Commit Graph

948 Commits

Author SHA1 Message Date
qoijjj
b51dfb9049 chore: set patchfiles detectable in .gitattributes 2024-08-19 09:51:49 -07:00
qoijjj
80fda3adc6 chore: remove unused file 2024-08-19 09:47:21 -07:00
qoijjj
dd10a99f93 fix: cleanup motd variables 2024-08-18 22:44:35 -07:00
qoijjj
5d4d755b96 chore: remove unusable toggle-nvk just command 2024-08-18 22:04:23 -07:00
qoijjj
49b8ad6efb fix: parse epoch time directly from json for motd 2024-08-18 21:41:21 -07:00
qoijjj
0d3869bbb5 fix: use json format for rpm-ostree in motd 2024-08-18 21:35:05 -07:00
qoijjj
7c5a225b7c docs: include missing item in readme 2024-08-18 21:24:54 -07:00
qoijjj
2d7b5a3ab2 fix: move justfile hardening to gui scripts 2024-08-18 21:23:47 -07:00
qoijjj
4c04c11b90 fix: typo in justfile script 2024-08-18 20:21:41 -07:00
qoijjj
357ce2934e feat: add tpm2 unlock improvements 2024-08-18 20:00:33 -07:00
qoijjj
3b4e75781a fix: build fix by including necessary package 2024-08-18 19:07:19 -07:00
qoijjj
01cf3e66a6 fix: disable maximize_build_space to ensure build deps are available 2024-08-18 18:59:20 -07:00
qoijjj
78198f4e5a feat: patch brew installation just command to not require wheel 2024-08-18 18:35:56 -07:00
qoijjj
a832247d84 docs: readme clarification 2024-08-14 22:01:28 -07:00
qoijjj
a6256a396c docs: fix links in readme 2024-08-13 11:08:14 -07:00
qoijjj
31b1339fa5 chore: disable yafti run on config change as it causes user confusion 2024-08-11 04:49:00 -07:00
Ivo Damjanović
94eca70c71 fix: container policy hardening script for cosmic images (#367) 2024-08-10 20:54:31 -07:00
qoijjj
e27586f10f docs: fix readme typo 2024-08-10 18:35:05 -07:00
qoijjj
d1e8c3c041 docs: reorganize images 2024-08-10 10:55:30 -07:00
qoijjj
3b927dc8ed fix: check only the first string token when searching lsattr 2024-08-10 03:56:35 -07:00
qoijjj
872cb784ef feat: add ujust command to lock bash environment files to mitigate LD… (#365) 2024-08-09 16:14:44 -07:00
qoijjj
3e9bfa81a9 fix: remove chsh removal script since it has been removed upstream 2024-08-08 17:45:03 -07:00
qoijjj
0104d6a697 fix: revert container policy hardening migration to /etc until upstream migrates 2024-08-08 17:28:44 -07:00
qoijjj
2deefb4d54 fix: revert /etc migration only for signing module 2024-08-08 17:18:15 -07:00
fiftydinar
378caba43f docs: clarify disablement of GNOME user extensions better (#364) 2024-08-08 15:59:25 -07:00
qoijjj
3fb96ece10 chore: move /usr/etc to /etc per upstream rpm-ostree recommendation 2024-08-08 15:48:30 -07:00
qoijjj
ed02255f57 docs: more cleanup 2024-08-08 00:01:50 -07:00
qoijjj
4888f639e5 chore: enable semantic commits 2024-08-07 23:58:23 -07:00
qoijjj
7b8f12d5c0 docs: cleanup 2024-08-07 23:57:59 -07:00
SnuggleCovenant
4c85413563 remove gnome videos (totem) from yafti.yml (#363)
the totem app is abandoned
2024-08-07 14:53:34 -07:00
fiftydinar
e1a130f6f9 feat: Disable user Gnome extensions & user-installation of them (#361) 2024-08-06 17:14:30 -07:00
qoijjj
d68cf29895 docs: add xwayland toggle note to FAQ 2024-08-06 14:34:08 -07:00
qoijjj
78b531846d chore: fix build by isolating silverblue-only package 2024-08-06 10:39:05 -07:00
qoijjj
2318f83a9a chore: ensure package consistency across images 2024-08-06 10:01:13 -07:00
qoijjj
f75215cfdf fix: set permissions for xwayland file in ujust command 2024-08-03 12:19:43 -07:00
spaceoden
c21a697252 Update 60-custom.just.readme.md to put new kargs in the correct section (#357)
the new kargs were added to set-kargs-hardening, not set-kargs-hardening-unstable
2024-08-02 13:01:52 -07:00
qoijjj
9f56f2ff06 feat: set additional kargs to override suboptimal defaults 2024-08-01 22:43:23 -07:00
qoijjj
ce67bf3e80 docs: remove postinstall step now handled by yafti 2024-08-01 11:27:06 -07:00
qoijjj
084fe1a40c fix: remove usbguard-dbus due to insufficient systemd sandboxing (#352) 2024-07-31 14:20:49 -07:00
qoijjj
eea350af56 fix: remove comments from harden-flatpak ujust command to fix just parsing 2024-07-30 16:26:34 -07:00
qoijjj
a9be430e64 docs: readme language improvements 2024-07-30 16:09:37 -07:00
qoijjj
b36cc78dfb docs: clarify readme language 2024-07-30 15:35:27 -07:00
spaceoden
7c0976da7e feat: add to harden-flatpak logic that applies the highest supported hwcap (#346) 2024-07-30 15:31:43 -07:00
qoijjj
c1ed731e7d docs: formatting 2024-07-30 13:32:56 -07:00
qoijjj
0a285cde7b docs: remove stuff that doesn't belong in the postinstall instructions 2024-07-30 13:31:25 -07:00
qoijjj
b31aff0994 fix: prevent bluefin yafti from starting 2024-07-30 00:22:30 -07:00
qoijjj
298bbda019 fix: ujust command typos 2024-07-30 00:03:25 -07:00
qoijjj
7132b12816 docs: add note about VM network connectivity 2024-07-29 23:23:52 -07:00
qoijjj
b9fc6e4826 feat: remove xwayland by default (#347) 2024-07-29 23:02:10 -07:00
qoijjj
16b01248cf docs: remove ublue-specific language from the contributing doc 2024-07-29 16:29:37 -07:00