove libvirt abstractions.
2022-09-03 16:06:31 +01:00
Alexandre Pujol
892d44cca2
feat(profiles): remove unused abstractions.
2022-09-03 16:05:37 +01:00
Alexandre Pujol
688a62e9bc
fix: the trash abstraction has been upstreamed.
2022-09-03 16:04:53 +01:00
Alexandre Pujol
3b56d3ff0f
feat(profiles): use the new hex variable.
2022-09-03 14:43:34 +01:00
Alexandre Pujol
5d0c521e44
feat(profiles): move aurpublish profile.
2022-09-03 14:29:07 +01:00
Alexandre Pujol
14fd88aa2f
feat(profiles): add profiles for cups.
2022-08-31 22:10:41 +01:00
Alexandre Pujol
30f0b69a67
feat(profiles): add losetup profile.
2022-08-31 21:58:55 +01:00
Alexandre Pujol
0f61c4649c
feat(profiles): general update.
2022-08-31 21:54:33 +01:00
Alexandre Pujol
0238adaaf1
Merge branch 'ubuntu2204__2' of https://github.com/nobodysu/apparmor.d into nobodysu-ubuntu2204__2
...
* 'ubuntu2204__2' of https://github.com/nobodysu/apparmor.d :
Update pkexec
Update polkitd
update
polishing
polishing
Ubuntu 22.04, second batch
2022-08-22 22:10:46 +01:00
nobodysu
bea1aab15a
Update pkexec
2022-08-21 21:24:20 +00:00
nobodysu
43a366cca3
Update polkitd
2022-08-21 21:23:05 +00:00
Alexandre Pujol
9d4956df0d
feat(profiles): general update.
2022-08-21 20:16:29 +01:00
Alexandre Pujol
e1e7d611ed
fix(profiles): ensure pinentry can start. See #66 .
2022-08-20 13:45:42 +01:00
Alexandre Pujol
79860f207d
feat(profiles): initial support for dockerd.
2022-08-19 21:26:17 +01:00
Alexandre Pujol
e6c91fdfd7
feat(profiles): general update.
2022-08-19 21:10:10 +01:00
Jeroen Rijken
af603fbc62
Revert "tty and pts are part of abstractions/consoles"
...
This reverts commit 51a33f3f5e
.
2022-08-19 19:25:22 +01:00
Jeroen Rijken
35087ea4bb
Add missing brackets
2022-08-19 19:25:22 +01:00
Jeroen Rijken
d538d2a718
Add write to block
2022-08-19 19:25:22 +01:00
Jeroen Rijken
be2a66afff
read all block devices
2022-08-19 19:25:22 +01:00
Jeroen Rijken
c680dfe7db
sort rules
2022-08-19 19:25:22 +01:00
Jeroen Rijken
e64011c4de
zed temp file
2022-08-19 19:25:22 +01:00
Jeroen Rijken
3c634e8967
Create sanoid under run
2022-08-19 19:25:22 +01:00
Jeroen Rijken
f5634b2803
Move update-grub to grub
2022-08-19 19:25:22 +01:00
Jeroen Rijken
5c6bf4c91b
Remove duplicate consoles
2022-08-19 19:25:22 +01:00
Jeroen Rijken
75a66e573e
Use openssl abstraction
2022-08-19 19:25:22 +01:00
Jeroen Rijken
af0c622b35
Replace rm with mr.
2022-08-19 19:25:22 +01:00
Jeroen
e62465b72f
Use multiarch for lib
...
Co-authored-by: Alex <roddhjav@users.noreply.github.com>
2022-08-19 19:25:22 +01:00
Jeroen Rijken
20f7e01ccc
Brackets
2022-08-19 19:25:22 +01:00
Jeroen Rijken
7621dc9974
Fix typo's
2022-08-19 19:25:22 +01:00
Jeroen Rijken
689f48b217
motd fixes
2022-08-19 19:25:22 +01:00
Jeroen Rijken
cf63b97c9b
Add avahi
2022-08-19 19:25:22 +01:00
Jeroen Rijken
099a97cb36
General update
2022-08-19 19:25:22 +01:00
Jeroen Rijken
575d781c88
Various ZFS fixes
2022-08-19 19:25:22 +01:00
Jeroen Rijken
005dec1a53
tty and pts are part of abstractions/consoles
2022-08-19 19:25:22 +01:00
Jeroen Rijken
7ee9644325
Add profiles for whoami, whereis, which, findmnt, users, sanoid and syncoid.
2022-08-19 19:25:22 +01:00
Jeroen Rijken
6af5c76fb8
Add and update CNI profiles
2022-08-19 19:25:22 +01:00
Jeroen Rijken
b1112e35a7
Add templates for all grub commands
2022-08-19 19:25:22 +01:00
Jeroen Rijken
169a730d3f
Add profiles for grub-mkconfig, grub-mkrelpath, grub-probe, grub-script-check and update-grub.
2022-08-19 19:25:22 +01:00
Alexandre Pujol
c0356e92e5
feat(aa-log): add support dbus session log using journactl.
2022-08-19 19:05:46 +01:00
nobodysu
e65a78972b
Merge branch 'master' into ubuntu2204__2
2022-08-18 15:36:21 +00:00
nobodysu
355d958e26
update
2022-08-18 18:22:56 +03:00
Alexandre Pujol
a2fa2421cb
feat(profiles): add the @{hex} variables.
2022-08-13 20:44:59 +01:00
Alexandre Pujol
66b529497d
feat(profiles): initial support for steam & steam games.
2022-08-13 20:36:52 +01:00
Alexandre Pujol
3e331bd656
fix(profiles): @{PROC}/@{uid} -> @{PROC}/@{pid}
2022-08-13 20:33:58 +01:00
Alexandre Pujol
c148aa978c
feat(profiles): general update.
2022-08-13 20:31:57 +01:00
Jeroen Rijken
e02b12aa6d
Add libexec for apt
2022-08-13 15:21:35 +01:00
Jeroen Rijken
cd93d98bf4
Add support for adding snapshots to grub.
2022-08-13 15:21:35 +01:00
Jeroen Rijken
30cbac1181
Fix typo
2022-08-13 15:21:35 +01:00
Jeroen Rijken
5646c90d4c
Fix zsysd profile name
2022-08-13 15:21:35 +01:00
Jeroen Rijken
b6b510aa36
Remove entries duplicate with base abstractions.
2022-08-13 15:21:35 +01:00
Jeroen Rijken
ddf5f1f512
Use nameservice-strict, fix exec
2022-08-13 15:21:35 +01:00
Jeroen Rijken
e2e14510ff
Small fixes
2022-08-13 15:21:35 +01:00
Jeroen Rijken
2affbf6734
Cosmetic fixes
2022-08-13 15:21:35 +01:00
Jeroen Rijken
03881d5614
Add capability, dbus and some proc
2022-08-13 15:21:35 +01:00
Jeroen Rijken
a9fd0706d1
Move complain flag
2022-08-13 15:21:35 +01:00
Jeroen Rijken
d083e927a4
Initial support for zsys
2022-08-13 15:21:35 +01:00
nobodysu
33ff1abc35
Update thunderbird
2022-08-12 14:41:58 +00:00
nobodysu
db8e881c06
Merge branch 'master' into thunderbird2
2022-08-12 14:35:53 +00:00
nobodysu
00a1e70720
polishing
2022-08-12 17:23:13 +03:00
nobodysu
f2394963d0
cleanup
2022-08-08 02:39:35 +03:00
nobodysu
2c2f6e5557
rearrangement
2022-08-02 19:31:00 +03:00
nobodysu
af49797425
cleanup
2022-08-02 01:59:54 +03:00
nobodysu
c96b6d8ee7
dbus-gtk
2022-08-02 01:47:47 +03:00
Alexandre Pujol
2878fa6a2e
feat(profiles): general update.
2022-07-29 16:47:09 +01:00
Jeroen Rijken
58cfe9ad37
Small fixes
2022-07-29 16:41:19 +01:00
Jeroen Rijken
616753aea0
Consolidate rules
2022-07-29 16:41:19 +01:00
Jeroen Rijken
fcea04c69b
Remove complain flags
2022-07-29 16:41:19 +01:00
Jeroen Rijken
e724d835ed
Add ps to ptrace
2022-07-29 16:41:19 +01:00
Jeroen Rijken
e4d118365a
Add Kubernetes pause container
2022-07-29 16:41:19 +01:00
Jeroen Rijken
e6525e1f04
Add missing volumes
2022-07-29 16:41:19 +01:00
Jeroen Rijken
07f1db2725
Fix some typo's
2022-07-29 16:41:19 +01:00
Jeroen Rijken
465a31c638
General updates
2022-07-29 16:41:19 +01:00
Jeroen Rijken
33da7af6e8
container updates
2022-07-29 16:41:19 +01:00
Jeroen Rijken
3af11c4d16
ZFS updates
2022-07-29 16:41:19 +01:00
Alexandre Pujol
7aca29b244
feat(profiles): initial snap support.
2022-07-21 22:40:06 +01:00
Alexandre Pujol
177d27d94c
feat(profiles): general update.
2022-07-21 22:37:17 +01:00
Alexandre Pujol
58b96a7ba9
feat(profiles): add aptd profile.
2022-07-21 22:31:59 +01:00
Alexandre Pujol
595a27560f
feat(profiles): add mullvad profiles.
2022-07-21 20:17:03 +01:00
Alexandre Pujol
48c023d4bd
feat(profiles): containerd support for docker & cosmetic.
2022-07-21 20:15:02 +01:00
Jeroen Rijken
55bd85796c
packagekitd dbus updates
2022-07-21 20:05:56 +01:00
Jeroen Rijken
137433ce6e
dbus to NetworkManager
2022-07-21 20:05:56 +01:00
Jeroen Rijken
eb87e035b8
Initial containerd-shim-runc support
2022-07-21 20:05:56 +01:00
Jeroen Rijken
266d5c6dc0
Add IPV6
2022-07-21 19:46:45 +01:00
Jeroen Rijken
b404d7e4c4
Move xtables-nft to separate profile
2022-07-21 19:46:45 +01:00
Jeroen Rijken
130c562488
Allow containerd signal from k3s
2022-07-21 19:46:45 +01:00
Jeroen Rijken
61eab33cd8
Add ptrace subprofile
2022-07-21 19:46:45 +01:00
Jeroen Rijken
d6d9c943ae
Add missing permission
2022-07-21 19:46:45 +01:00
Jeroen Rijken
dca33292f7
Update ruleset for clean installation.
2022-07-21 19:46:45 +01:00
Jeroen Rijken
a1f4dbee50
First batch of cleanups based on PR comments.
2022-07-21 19:46:45 +01:00
Jeroen Rijken
c03c624472
Allow signals from containerd to calico
2022-07-21 19:46:45 +01:00
Jeroen Rijken
8f81a39df1
Support read AppArmor profiles
2022-07-21 19:46:45 +01:00
Jeroen Rijken
560250cf5f
Fix mode
2022-07-21 19:46:45 +01:00
Jeroen Rijken
2deb2a48a6
Fix name range.
2022-07-21 19:46:45 +01:00
Jeroen Rijken
a3415dc42c
Typo and calico proc.
2022-07-21 19:46:45 +01:00
Jeroen Rijken
c84455cca4
Fixes for container network creation.
2022-07-21 19:46:45 +01:00
Jeroen Rijken
3e006e3c76
Fix for calico unable to create network namespace.
2022-07-21 19:46:45 +01:00
Jeroen Rijken
5565217c91
Move xtables profile to child profile of k3s.
2022-07-21 19:46:45 +01:00
Jeroen Rijken
78cfb23bff
Apply suggested fixes from PR
2022-07-21 19:46:45 +01:00
Jeroen Rijken
5af6cda328
Allow dbus messages and user database reading.
2022-07-21 19:46:45 +01:00
Jeroen Rijken
28a3584c14
Initial support for xtables-nft-multi
2022-07-21 19:46:45 +01:00
Jeroen Rijken
463da2a8f4
Initial support for k3s
2022-07-21 19:46:45 +01:00
nobodysu
b8445e3b45
dbus style
2022-07-20 00:48:58 +03:00
Alexandre Pujol
f4dd2745d1
feat(profiles): add software-properties-dbus.
2022-07-19 00:03:01 +01:00
Alexandre Pujol
5b01f7963b
feat(profiles): add file-roller.
2022-07-18 23:58:12 +01:00
Alexandre Pujol
9692926752
feat(profiles): general update.
2022-07-18 23:57:25 +01:00
Jeroen Rijken
2ec802d40d
Remove deny root
2022-07-18 19:45:04 +01:00
Jeroen Rijken
e9bcd3f820
Small fixes
2022-07-18 19:45:04 +01:00
Jeroen Rijken
70aa5fdbb2
Small fixes
2022-07-18 19:45:04 +01:00
Jeroen Rijken
5a02490082
Needed for certain containers like calico
2022-07-18 19:45:04 +01:00
Jeroen Rijken
13aee74df9
Various containerd fixes
2022-07-18 19:45:04 +01:00
Alexandre Pujol
c750cb1b77
feat(profiles): general update.
2022-07-18 11:36:16 +01:00
Jeroen
081308db2f
Add ZFS Event Daemon ( #56 )
2022-07-17 22:04:13 +00:00
Alexandre Pujol
eb6c7548f5
feat(profiles): general update.
2022-07-15 21:55:59 +01:00
Jeroen Rijken
682df516bf
Make calico part of cni
2022-07-15 21:43:08 +01:00
Jeroen Rijken
02ad72b024
Allow containerd to (u)mount cni devices, and loopback to access them.
2022-07-15 21:43:08 +01:00
Jeroen Rijken
6c8e50534b
Cleanup profile
...
Signed-off-by: Jeroen Rijken <jeroen.rijken@xs4all.nl>
2022-07-15 21:43:08 +01:00
nobodysu
2d7ec5ad2c
Update spectre-meltdown-checker ( #50 )
...
* Update spectre-meltdown-checker
2022-07-15 20:42:15 +00:00
Alexandre Pujol
63f1a98c37
feat(profiles): add cron-ubuntu-fan.
2022-07-10 14:30:56 +01:00
Alexandre Pujol
23642eb0be
feat(profiles): general update.
2022-07-10 14:28:44 +01:00
Alexandre Pujol
c0e62f30bb
feat(profiles): add wireguard.
2022-07-10 14:24:30 +01:00
Alexandre Pujol
d8449de55e
feat(profiles): add and merge some cni profiles.
2022-07-10 14:24:09 +01:00
Alex
40d8c68f22
Merge branch 'master' into feat/cni
2022-07-10 13:41:50 +01:00
Jeroen Rijken
d10f2c073c
Alphabetical sorting, group common options.
2022-07-10 13:39:01 +01:00
Jeroen Rijken
59f8b893ff
Cleanup profiles according to standards
2022-07-10 13:39:01 +01:00
Jeroen Rijken
c9b4423e45
Allow mount-zfs access to pts
2022-07-10 13:39:01 +01:00
Jeroen Rijken
da08ef6aa6
Typo
2022-07-10 13:39:01 +01:00
Jeroen Rijken
cc5d1a0e07
Initramfs generation updates
2022-07-10 13:39:01 +01:00
Jeroen Rijken
99c311e699
Executable updates for zpool
2022-07-10 13:39:01 +01:00
Jeroen Rijken
3810c1668e
Basic ZFS support
2022-07-10 13:39:01 +01:00
Alex
6e1e7dc32b
Apply suggestions from code review
2022-07-10 12:38:11 +00:00
Jeroen Rijken
8a13d71edb
Update CNI path, set containerd to attach_disconnected, cleanups.
2022-07-10 13:36:44 +02:00
Jeroen Rijken
9fb43325a3
Add headers to new policies
2022-07-10 12:49:33 +02:00
Jeroen Rijken
7524bfa343
Syntax fixes
2022-07-10 12:43:52 +02:00
Jeroen Rijken
8413f6b9e6
Allow containerd to access SSL certs for pulling container images.
2022-07-10 11:51:15 +02:00
Jeroen Rijken
edcd130432
Calico profile cleanup.
2022-07-09 20:53:21 +02:00
Jeroen Rijken
2ffa3d1339
Cleanup profiles according to standards part 1/2
2022-07-09 20:46:59 +02:00
Jeroen Rijken
3d63f9e21e
Add AppArmor support to containerd
2022-07-06 20:50:14 +02:00
Jeroen Rijken
9ea910d1a0
Add CNI for containerd
2022-07-06 20:49:52 +02:00
Alexandre Pujol
4a37cd1149
feat(profiles): add software-properties-gtk & ubuntu-advantage.
2022-07-03 20:29:45 +01:00
Alexandre Pujol
d04bb8f5b2
feat(profiles): add systemd-resolve.
2022-07-03 20:28:26 +01:00
Alexandre Pujol
f6de2fbe7a
feat(profiles): general update.
2022-07-03 20:27:48 +01:00
Alexandre Pujol
1d45e8ec2e
feat(profiles): add do-release-upgrade.
2022-06-26 23:07:00 +01:00
Alexandre Pujol
72a042e6ef
feat(profiles): add notify-reboot-required.
2022-06-26 23:06:42 +01:00
Alexandre Pujol
6c89ee8630
feat(profiles): add gnome-characters-backgroudservice.
2022-06-26 23:05:53 +01:00
Alexandre Pujol
8969786104
feat(profiles): add plymouthd.
2022-06-26 23:05:24 +01:00
Alexandre Pujol
08beefe867
feat(profiles): general update.
2022-06-26 23:05:09 +01:00
Alexandre Pujol
e087349662
feat(profiles): define more xdg variables.
2022-06-26 17:32:12 +01:00
Alexandre Pujol
e69182e1df
feat(profiles): general update.
2022-06-26 16:40:48 +01:00
Alexandre Pujol
c04363c1b6
feat(profiles): reorganise a few profiles.
2022-06-25 00:18:26 +01:00
Alexandre Pujol
fcbe764ccf
feat(profiles): general update.
2022-06-25 00:16:05 +01:00
Alexandre Pujol
e942c057bd
feat(profiles): move netstat
2022-06-25 00:08:51 +01:00
Alexandre Pujol
20fd8376bd
feat(profiles): Rewrite and largelly restrict the libvirtd profile.
2022-06-18 22:49:32 +01:00
Alexandre Pujol
56afb90084
fix(profiles): fix some abstraction definitions.
2022-06-18 21:56:09 +01:00
Alexandre Pujol
393e339b48
feat(profiles): apply rule from #51 .
2022-06-14 22:54:26 +01:00
Alexandre Pujol
d93879d9df
chore: move some cron profiles.
2022-06-14 20:14:32 +01:00
Alexandre Pujol
08bb1b44a6
style(profiles): small rules improvment.
2022-06-14 19:25:45 +01:00
Alexandre Pujol
454456a844
style(profiles): better header for the abstractions.
2022-06-14 19:17:41 +01:00
Alexandre Pujol
10de7941b0
feat(profiles): add fprintd.
2022-06-14 19:12:38 +01:00
Alexandre Pujol
9ccda2a0a5
feat(profiles): initial version of mount.zfs
2022-06-14 19:11:46 +01:00
Alexandre Pujol
a792c4cb4e
feat(profiles): add some missing ubuntu profiles.
2022-06-14 19:09:50 +01:00
Alexandre Pujol
fb61f8ebff
feat(profiles): add language-validate.
2022-06-14 19:07:35 +01:00
Alexandre Pujol
9d81f5e88f
feat(profiles): reorganise the cron & run-parts profiles.
2022-06-14 19:06:34 +01:00
Alexandre Pujol
cc78beddda
feat(profiles): disks add support for zfs.
2022-06-14 19:03:46 +01:00
Alexandre Pujol
8487f5475a
feat(profiles): update ubuntu advantage profiles.
2022-06-13 22:18:17 +01:00
Alexandre Pujol
20303f53e3
feat(profiles): add the XDG_SCREENSHOTS_DIR variable.
2022-06-13 22:16:25 +01:00
Alexandre Pujol
2c6843f5fe
feat(profiles): add audit related profiles.
2022-06-13 22:15:13 +01:00
Alexandre Pujol
939363a9a7
feat(profiles): add mdevctl.
2022-06-13 22:14:29 +01:00
Alexandre Pujol
391131aad1
feat(profiles): update pkexec.
2022-06-13 22:14:11 +01:00
Alexandre Pujol
f71c0e41f8
feat(profiles): minor improvments.
2022-06-13 22:13:17 +01:00
Alexandre Pujol
7c2e92ba03
feat(profiles): add nologin.
2022-06-13 22:09:23 +01:00
Alexandre Pujol
10148786d2
feat(profiles): add some freedesktop related profiles.
2022-06-13 22:08:33 +01:00
Alexandre Pujol
039b7ab2cb
feat(profiles): update polkit-mate-authentication-agent.
2022-06-13 22:05:03 +01:00
Alexandre Pujol
d998b1dd6e
feat(profiles): improve ubuntu compatibility.
2022-06-13 22:04:12 +01:00
Alexandre Pujol
0cbcbb29a4
feat(profiles): improve/update apt related profiles.
2022-06-13 21:42:25 +01:00
Alexandre Pujol
7b0ef88358
feat(profiles): add some missing dbus rules.
2022-06-13 21:41:48 +01:00
Alexandre Pujol
6898bac12f
feat(profiles): add some missing dbus, MOUNTS and dconf rules.
2022-06-13 21:38:14 +01:00
Alexandre Pujol
50a18aac08
feat(profiles): add some core dbus rules.
2022-06-12 23:50:58 +01:00
Alexandre Pujol
24056c8cd1
feat(profiles): ensure bin, sbin compatibility for (u)mount.
2022-06-12 22:56:27 +01:00
Alexandre Pujol
779853dc7f
feat(profiles): new definition for MOUNTs, add MOUNTDIRS.
2022-06-12 22:51:37 +01:00
Alexandre Pujol
9493e783ce
feat(profiles): rethink the su & sudo profiles.
2022-06-12 22:19:13 +01:00
Alexandre Pujol
0896343bbc
feat(profiles): rethink the app launchers.
2022-06-12 22:17:38 +01:00
Alexandre Pujol
a5c9a58c3c
feat(profiles): complete the dbus-session abstactions and related rules.
2022-06-12 22:15:21 +01:00
Alexandre Pujol
8f53366cd8
feat(profiles): allow gnome-shell to send signal to all profiles.
2022-06-12 12:04:24 +01:00
Alexandre Pujol
80b337bdf4
revert(profiles): remove tor related profiles.
2022-06-12 12:02:16 +01:00
Alexandre Pujol
f53550525e
feat(profiles): add the X-strict abstraction.
2022-06-09 22:45:14 +01:00
Alexandre Pujol
5d45b8e7a7
feat(profiles): add the dconf-write abstraction.
2022-06-09 21:55:55 +01:00
Alexandre Pujol
583d7a15f0
feat(profiles): add dbus rules for some common profiles.
2022-06-05 23:06:14 +01:00
Alexandre Pujol
e949654614
feat(profiles): dbus abstactions and related rules.
2022-06-05 22:57:29 +01:00
Alexandre Pujol
63e5980d8d
feat(profiles): general update.
2022-06-05 22:47:37 +01:00
Alexandre Pujol
f6b6e99cde
feat(profiles): initial dbus rules for systemd profiles.
2022-06-05 14:53:10 +01:00
nobodysu
a333a77cb5
polishing
2022-06-05 15:36:10 +03:00
nobodysu
2bea426d27
polishing
2022-06-03 23:00:08 +03:00
Alexandre Pujol
a6a72cd5c3
feat(profiles): initial dbus integration (no dbus rule yet).
2022-06-03 20:38:23 +01:00
Alexandre Pujol
aa606bbdc4
feat(profiles): add swtpm_ioctl.
2022-06-03 20:23:28 +01:00
Alexandre Pujol
9ad819a196
feat(profiles): add install-catalog.
2022-06-03 20:22:07 +01:00
Alexandre Pujol
aa9a673fb6
feat(profiles): add anacron.
2022-06-03 20:21:20 +01:00
Alexandre Pujol
24cf14ff3a
feat(profiles): initial version of some ubuntu related profiles.
2022-06-03 20:20:32 +01:00
Alexandre Pujol
b9552c3f66
feat(profiles): add networkd-dispatcher.
2022-06-03 20:17:08 +01:00
Alexandre Pujol
82bbe96bfa
feat(profiles): add ModemManager.
2022-06-03 20:16:38 +01:00
Alexandre Pujol
82e6dc13e9
feat(profiles): add gnome-remote-desktop-daemon.
2022-06-03 20:15:23 +01:00
Alexandre Pujol
5987818b42
feat(profiles): add gnome-control-center-goa-helper.
2022-06-03 20:14:38 +01:00
Alexandre Pujol
c32b19a808
feat(profiles): general update.
2022-06-03 20:13:11 +01:00
Alexandre Pujol
879416b062
feat(profiles): better system nss rules in nameservice-strict.
2022-06-03 19:38:34 +01:00
Alexandre Pujol
d9a0e24e40
revert(profiles): remove deprecated profiles.
2022-06-03 19:06:06 +01:00
nobodysu
8b58289500
more polishing
2022-06-03 17:42:22 +00:00
nobodysu
722ce7f78f
logrotate: add shred
2022-06-03 17:42:22 +00:00
nobodysu
4a76a69632
polishing
2022-06-03 17:42:22 +00:00
nobodysu
9dab6b9794
stricter logind
2022-06-03 17:42:22 +00:00
nobodysu
6b4ae79806
up to date version
2022-06-03 17:42:22 +00:00
nobodysu
e547f6c7bd
lost somehow
2022-06-03 17:42:22 +00:00
nobodysu
db9bccc42a
complain
2022-06-03 17:42:22 +00:00
nobodysu
b42b8c66cc
Ubuntu 22.04, first batch and misc
2022-06-03 17:42:22 +00:00
nobodysu
599ed6464c
Ubuntu 22.04, second batch
2022-06-02 19:27:15 +03:00
nobodysu
936431411c
ubuntu2204
2022-06-02 02:00:16 +03:00
nobodysu
db649628a5
Update htop ( #48 )
2022-06-01 17:54:31 +00:00
nobodysu
7db753f0c9
Alphanumeric systemd sessions ( #47 )
2022-06-01 17:54:07 +00:00
nobodysu
b45161a68e
Armbian mmap ( #45 )
2022-06-01 17:50:27 +00:00
nobodysu
b4f7ed185c
More consoles
requirement after sshd
introduction ( #44 )
...
* consoles requirement after sshd introduction
* one more
2022-06-01 17:50:05 +00:00
nobodysu
e2b7f6594c
disks-read: Armbian / DietPi ( #40 )
2022-06-01 17:49:07 +00:00
nobodysu
d5f3d7f686
more egl paths
2022-06-01 20:04:20 +03:00
nobodysu
76417058a6
remove obsolete abstraction
2022-06-01 20:02:48 +03:00
nobodysu
8deddc8a2c
sshd: Ubuntu compatibility ( #37 )
...
* Ubuntu, allow fallback
* reverting to Ubuntu compatibility only
2022-05-23 22:16:22 +00:00
nobodysu
481b6d621b
pids and header
2022-05-23 20:30:46 +03:00
nobodysu
9a48515089
Add pstree ( #38 )
2022-05-23 16:55:58 +00:00
nobodysu
6c30e362ee
Add consoles
abstraction where needed ( #36 )
...
* add consoles abstraction where needed
* not now
2022-05-23 16:43:42 +00:00
nobodysu
a3f94f62b1
uuid
2022-05-23 01:47:42 +03:00
nobodysu
b263321c73
Ubuntu compatibility
2022-05-23 01:44:25 +03:00
Alexandre Pujol
d3d9277978
feat(profiles): more integration for ubuntu 22.04
2022-05-21 17:27:28 +01:00
Alexandre Pujol
e28f5a3bb4
feat(profiles): general update.
2022-05-21 17:25:31 +01:00
Alexandre Pujol
3d2197d7f0
feat(profiles): rewrite the system-config-printer profile.
2022-05-21 17:18:05 +01:00
Alexandre Pujol
df8cb3fe91
feat(profiles): add switcheroo-control.
2022-05-21 17:17:14 +01:00
Alexandre Pujol
6058ef7439
feat(profiles): add systemd-vconsole-setup
2022-05-21 17:16:33 +01:00
Alexandre Pujol
21250f5eec
feat(profiles): add needrestart-iucode-scan-versions.
2022-05-21 17:13:03 +01:00
Alexandre Pujol
1d284c03c3
feat(profiles): add spice-vdagent.
2022-05-21 17:11:20 +01:00
Alexandre Pujol
7a1304720e
feat(profiles): add qemu-ga.
2022-05-21 17:10:49 +01:00
Alexandre Pujol
a5b73375a2
feat(profiles): add im-launch
2022-05-21 17:10:14 +01:00
Alexandre Pujol
e46e9cfcf4
feat(profiles): add boltd.
2022-05-21 17:09:12 +01:00
Alexandre Pujol
59ba69a167
feat(profiles): add ubuntu specific profiles.
2022-05-21 17:07:37 +01:00
Alexandre Pujol
4c7ebb3a39
feat(profile): add gnome-extension-ding
...
When it is installed as a system extension only.
2022-05-21 16:52:59 +01:00
Alexandre Pujol
8b41f7c9c5
feat(profiles): add some ibus related profiles.
2022-05-21 16:51:46 +01:00
Alexandre Pujol
035bb74b29
feat(profiles: add plymouth.
2022-05-21 16:50:22 +01:00
Alexandre Pujol
0dbe0d2790
feat(profiles) add initial support for ubuntu 22.04
2022-05-21 16:49:45 +01:00
Alexandre Pujol
3ac7d41bf5
chore(profiles): needrestart profiles' apt -> m-r.
2022-05-21 16:38:16 +01:00
Alexandre Pujol
5c382d7eb3
feat(profiles): general update.
2022-05-15 22:56:42 +01:00
Alexandre Pujol
0b66933b45
feat(profiles): general update.
2022-05-09 21:51:18 +01:00
Alexandre Pujol
940c9de083
chore: reorganise the freedesktop group.
2022-05-07 13:18:36 +01:00
Alexandre Pujol
da1b3e1f1c
feat(profiles): general update.
2022-05-07 11:42:18 +01:00
Alexandre Pujol
6aadd82293
feat(profiles): add support for distribution that use /usr/libexec.
2022-05-07 11:35:21 +01:00
Alexandre Pujol
7377aed016
fix: remove absraction from upstream.
2022-05-06 21:29:06 +01:00
Alexandre Pujol
c91363a0b6
fix: abstraction gtk -> gtk complete.
2022-05-06 21:28:41 +01:00
Alexandre Pujol
82e53fd919
feat(profiles): add swtpm, swtpm_localca and swtpm_setup.
2022-05-02 18:12:07 +01:00
Alexandre Pujol
3018ce3bbd
feat(profiles): add flatpak-portal.
2022-05-02 18:07:15 +01:00
Alexandre Pujol
c61181b548
feat(profiles): add sshd profile.
2022-05-02 17:56:06 +01:00
Alexandre Pujol
b87f1859cf
refactor(profiles): merge apt & apt-get profiles.
2022-05-02 17:50:47 +01:00
Alexandre Pujol
8353f0f37f
feat(profiles): add needrestart.
2022-05-02 17:49:03 +01:00
Alexandre Pujol
90ae1ad454
feat(profiles): dpkg-status -> needrestart-dpkg-status
2022-05-02 17:34:58 +01:00
Alexandre Pujol
c950c74bf7
feat(profiles): general update.
2022-05-02 17:33:39 +01:00
Alexandre Pujol
f022ca3299
feat: move sys revision into the mesa abstraction.
2022-05-02 17:25:40 +01:00
Mikhail Morfikov
35a281d045
update apparmor profiles
...
Signed-off-by: Alexandre Pujol <alexandre@pujol.io>
2022-04-26 22:30:01 +01:00
Alexandre Pujol
85e7f58d3c
feat: add molly-guard profile.
2022-04-26 22:06:19 +01:00
Alexandre Pujol
e845a172c2
feat: update profiles.
2022-04-26 22:05:29 +01:00
Alexandre Pujol
84dc85b82d
fix: fix polkit integration.
2022-04-17 23:14:50 +01:00
Alexandre Pujol
0a7860694f
feat: profile update.
2022-04-17 23:13:53 +01:00
Alexandre Pujol
1ad60d3b1c
feat: profiles update.
2022-04-13 22:04:36 +01:00
Alexandre Pujol
ef9c451559
feat: support for gnome 42.
2022-04-13 20:47:28 +01:00
Alexandre Pujol
57df9ee898
feat: xdg-document-portal add flatpack integration.
2022-04-07 21:30:31 +01:00
Alexandre Pujol
87496adbc7
feat: add initial flatpack-system-helper
2022-04-07 21:28:13 +01:00
Alexandre Pujol
2ffa1faa23
feat: add initial version of login.
2022-04-07 21:18:55 +01:00
Alexandre Pujol
4702e8fdd3
feat: add nullmailer-send.
2022-04-07 21:11:21 +01:00
Alexandre Pujol
7479b595e9
feat: add irqbalance.
2022-04-07 21:11:02 +01:00
Alexandre Pujol
c60787b5f3
feat: add initial version of fail2ban.
2022-04-07 21:10:16 +01:00
Alexandre Pujol
3e15dcabc6
feat: add some con related profiles.
2022-04-07 21:08:40 +01:00
Alexandre Pujol
5eb4e1f526
feat: add initial version of atd.
2022-04-07 21:06:24 +01:00
Alexandre Pujol
5cbe2a0ec1
feat: add update-cracklib
2022-04-07 21:03:41 +01:00
Alexandre Pujol
40fdd3da5e
fix: remove irssi and pidgin as they are present in other sources.
2022-04-07 21:02:02 +01:00
Alexandre Pujol
26cb8f6b86
feat: add uptimed.
2022-04-07 21:01:01 +01:00
Alexandre Pujol
53682c678d
feat: add sulogin profile.
2022-04-07 21:00:39 +01:00
Alexandre Pujol
e078fe2767
feat: add etckeeper profile.
2022-04-07 20:58:58 +01:00
Alexandre Pujol
711c7d917c
feat: add agetty profile.
2022-04-07 20:57:32 +01:00
Alexandre Pujol
10cdde9fb7
feat: update profiles.
2022-04-07 20:53:35 +01:00
Alexandre Pujol
6d1fa42f25
feat: update profiles.
2022-03-30 22:20:56 +01:00
Alexandre Pujol
9d40327b00
refactor: simplify the trash abstraction.
2022-03-30 22:15:13 +01:00
Alexandre Pujol
a59387ac9e
Profile update.
2022-03-27 14:25:29 +01:00
Alexandre Pujol
20c3b0575c
General profiles update.
2022-03-26 20:43:47 +00:00
Alexandre Pujol
d7be27411b
Update profiles.
2022-03-23 19:56:11 +00:00
Alexandre Pujol
2cdd954613
Add nvtop.
2022-03-18 16:06:59 +00:00
Alexandre Pujol
ea366754d7
Profiles update.
2022-03-18 16:05:36 +00:00
Alexandre Pujol
4ff371e739
Profiles update.
2022-03-17 14:01:50 +00:00
Alexandre Pujol
bb0847f5df
Profiles update.
2022-03-13 21:04:42 +00:00
beroal
8e34c5968b
Add ssh-keygen ( #35 )
2022-03-06 14:05:37 +00:00
Alexandre Pujol
e437fe3a57
Add scrcpy.
2022-03-06 14:02:20 +00:00
Alexandre Pujol
8d5e0fc37c
Add glib-compile-resources.
2022-03-06 14:01:14 +00:00
Alexandre Pujol
020b118b46
Add gnome-terminal-server.
2022-03-06 13:58:58 +00:00
Alexandre Pujol
3fd489a442
Add gnome-photos-thumbnailer.
2022-03-06 13:57:08 +00:00
Alexandre Pujol
f9fde0b482
Profiles update.
2022-03-06 13:56:12 +00:00
Alexandre Pujol
a4e8eab6a2
Improve xorg support in Gnome.
2022-03-06 13:54:43 +00:00
Alexandre Pujol
d993caae98
Add user-write completion file.
2022-03-04 21:31:07 +00:00
Alexandre Pujol
1e729e6b46
Profiles update.
2022-03-04 21:30:34 +00:00
Alexandre Pujol
7b09b8c99a
browser: add security key support & re-format the profiles.
2022-03-03 21:22:17 +00:00
Alexandre Pujol
60cb62334b
Profile update.
2022-03-02 18:22:57 +00:00
Alexandre Pujol
683da55bb9
/proc/sys/kernel/random/boot_id is part of nameservice-strict.
2022-03-02 18:19:25 +00:00
Alexandre Pujol
28ee94c4a5
s3fs: rework the profile.
2022-03-02 18:15:33 +00:00
Alexandre Pujol
57dfcc758d
Fix pipewrire & chromium.
2022-02-27 19:11:31 +00:00
Alexandre Pujol
84e2a56eb9
Profiles update.
2022-02-27 12:18:10 +00:00
Alexandre Pujol
64e5f3ec2a
git: restric access to projects dir and format the profile.
2022-02-27 12:10:43 +00:00
Mikhail Morfikov
8713fb514f
remove useless apparmor profiles
2022-02-27 01:25:10 +00:00
Alexandre Pujol
d701e39939
update apparmor profiles
...
Co-authored-by: Mikhail Morfikov <mmorfikov@gmail.com>
Signed-off-by: Alexandre Pujol <alexandre@pujol.io>
2022-02-27 01:22:35 +00:00
Alexandre Pujol
477d3f28a0
Add downloadhelper profile.
2022-02-22 20:55:27 +00:00
Alexandre Pujol
8b803a6285
Flatpack: add initial integration in other profiles.
2022-02-22 20:53:52 +00:00
Alexandre Pujol
8c2d39c232
Flatpack: add flatpak-session-helper.
2022-02-22 20:52:46 +00:00
Alexandre Pujol
2064783251
Update profiles.
2022-02-22 20:51:28 +00:00
Alexandre Pujol
0ee2e4f7ad
New @{uuid} variable.
2022-02-22 13:14:46 +00:00
Alexandre Pujol
773741c85e
Merge branch 'su_sudo2' of https://github.com/nobodysu/apparmor.d into su_sudo2
...
su & sudo: Ubuntu compatibility, Debian polishing
2022-02-22 12:52:18 +00:00
nobodysu
53ee5d0c83
update
2022-02-21 21:46:55 +03:00
nobodysu
a3a6a0fa1a
update
2022-02-20 02:33:32 +03:00
nobodysu
ceb60bde82
update
2022-02-20 02:29:31 +03:00
nobodysu
b5cdd0af44
update
2022-02-20 02:21:48 +03:00
Alexandre Pujol
501bb66c64
Add locale-gen profile.
2022-02-16 19:21:11 +00:00
Alexandre Pujol
ac39df1af2
Update profiles.
2022-02-16 19:18:14 +00:00
nobodysu
d22aff27ac
Ubuntu compatibility, Debian polishing ( #27 )
2022-02-16 17:00:38 +00:00
Alexandre Pujol
1143ea4d6d
aa-log: allow reading more log files.
2022-02-16 13:30:31 +00:00
nobodysu
9df0bd07aa
su & sudo: Ubuntu compatibility, Debian polishing
2022-02-13 04:32:51 +03:00
Alexandre Pujol
6876938719
aa-log: add -f option to set a log file.
2022-02-10 21:30:51 +00:00
Alexandre Pujol
ba0ccc3edc
Move glib based profiles.
2022-02-09 20:11:28 +00:00
Alexandre Pujol
810985a0cd
Update profile from #25 (2).
2022-02-09 19:35:18 +00:00
Alexandre Pujol
6294159d7a
Update profile from #25 .
2022-02-08 19:49:31 +00:00
Alexandre Pujol
9ecc1aa240
Update profiles.
2022-02-08 18:16:45 +00:00
Alexandre Pujol
7274f98fa6
Add s3fs profile.
2022-02-05 20:57:49 +00:00
Alexandre Pujol
10fd4ed8dd
Add aa-enabled profile.
2022-02-05 20:56:38 +00:00
Alexandre Pujol
dc19fc72a8
Update profiles.
2022-02-05 20:02:10 +00:00
Alexandre Pujol
54472e187b
Profiles update.
2022-01-28 13:00:18 +00:00
Alexandre Pujol
fede23bc28
Add evince.
2022-01-23 13:40:11 +00:00
Alex
f892402037
Merge pull request #20 from nobodysu/patch-9
...
Update pulseaudio
2022-01-23 13:47:05 +01:00
nobodysu
7e04347af9
Update pulseaudio
2022-01-22 21:46:26 +00:00
Alex
1f49f17821
Merge pull request #21 from nobodysu/typos
...
Typos: `@{run}`
2022-01-22 12:32:17 +01:00
Alex
45bc5b6645
Merge pull request #18 from nobodysu/patch-7
...
Update acpid
2022-01-22 12:28:06 +01:00
Alex
16096bbd85
Merge pull request #9 from nobodysu/bind-utils
...
bind-utils: add host and nslookup.
2022-01-22 12:12:24 +01:00
nobodysu
a79fc3f17b
Update pulseaudio
2022-01-19 23:34:35 +00:00
nobodysu
b95ea13bbd
typos
2022-01-18 02:45:11 +03:00
nobodysu
ec9a4d3a6c
Update acpid
2022-01-16 23:31:45 +00:00
nobodysu
70d50632bb
Update acpid
2022-01-16 22:28:45 +00:00
nobodysu
39bd0932d2
Update dig
2022-01-16 21:59:28 +00:00
Mikhail Morfikov
76cd5c7029
update apparmor profiles
...
Signed-off-by: Alexandre Pujol <alexandre@pujol.io>
2022-01-16 20:15:25 +00:00
Alex
697b296298
Merge pull request #13 from nobodysu/grc_ls_ss
...
ss
2022-01-16 20:41:57 +01:00
nobodysu
0d9fbff993
Update pulseaudio
2022-01-16 00:20:11 +00:00
nobodysu
56f72ee8f9
Update ss
2022-01-16 00:07:33 +00:00
nobodysu
52aa210f70
Delete grc
2022-01-15 23:54:08 +00:00
nobodysu
0cb633ecec
Update acpid
2022-01-15 23:45:52 +00:00
nobodysu
43c509f28b
Update host
2022-01-15 23:22:43 +00:00
nobodysu
ccabf0ad5e
Update nslookup
2022-01-15 23:14:32 +00:00
Alex
d7ad51d41e
Merge pull request #16 from nobodysu/patch-8
...
nameservice-strict: Ubuntu compatibility
2022-01-15 19:36:27 +01:00
Alex
3f09ba5ed4
Merge pull request #15 from nobodysu/patch-6
...
Update dfc
2022-01-15 19:34:17 +01:00
Alex
c1acae8ec2
Merge pull request #14 from nobodysu/patch-5
...
Update nmap
2022-01-15 19:29:31 +01:00
Alexandre Pujol
8627618d8c
mount: support for squashfs.
2022-01-15 17:36:41 +00:00
Alexandre Pujol
1970e14b46
Pulseaudio: fix dconf access.
...
Fix #19 .
2022-01-15 17:31:48 +00:00
nobodysu
d6148c7b23
Update grc
...
- `mount` is too much, for now
- expanding `ro` paths
2022-01-10 21:49:01 +00:00
nobodysu
80bd1028c5
Update acpid
...
Another case. Tested on Debian 11 and Ubuntu LTS.
2022-01-10 21:29:53 +00:00
Alexandre Pujol
065dad53e3
Add tailscale profiles.
2022-01-09 20:24:35 +01:00
Alexandre Pujol
2e7b6f8ba8
Update profiles.
2022-01-09 20:23:18 +01:00
nobodysu
5c1a1f6f8e
Update acpid
2021-12-24 00:00:41 +00:00
nobodysu
777f46779f
Typo?
2021-12-21 10:39:12 +00:00
nobodysu
b9b844c182
Ubuntu compatibility
2021-12-21 10:20:45 +00:00
nobodysu
0fce337239
Update grc
2021-12-20 15:54:20 +00:00
nobodysu
864e09e539
Remove vim header
2021-12-18 21:51:01 +00:00
nobodysu
85b83a6e40
Remove vim header
2021-12-18 21:50:40 +00:00
nobodysu
b6e4b4b743
fixes
2021-12-19 00:40:26 +03:00
nobodysu
83f7132fe1
Update dfc
...
Ubuntu noise
2021-12-18 18:36:07 +00:00
nobodysu
5be4256404
Update nmap
...
Ubuntu support, iflist, unprivileged
2021-12-18 15:53:53 +00:00
Alexandre Pujol
accf5538bd
Merge branch 'nobodysu'
...
* nobodysu:
Update su
2021-12-14 18:33:20 +00:00
nobodysu
3101d9e7b6
grc, ls , ss
2021-12-14 01:07:50 +03:00
nobodysu
56f598824c
Update ssh
2021-12-13 19:07:16 +00:00
nobodysu
c55f19c4eb
bind-utils
2021-12-12 21:42:24 +03:00
nobodysu
09fdd074f8
Update su
2021-12-12 18:16:30 +00:00
Mikhail Morfikov
3430e3df90
update apparmor profiles
...
Signed-off-by: Alexandre Pujol <alexandre@pujol.io>
2021-12-12 13:18:41 +00:00
Alexandre Pujol
44aca3ba51
Profiles update.
2021-12-12 12:41:50 +00:00
Alexandre Pujol
16dddf16dc
Add sysctl profile.
2021-12-12 12:36:17 +00:00
Alexandre Pujol
0dcd8832f3
Remove untested torbrowser.
2021-12-09 12:38:09 +00:00
Alexandre Pujol
dec82f5eb3
Add aurpublish profile.
2021-12-08 17:41:41 +00:00
Alexandre Pujol
11e0066432
Add askpass profile.
2021-12-08 17:39:21 +00:00
Alexandre Pujol
dc0347388b
Update profiles.
2021-12-08 17:38:43 +00:00
Alexandre Pujol
ad754b26c6
Add xdg-desktop-portal-gnome.
2021-12-05 19:19:44 +00:00
Alexandre Pujol
1644b70d6d
Rethink the configure process.
2021-12-05 00:13:11 +00:00
Alexandre Pujol
0fc9c8b5b0
Add Github Action & add support for the last Ubuntu LTS.
2021-12-05 00:13:00 +00:00
Alexandre Pujol
b52cbe564c
Disks: support large number of disks.
...
Fix : #4
See: https://github.com/torvalds/linux/blob/master/Documentation/admin-guide/devices.txt
2021-12-01 13:38:14 +00:00
Alexandre Pujol
ddc9fdef45
Merge branch 'qemu_virtual_drives' of https://github.com/nobodysu/apparmor.d into nobodysu-qemu_virtual_drives
...
* 'qemu_virtual_drives' of https://github.com/nobodysu/apparmor.d :
QEMU guest virtual disks compatibility
2021-12-01 13:20:18 +00:00
nobodysu
7336b914cb
Update spectre-meltdown-checker
...
- since this script is not from a package it should, optionally, reside in `local` PATH
- allow to confine it with original name and without renaming
- use marco instead of repeating the path
2021-12-01 01:38:51 +00:00
nobodysu
0f50672486
QEMU guest virtual disks compatibility
2021-12-01 02:18:38 +03:00
nobodysu
27be52f9ae
Update spectre-meltdown-checker
2021-11-30 23:00:14 +00:00
nobodysu
44bcd2a394
Update spectre-meltdown-checker
2021-11-30 21:00:16 +00:00
nobodysu
5059946c4f
Update spectre-meltdown-checker
2021-11-30 17:47:40 +00:00
Alexandre Pujol
1cdd38ea40
Add archlinux-java profile.
2021-11-20 14:14:05 +00:00
Alexandre Pujol
079100e67a
Update profiles.
2021-11-20 14:13:45 +00:00
Alexandre Pujol
0fe5be032f
Add wireplumber.
2021-11-15 00:05:28 +00:00
Alexandre Pujol
f05635015f
Add power-profiles-daemon.
2021-11-15 00:04:35 +00:00
Alexandre Pujol
ac2386957b
Rewrite aa-log.
2021-11-09 22:41:12 +00:00
Alexandre Pujol
2cc4d69e9e
Update profiles.
2021-11-09 21:49:16 +00:00
Alexandre Pujol
5eeccc84f8
Add cert-sync profile.
2021-11-04 18:35:24 +00:00
Alexandre Pujol
3b4af3c89e
Add mono-sgen profile.
2021-11-04 18:34:37 +00:00
Alexandre Pujol
477df29dd5
Update profiles.
2021-11-04 18:33:25 +00:00
Alexandre Pujol
27fe14152b
Add dconf profile.
2021-11-04 18:29:07 +00:00
Alexandre Pujol
7da59b4984
update apparmor profiles
2021-10-22 15:41:13 +01:00
Alexandre Pujol
6c34573727
Add pkttyagent.
2021-10-22 15:02:10 +01:00
Alexandre Pujol
aac0a93080
Profiles update.
2021-10-22 15:01:43 +01:00
Alexandre Pujol
b91ddfa493
Add initial systemd-portabled.
2021-10-22 14:55:22 +01:00
Alexandre Pujol
2fc59385a6
Add initial systemd-oomd.
2021-10-22 14:54:40 +01:00
Alexandre Pujol
b659edf8ae
Add systemd-user-sessions.
2021-10-07 15:01:55 +01:00
Alexandre Pujol
ba0706a2d2
Add systemd-user-runtime-dir.
2021-10-07 15:01:40 +01:00
Alexandre Pujol
0d5d65b0af
Add systemd-update-utmp.
2021-10-07 15:01:13 +01:00
Alexandre Pujol
6890fff556
Add systemd-update-done.
2021-10-07 15:00:55 +01:00
Alexandre Pujol
966e4f7f00
Add systemd-sleep.
2021-10-07 15:00:29 +01:00
Alexandre Pujol
a2dc5b1132
Add initial cockpit profiles.
2021-10-07 14:58:54 +01:00
Alexandre Pujol
1a31d8271e
Add xdg-desktop-portal.
2021-10-07 14:56:01 +01:00
Alexandre Pujol
be82c4cde8
Add xdg-document-portal.
2021-10-07 14:55:40 +01:00
Alexandre Pujol
0d3b2bb4b2
Add xdg-permission-store.
2021-10-07 14:55:22 +01:00
Alexandre Pujol
45e3a280f4
Add resolvconf.
2021-10-07 14:54:48 +01:00
Alexandre Pujol
7a1c462a5e
pass-extension-python -> pass-import.
2021-10-07 14:53:28 +01:00
Alexandre Pujol
2fc138a4d7
/run -> @{run}, [0-9]* -> @{uid}.
2021-10-07 14:52:41 +01:00
Alexandre Pujol
9c8c2144b8
Profiles update.
2021-10-07 14:50:46 +01:00
Alexandre Pujol
66d02dab2b
Add gssproxy.
2021-09-28 21:59:28 +01:00
Alexandre Pujol
6bd8e64c78
Add dpkg-status.
2021-09-28 21:58:25 +01:00
Alexandre Pujol
162670237c
Add unattended-upgrade profiles.
2021-09-28 21:58:12 +01:00
Alexandre Pujol
c6ab1770d0
Libvirtd: update abstractions.
2021-09-28 21:57:52 +01:00
Alexandre Pujol
c4f1e00fba
Add apparmor.systemd.
2021-09-28 21:57:25 +01:00
Alexandre Pujol
e0434f22a4
Modernise the man profile.
2021-09-28 21:57:07 +01:00
Alexandre Pujol
adabcd6b94
Move libvirtd profiles.
2021-09-28 21:54:57 +01:00
Alexandre Pujol
b79ffa52c6
Update profiles.
2021-09-28 21:53:50 +01:00
Alexandre Pujol
8334473902
Add password-store profiles.
2021-09-26 18:16:21 +01:00
Alexandre Pujol
cc16ceb246
distribution -> usr.
2021-09-26 18:12:30 +01:00
Alexandre Pujol
4b288b3eb4
Add aa-log.
2021-09-26 17:30:24 +01:00
Alexandre Pujol
f4d8830963
Add slirp4netns
2021-09-26 17:30:06 +01:00
Alexandre Pujol
a6f1a58743
Add spice-client-glib-usb-acl-helper.
2021-09-26 17:29:46 +01:00
Alexandre Pujol
2b4aa5580f
Add new{u,g}idmap
2021-09-26 17:29:28 +01:00
Alexandre Pujol
cb94385ed7
Add fuse-overlayfs
2021-09-26 17:29:07 +01:00
Alexandre Pujol
18e4745fb1
Profiles update.
2021-09-26 17:28:26 +01:00
Alexandre Pujol
723695c626
Update profiles.
2021-09-19 20:37:32 +01:00
Alexandre Pujol
1956680160
Add userdbctl.
2021-09-15 20:44:40 +01:00
Alexandre Pujol
204ff035e7
Add firecfg.
2021-09-15 20:43:17 +01:00
Alexandre Pujol
1eead1e773
Add apparmor_parser.
2021-09-15 20:42:26 +01:00
Alexandre Pujol
d90aecaa40
Add systemd-cg* profiles
2021-09-15 20:41:44 +01:00
Alexandre Pujol
79ab7e3eec
Update profiles.
2021-09-15 20:40:47 +01:00
Alexandre Pujol
d95a876424
Add two profiles directory to have smaller dir.
2021-09-15 16:55:27 +01:00
Alexandre Pujol
6c0ae4ddc1
child-lsb_release -> lsb_release.
2021-09-15 16:30:28 +01:00
Mikhail Morfikov
2a6b2bd189
update apparmor profiles
2021-09-15 16:16:01 +01:00
Alexandre Pujol
efda369670
Add libvirt profiles.
2021-09-12 20:48:41 +01:00
Alexandre Pujol
fda83bbba7
Add containerd profile.
2021-09-12 20:47:36 +01:00
Alexandre Pujol
a4ba26133f
Update profiles.
2021-09-12 20:47:14 +01:00
Alexandre Pujol
70b4fa665b
Profiles update.
2021-09-10 00:17:44 +01:00
Alexandre Pujol
6583a7bfb2
Update profiles.
2021-09-04 13:59:45 +01:00
Alexandre Pujol
ca4be147f8
Fix video abstraction.
2021-08-22 15:43:53 +01:00
Alexandre Pujol
3c1a201e4a
Initial pacman profiles.
2021-08-22 15:38:14 +01:00
Alexandre Pujol
020eb0daf6
Add mkinitcpio.
2021-08-22 15:35:27 +01:00
Alexandre Pujol
b2d3af8bca
Update profiles.
2021-08-22 15:32:42 +01:00
Alexandre Pujol
f922a5f8e8
BUILD_DIR -> user_build_dirs.
2021-08-22 15:28:23 +01:00
Alexandre Pujol
b65955d055
Better tunables definitions.
2021-08-20 19:14:49 +01:00
Mikhail Morfikov
9eecac80a2
update apparmor profiles
2021-08-20 18:52:56 +01:00
Alexandre Pujol
fb63699153
Add gnome-disks
2021-08-14 13:00:36 +01:00
Alexandre Pujol
fae9d697f6
Add gnome-music.
2021-08-14 13:00:23 +01:00
Alexandre Pujol
6bea2fbd25
Add geoclue profile.
2021-08-14 12:59:43 +01:00
Alexandre Pujol
33f99711a2
Update profiles.
2021-08-14 12:59:24 +01:00
Alexandre Pujol
2d92925882
Profile update.
2021-08-02 11:14:58 +01:00
Alexandre Pujol
4582d6e201
Fix & update flags.
2021-07-31 19:29:39 +01:00
Alexandre Pujol
c7722391c1
Add gnome-control-center.
2021-07-31 19:21:52 +01:00
Alexandre Pujol
4489568b82
Add gnome-tweaks.
2021-07-31 19:17:34 +01:00
Alexandre Pujol
80a1b1b401
Add gnome-system-monitor.
2021-07-31 19:17:25 +01:00
Alexandre Pujol
d38c573844
Add gnome-disk-image-mounter.
2021-07-31 19:16:42 +01:00
Alexandre Pujol
19ada552fe
Profiles update.
2021-07-31 18:41:54 +01:00
Alexandre Pujol
94978242ff
Update profiles.
2021-07-16 21:33:11 +01:00
Alexandre Pujol
aa3c43c999
Add pinentry profiles.
2021-07-11 17:22:08 +01:00
Alexandre Pujol
bba090d727
Add gnome-extensions-app.
2021-07-11 17:20:29 +01:00
Alexandre Pujol
2372188d8e
Update profiles.
2021-07-11 17:20:09 +01:00
Alexandre Pujol
cb6344c64f
Add aa-status.
2021-07-08 19:42:57 +01:00
Alexandre Pujol
9828ae566f
media-keys: add audio abstracion.
2021-07-08 18:16:22 +01:00
Alexandre Pujol
b50c926784
Add zram-generator.
2021-07-08 12:57:00 +01:00
Alexandre Pujol
a0d703a3ee
Add systemd-delta & systemd-path.
2021-07-08 12:54:52 +01:00
Alexandre Pujol
178459f406
Profile update.
2021-07-08 12:53:17 +01:00
Alexandre Pujol
30c414d439
Update profiles.
2021-07-05 19:10:20 +01:00
Alexandre Pujol
ca13b4be36
Add pkcs11-register.
2021-06-29 20:10:39 +01:00
Alexandre Pujol
9cff5676c8
Add start-pulseaudio-x11.
2021-06-29 20:10:07 +01:00
Alexandre Pujol
b3352522ea
Add wl-copy.
2021-06-29 20:09:45 +01:00
Alexandre Pujol
f7e0824826
Add the systemd-tty-ask-password-agent profile.
2021-06-29 20:04:51 +01:00
Alexandre Pujol
a8a1f3b29a
Add virtlogd profile.
2021-06-29 20:03:06 +01:00
Alexandre Pujol
aceb3d7560
Add gtk-query-immodules.
2021-06-29 20:01:26 +01:00
Alexandre Pujol
8bab95223f
Add systemd-mount.
2021-06-29 19:59:25 +01:00
Alexandre Pujol
ab5958c511
Update profiles.
2021-06-29 19:55:56 +01:00
Alexandre Pujol
d084023120
Add update-ca-trust
2021-06-12 15:21:28 +01:00
Alexandre Pujol
6bbe50573b
Update profiles.
2021-06-12 15:21:16 +01:00
Alexandre Pujol
4ee6cc9657
/usr/{lib,libexec} -> @{libexec}
2021-06-06 15:02:40 +01:00
Alexandre Pujol
9ad8ec165d
Profiles update.
2021-06-06 14:55:17 +01:00
Alexandre Pujol
44dc86cd36
Small fixes.
2021-05-30 16:15:29 +01:00
Alexandre Pujol
9b7ab9cbc3
Add paccache profile.
2021-05-26 20:49:04 +01:00
Alexandre Pujol
58978c12b7
Profile update.
2021-05-26 20:44:42 +01:00
Alexandre Pujol
797701d0a0
Pipewire: use tunable vars.
2021-05-26 20:34:41 +01:00
Mikhail Morfikov
e085014238
update apparmor profiles
2021-05-26 20:23:28 +01:00
Alexandre Pujol
420aebcfa5
Small fixes.
2021-05-16 21:11:55 +01:00
Alexandre Pujol
a4fe3209c9
Move debian only profiles.
2021-05-16 21:10:16 +01:00
Alexandre Pujol
717505daf5
Minor corrections.
2021-05-11 22:07:20 +01:00
Alexandre Pujol
dfcafbe472
Move some profiles.
2021-05-11 22:03:28 +01:00
Alexandre Pujol
e6dc08caec
Add some profiles.
2021-05-09 00:34:57 +01:00
Alexandre Pujol
a8d1205e76
Profile update.
2021-05-09 00:33:10 +01:00
Alexandre Pujol
faa3e70c8f
Add some systemd profiles.
2021-05-09 00:31:43 +01:00
Alexandre Pujol
665fd26419
Add some gnome related profiles.
2021-05-08 19:07:45 +01:00
Alexandre Pujol
bfa2293379
Profile update.
2021-05-08 19:06:48 +01:00
Alexandre Pujol
0d566a43b9
Profiles update.
2021-05-06 16:44:49 +01:00
Alexandre Pujol
ae5f781175
Move some profiles.
2021-05-03 19:14:46 +01:00
Alexandre Pujol
f7948962fc
Profiles update.
2021-05-03 12:58:46 +01:00
Alexandre Pujol
86ac65eb5c
Update profiles.
2021-05-01 21:22:23 +01:00
Alexandre Pujol
0c494ed2ba
General profiles update.
2021-04-29 21:02:28 +01:00
Alexandre Pujol
559020861b
Add idbus profiles.
2021-04-29 21:00:25 +01:00
Alexandre Pujol
001c2028f6
Move dbus profiles.
2021-04-29 20:58:31 +01:00
Alexandre Pujol
49bddc0382
Profile update.
2021-04-23 12:40:19 +01:00
Alexandre Pujol
749859920e
Some fixes.
2021-04-21 21:57:17 +01:00
Alexandre Pujol
a49e221949
Add reflector.
2021-04-21 21:56:29 +01:00
Alexandre Pujol
d84c699fbd
arch-audit: add dac_read_search.
2021-04-21 21:56:13 +01:00
Alexandre Pujol
7029d40c5e
systemd: better profilling and rename journalctl.
2021-04-21 21:55:50 +01:00
Alexandre Pujol
1c9df4b3b9
Gnome fixes.
2021-04-21 21:55:01 +01:00
Alexandre Pujol
d929d662f5
Add glib-pacrunner.
2021-04-21 21:54:29 +01:00
Alexandre Pujol
926c89de95
Move some profiles.
2021-04-21 21:53:54 +01:00
Alexandre Pujol
b373c0ec63
borg: allow cat.
2021-04-19 15:28:54 +01:00
Alexandre Pujol
1f11e6398b
Add @{MOUNTS} for all common mountpoints.
2021-04-19 15:20:32 +01:00
Alexandre Pujol
a5ec3e559c
Disk mount fix.
2021-04-19 15:15:38 +01:00
Alexandre Pujol
4a35b7d804
Use @{uid} instead of [0-9]* when it denotes the user id.
2021-04-18 19:00:15 +01:00
Alexandre Pujol
cd4ad5b09c
Minor fixes.
2021-04-18 17:54:04 +01:00
Mikhail Morfikov
5faf590bf5
update apparmor profiles
2021-04-18 17:48:20 +01:00
Alexandre Pujol
f5d1386f74
Add xdg-user-dirs-update
2021-04-16 13:37:26 +01:00
Alexandre Pujol
53b01b1132
Some fixes.
2021-04-16 13:37:15 +01:00
Alexandre Pujol
d41df93da1
Add tracker-extract
2021-04-16 13:36:28 +01:00
Alexandre Pujol
2e5c8f2f72
Add more systemd profiles.
2021-04-15 22:52:14 +01:00
Alexandre Pujol
370dda124d
Various fixes.
2021-04-15 22:51:21 +01:00
Alexandre Pujol
8fdd8a7b21
Add missing gdm term signal.
2021-04-13 15:13:06 +01:00
Alexandre Pujol
7a3ba21d50
Add gdm profiles.
2021-04-13 14:14:23 +01:00
Alexandre Pujol
ea746ad8d7
Minor fixes.
2021-04-13 14:10:50 +01:00
Alexandre Pujol
7be8aca10d
Minor fixes.
2021-04-12 19:59:41 +01:00
Alexandre Pujol
3734e5aedf
Add include if exists abstractions *.d
2021-04-12 19:59:04 +01:00
Alexandre Pujol
8d22bc10b2
Add nautilus profile.
2021-04-12 19:04:42 +01:00
Alexandre Pujol
2175a86979
Profiles update.
2021-04-12 13:33:24 +01:00
Mikhail Morfikov
0573b2d996
update apparmor profiles
...
Adpated to the apparmor.d structure.
Signed-off-by: Mikhail Morfikov <mmorfikov@gmail.com>
2021-04-10 15:12:56 +01:00
Alexandre Pujol
3d9fc84a41
Profile fixes.
2021-04-10 14:20:23 +01:00
Alexandre Pujol
c04c260cfa
Enforce some profiles.
2021-04-10 14:19:43 +01:00
Alexandre Pujol
89f35e502f
Add gtk 4 support.
2021-04-10 14:18:42 +01:00
Alexandre Pujol
17806e9ee7
Profiles update and general fixes.
2021-04-09 14:47:06 +01:00
Alexandre Pujol
ec9f197842
dbus-daemon: arch & gnome support.
2021-04-08 22:48:40 +01:00
Alexandre Pujol
33296ae19e
Add full gnome shell confinement.
2021-04-08 22:47:42 +01:00
Alexandre Pujol
6bf2a7e826
Update gsd-power.
2021-04-08 22:45:44 +01:00
Alexandre Pujol
87dd65a52d
Add fsck-ext4
2021-04-08 22:44:53 +01:00
Alexandre Pujol
fbc001e786
Add initial auditd.
2021-04-08 22:43:27 +01:00
Alexandre Pujol
ca6006152a
Add initial acpid
2021-04-08 22:42:48 +01:00
Alexandre Pujol
bba7a8e09c
openvpn: network manager support & more classic file strucure.
2021-04-08 22:41:55 +01:00
Alexandre Pujol
a789d518b2
Fix openvpn integration with network manager.
2021-04-08 22:41:05 +01:00
Alexandre Pujol
604a95119d
Add usbguard-notifier.
2021-04-08 22:40:03 +01:00
Alexandre Pujol
731dbe9d70
Add xbrlapi.
2021-04-08 22:39:41 +01:00
Alexandre Pujol
4d883c82d6
Add aa-notify
2021-04-08 22:32:39 +01:00
Alexandre Pujol
29253d0888
Fix licence id.
2021-04-08 22:28:37 +01:00
Alexandre Pujol
81b6f2d960
ps: environ is needed.
2021-04-08 22:26:12 +01:00
Alexandre Pujol
0b171d1330
Cleanup some new profiles.
2021-04-08 22:25:48 +01:00
Alexandre Pujol
91c7069ee1
Abstractions: more definitions.
2021-04-08 22:24:00 +01:00
Alexandre Pujol
04f2d2c9a3
Rules fix.
2021-04-07 18:05:15 +01:00
Alexandre Pujol
9446af57f8
Cleanup.
2021-04-07 18:04:10 +01:00
Alexandre Pujol
550c3957de
Profiles update.
2021-04-06 12:42:47 +01:00
Alexandre Pujol
64d8379375
Global profile update.
2021-04-05 13:15:52 +01:00
Alexandre Pujol
6aa99d3ec5
chromium **needs** dconf.
2021-04-04 22:03:18 +01:00
Alexandre Pujol
f3a982fdf6
Add xdg-dbus-proxy.
2021-04-04 21:28:39 +01:00
Alexandre Pujol
9f17f48c6e
xwayland: small fixes.
2021-04-04 21:28:20 +01:00
Alexandre Pujol
a48b6eed2e
Add gitstatusd & test git.
2021-04-04 20:05:07 +01:00
Alexandre Pujol
d68e8cdf97
Header cosmetic.
2021-04-04 17:37:09 +01:00
Alexandre Pujol
db2501b517
Add Xwayland.
2021-04-04 17:33:35 +01:00
Alexandre Pujol
d570ff123e
Add arch-audit & pacdiff.
2021-04-04 17:28:12 +01:00
Alexandre Pujol
5353729d73
Add pacman-{conf,key} profiles.
2021-04-04 17:27:14 +01:00
Alexandre Pujol
131ef331f5
Update gnome-keyring-daemon.
2021-04-04 17:25:31 +01:00
Alexandre Pujol
62c7e77ffd
Add gnome-shell-calendar-server.
2021-04-04 17:24:53 +01:00
Alexandre Pujol
adf48a2052
Add seahorse profile.
2021-04-04 17:24:44 +01:00
Alexandre Pujol
441f3f776f
Add browserpass profile.
2021-04-04 17:23:53 +01:00
Mikhail Morfikov
046443a702
Update apparmor profiles
...
Adpated to the apparmor.d structure.
Signed-off-by: Mikhail Morfikov <mmorfikov@gmail.com>
2021-04-04 14:43:10 +01:00
Alexandre Pujol
19521569ce
Complete ss_cert abstraction.
2021-04-04 01:13:25 +01:00
Alexandre Pujol
d38c781bbd
Apparmor Parser issue fix.
2021-04-04 00:46:12 +01:00
Alexandre Pujol
547076dda3
systemd: update related profiles.
2021-04-04 00:37:27 +01:00
Alexandre Pujol
b2c0ead2de
nm: access to all net interfaces.
2021-04-04 00:35:41 +01:00
Alexandre Pujol
f1e3574e2e
media-keys: access to sound settings.
2021-04-04 00:34:54 +01:00
Alexandre Pujol
ec2e1fc1c2
Add mkinitcpio support.
2021-04-04 00:34:05 +01:00
Alexandre Pujol
a0d634b48f
usermod: nscd is required.
2021-04-04 00:01:13 +01:00
Alexandre Pujol
61038bdfa8
Sudo needs much more cap for normal usage.
2021-04-03 23:28:16 +01:00
Alexandre Pujol
660921f57c
ssh: better keys & network access.
2021-04-03 23:26:09 +01:00
Alexandre Pujol
093af6982b
Browser: allow browserpass acess.
2021-04-03 23:25:02 +01:00
Alexandre Pujol
a15061700b
chromium: for now, no access to mozilla files.
2021-04-03 23:24:28 +01:00
Alexandre Pujol
8c935281fd
Evolution: allow access to osrelease & kernel cmd.
...
Is it really needed?
2021-04-03 23:23:03 +01:00
Alexandre Pujol
5941b784cc
Remove some complain mode.
2021-04-02 18:10:21 +01:00
Alexandre Pujol
6069cf32a7
gpg: better integration with gpg* profiles.
2021-04-02 10:49:27 +01:00
Alexandre Pujol
e5ce66d1ca
Add NetworkManager profiles.
2021-04-02 10:46:28 +01:00
Alexandre Pujol
2107e94b5c
Remove firejail-default.
2021-04-02 10:39:42 +01:00
Alexandre Pujol
37d9ac6c3c
Move obex profiles in the desktop group.
2021-04-02 10:38:56 +01:00
Alexandre Pujol
8315c74897
Add less (from krathalan).
2021-04-02 10:31:10 +01:00
Alexandre Pujol
3807a4387f
Finish full gnome support for gvfsd-*.
2021-04-02 10:29:37 +01:00
Alexandre Pujol
0682ff0789
Complete gvfsd-dav & gvfsd-recent.
2021-04-02 10:29:12 +01:00
Alexandre Pujol
4dc8d53c0e
Add 7 systemd profiles.
2021-04-02 10:28:21 +01:00
Alexandre Pujol
b6152def16
Add all gsd-* profiles.
2021-04-02 10:26:15 +01:00
Alexandre Pujol
e3d08f3de7
Add mission-control
2021-04-02 10:25:17 +01:00
Alexandre Pujol
651b34fcca
Move gnome-keyring-daemon.
2021-04-02 10:24:32 +01:00
Alexandre Pujol
d2252c10da
Fix SPDX-License-Identifier on some of my profiles.
2021-04-02 10:23:57 +01:00
Alexandre Pujol
6fd5d5f56f
udevadm -> systemd-udevd
2021-04-02 10:22:54 +01:00
Alexandre Pujol
facade62b6
Add more apparmor profiles.
2021-04-02 10:22:03 +01:00
Alexandre Pujol
604b184c9d
Profile update after tests on Arch.
2021-04-02 10:18:29 +01:00
Alexandre Pujol
e4266d9cda
Some rules addition for gnome support.
2021-04-02 10:11:59 +01:00
Alexandre Pujol
e57dd4e3a7
Firefox: gvfsd and gnome support
2021-04-02 10:10:08 +01:00
Alexandre Pujol
dc7a83886c
Firefox: allow dconf as it breaks firefox settings and extension otherwise.
2021-04-02 10:08:24 +01:00
Alexandre Pujol
d6c1e0b020
chromium: add gnome support.
2021-04-02 10:07:09 +01:00
Alexandre Pujol
a5cad68c36
Firefox & Chromium: allow read access to some user file.
2021-04-02 10:05:38 +01:00
Alexandre Pujol
212105f21e
Add haveged (from krathalan).
2021-04-02 00:07:07 +01:00
Alexandre Pujol
f52668628d
Add gnome-calendar and gnome-contacts.
2021-04-02 00:06:05 +01:00
Alexandre Pujol
9b19b979d6
Add goa-daemon and its id service.
2021-04-02 00:05:19 +01:00
Alexandre Pujol
df7211667c
Add tracker-miner
2021-04-02 00:04:13 +01:00
Alexandre Pujol
7c60224447
Gio: add gnome support.
2021-04-02 00:02:30 +01:00
Alexandre Pujol
70ad571cbe
Add glib-compile-schemas.
2021-04-02 00:01:54 +01:00
Alexandre Pujol
efe56f3841
Add gjs profile.
2021-04-02 00:01:15 +01:00
Alexandre Pujol
59d33e0cc6
Add evolution services.
2021-04-02 00:00:33 +01:00
Alexandre Pujol
1632b6c1b4
mandb: add path for arch.
2021-04-01 23:59:16 +01:00
Alexandre Pujol
c35f793ba1
Add rules for xdg-* profiles.
2021-04-01 23:54:41 +01:00
Alexandre Pujol
6044e403e7
Replace last remaining home files by the xdg variables.
2021-04-01 23:45:21 +01:00
Alexandre Pujol
4db3745a35
Add user-read abstract.
2021-04-01 23:37:27 +01:00
Alexandre Pujol
9f02bd0ab9
Archlinux has no libexec.
...
/usr/libexec ->{lib,libexec}
2021-04-01 23:36:58 +01:00
Alexandre Pujol
08c220deee
Add 'if exists' to some include.
2021-04-01 23:26:06 +01:00
Alexandre Pujol
79904cb616
Archlinux has no sbin.
...
sbin -> {s,}bin for Archlinux support.
Purposelly not replaced on Debian only programs
2021-04-01 23:15:47 +01:00
Alexandre Pujol
1d1492c750
Trash: needs more control over expunged directory.
2021-04-01 21:59:14 +01:00
Alexandre Pujol
0ad600f90f
Add /mnt as possible mount point.
2021-04-01 21:56:33 +01:00
Alexandre Pujol
84f24133e9
More XDG replacement.
2021-04-01 21:44:23 +01:00
Alexandre Pujol
54ac285b7d
@{HOME}/.local/share -> @{user_share_dirs}
2021-04-01 17:23:34 +01:00
Alexandre Pujol
7f6ea8d44d
@{HOME}/.config -> @{user_config_dirs}
2021-04-01 17:21:33 +01:00
Alexandre Pujol
1c9fc00c13
@{HOME}/.cache -> @{user_cache_dirs}
2021-04-01 17:20:05 +01:00
Alexandre Pujol
091d20d086
Reorganise the directories.
2021-04-01 17:02:49 +01:00
Alexandre Pujol
e9b8e62fcd
apparmor.d -> profiles
2021-04-01 16:02:59 +01:00
Alexandre Pujol
c408a878b7
Remove profiles already present in deps.
2021-04-01 16:01:57 +01:00
Alexandre Pujol
2129e23596
Remove and merge sources that are already present deps.
2021-04-01 15:33:57 +01:00
Mikhail Morfikov
62f1b6b854
update apparmor profiles
2021-03-21 17:13:02 +01:00
Mikhail Morfikov
c5ca6e1d90
update apparmor profiles
2021-03-21 17:04:10 +01:00
Mikhail Morfikov
f7ddca7289
add bt apparmor profiles
2021-03-21 17:00:23 +01:00
Mikhail Morfikov
4c0c878409
update apparmor profiles
2021-03-14 18:57:00 +01:00
Mikhail Morfikov
e1f16545e0
update apparmor profiles
2021-03-13 16:52:36 +01:00
Mikhail Morfikov
5b12c89dba
update apparmor profiles
2021-03-13 09:47:36 +01:00
Mikhail Morfikov
0f64093e46
update apparmor profiles
2021-02-13 15:00:16 +01:00
Mikhail Morfikov
8e075d25fa
update apparmor profiles
2021-01-10 16:35:07 +01:00
Mikhail Morfikov
756e2071e1
update apparmor profiles
2020-12-24 13:55:12 +01:00
Mikhail Morfikov
156f5d4e3b
update apparmor profiles
2020-12-18 11:12:55 +01:00
Mikhail Morfikov
7067edcf70
update profiles for apparmor3
2020-12-10 22:33:39 +01:00
Mikhail Morfikov
503cf496bf
update apparmor profiles
2020-12-09 10:30:52 +01:00
Mikhail Morfikov
f73da4a046
update apparmor profiles
2020-10-25 10:23:34 +01:00
Mikhail Morfikov
2cd06e74d6
update apparmor profiles
2020-10-13 16:47:49 +02:00
Mikhail Morfikov
b9343c50c2
update apparmor profiles
2020-09-27 22:26:01 +02:00
Mikhail Morfikov
a03db72f91
update apparmor profiles
2020-09-18 20:05:47 +02:00
Mikhail Morfikov
d1605c62b3
update apparmor profiles
2020-09-12 17:46:51 +02:00
Mikhail Morfikov
244b2c88a2
move apparmor profiles to a seperate repo
2020-09-12 17:19:23 +02:00