Commit Graph

810 Commits

Author SHA1 Message Date
qoijjj
9d6b7c60ff feat: opt out of homebrew analytics by default 2024-05-13 17:23:29 -07:00
Tracker3223
4928161480 feat: replace image name in checksum file (#275)
* feat: replace image name in checksum file

Replace image name in checksum file with the correct one.

* Update generate_secureblue_iso.sh

* Update generate_secureblue_iso.sh

* Update generate_secureblue_iso.sh

* Update generate_secureblue_iso.sh

* Update generate_secureblue_iso.sh

* Update generate_secureblue_iso.sh
2024-05-13 11:05:22 -07:00
qoijjj
eb9f173fb1 docs: pull in latest vanadium changes 2024-05-12 20:01:37 -07:00
qoijjj
ce01e4c25d fix: iso name for image generation script 2024-05-11 08:57:28 -07:00
Cheng Zhang
cc1ed05cee docs: add to FAQ about NTS DoT deadlock (#274)
* add a FAQ about NTS DoT deadlock

* Update FAQ.md

* Update FAQ.md

---------

Co-authored-by: qoijjj <129108030+qoijjj@users.noreply.github.com>
2024-05-10 21:00:19 -07:00
qoijjj
8d7c2b5b17 feat: add iso name to image generation script 2024-05-10 15:48:36 -07:00
qoijjj
89ed0fe505 fix: iso generation parameters 2024-05-10 12:11:04 -07:00
qoijjj
a91172be17 fix: iso generator 2024-05-10 09:36:10 -07:00
qoijjj
de3ba7ae33 fix: remove wget2 from server images as it's incompatible with ucore 40 2024-05-10 17:54:44 +02:00
qoijjj
cdbe5e9719 fix: include wget script 2024-05-09 19:44:52 -07:00
Alexis Purslane
f275411a39 Improve post install instructions (#272) 2024-05-08 16:06:33 -07:00
qoijjj
ed9d6776bf fix: add back podman which is required by bootc 2024-05-08 11:43:35 -07:00
qoijjj
c2d6c72556 docs: another whitespace fix 2024-05-07 18:01:20 +02:00
qoijjj
c3ab4e8107 docs: fix whitespace 2024-05-07 18:00:45 +02:00
qoijjj
9102eb4bfa docs: correct vanadium comparison 2024-05-07 17:59:09 +02:00
qoijjj
828cc318b6 docs: pull latest vanadium patches for comparison 2024-05-07 17:57:36 +02:00
qoijjj
2751734255 fix: use build-container-installer in iso generation script 2024-05-07 08:22:50 -07:00
qoijjj
604d1de3cc fix: aurora images 2024-05-03 20:56:02 +02:00
qoijjj
3daf6c0599 fix: server images 2024-05-03 20:51:26 +02:00
qoijjj
f9deeeeeb1 docs: only the latest tag is supported 2024-04-23 23:46:05 -07:00
qoijjj
0c91660a27 chore: bump bluebuild action 2024-04-23 17:16:16 -07:00
qoijjj
c960670156 docs: add link to vanadium comparison 2024-04-23 12:53:22 -07:00
qoijjj
d0e25ed972 docs: fix POSTINSTALL typos 2024-04-23 09:51:16 -07:00
qoijjj
74b197d812 docs: add enroll-secure-boot-key to POSTINSTALL 2024-04-23 09:50:46 -07:00
qoijjj
872596dd73 feat: upgrade to f40 (#264) 2024-04-23 09:01:41 -07:00
qoijjj
656bf9b5e2 feat: disable chromium internal pdf viewer 2024-04-19 16:22:38 -07:00
spaceoden
13bea8f532 remove chkrootkit from README.md (#261)
no longer applies
2024-04-19 11:37:03 -07:00
qoijjj
a86a3b7a02 feat: add additional chromium hardening based on vanadium 2024-04-17 22:53:33 -07:00
qoijjj
23020bab4e docs: update vanadium comparison readme 2024-04-17 22:28:05 -07:00
qoijjj
3c546eb01b docs: minor justfile messaging changes 2024-04-17 10:13:09 -07:00
Cheng Zhang
1cfb2b30d8 feat: just commands to override modprobe blacklist (#260) 2024-04-17 10:11:12 -07:00
qoijjj
2365a4b385 Merge pull request #259 from secureblue/qoijjj-patch-1
fix: nvidia karg command
2024-04-13 12:28:16 -04:00
qoijjj
f028c16f70 Update README.md 2024-04-13 12:26:25 -04:00
MkKvcs
8bf24693e4 Fix Aurora images not building (#258)
It turns out Aurora does not have Firefox preinstalled anymore, sorry for not testing this locally beforehand.
2024-04-10 12:34:20 -07:00
MkKvcs
d6837c4356 Change Aurora images according to upstream suggestions (#257)
https://github.com/NiHaiden/aurora#:~:text=rpm%2Dostree%20rebase%20ostree%2Dimage%2Dsigned%3Adocker%3A//ghcr.io/ublue%2Dos/aurora%3Alatest
2024-04-10 12:01:36 -07:00
qoijjj
f3ec42e58e feat: add necessary init script, then add additional selinux tooling with alerts disabled by default 2024-04-07 20:37:23 -07:00
Rubiginosa
1e7336dc9b added disable-firefox to aurora images
added remove-firefox to aurora-surface
2024-04-07 11:15:10 -07:00
Rubiginosa
620f2521c6 added aurora-asus and aurora-dx-asus images
fixed dx userns

Signed-off-by: Rubiginosa <89671549+Rubiginosa@users.noreply.github.com>

updated readme with aurora-asus
2024-04-06 19:40:23 -07:00
qoijjj
3be6988aa4 revert: feat: add additional selinux tooling, until bluebuild supports this package 2024-04-06 19:38:33 -07:00
qoijjj
9f6aa640d4 feat: add just command to remove all hardening kargs 2024-04-06 17:08:00 -07:00
qoijjj
b8db54dd62 feat: add additional selinux tooling 2024-04-06 13:45:03 -07:00
qoijjj
04854499db docs: improve userns clarity 2024-04-06 13:42:31 -07:00
qoijjj
5e90fe2318 chore: bump bluebuild github action 2024-04-04 17:49:49 -07:00
qoijjj
667fd842eb docs: add surface images to the readme 2024-04-04 17:49:12 -07:00
MkKvcs
b6a01eb34a add: Aurora images to secureblue (#249) 2024-04-04 17:42:25 -07:00
qoijjj
27f9c86430 docs: fix typo in kargs readme 2024-03-31 00:35:46 -07:00
qoijjj
e1f6b5ba9f feat: add additional chromium policy hardening and drop chkrootkit as its false positives make it low-utility 2024-03-31 06:32:39 +00:00
Martin Cigorraga
786d2a6f93 Replace hardcoded Fedora version in Copr repos
Lets use %OS_VERSION% and let the package manager fill in with the appropriate version of the OS.
2024-03-31 06:10:01 +00:00
qoijjj
55a54742d6 fix: disable compression for sshd for server variants 2024-03-29 19:05:31 +00:00
qoijjj
6955f00e39 docs: move docs.md to wiki 2024-03-28 21:23:42 +00:00