Commit Graph

  • 1b5e539ec2 fix: audit script cleanup qoijjj 2024-08-22 12:03:22 -07:00
  • 51ad84b1ad feat: Add flatpak auditing to audit-secureblue (#377) Rubiginosa 2024-08-21 16:22:11 -04:00
  • aaf3e4d344 fix: set Recommends=false while waiting for upstream qoijjj 2024-08-21 13:12:51 -07:00
  • 826994592a feat: squash the layered images (#386) Ivo Damjanović 2024-08-21 22:11:44 +02:00
  • 0e3912c3b6 fix: remove -base from the naming scheme of the cosmic images (#385) Ivo Damjanović 2024-08-21 21:12:56 +02:00
  • 92eb7a46a3 fix: ensure usbguard is universally present qoijjj 2024-08-20 18:47:24 -07:00
  • 7ff130f248 fix: typo in audit script qoijjj 2024-08-20 18:43:21 -07:00
  • 96a06bf712 docs: add additional detail to POSTINSTALL-README.md qoijjj 2024-08-20 16:11:07 -07:00
  • 1c38cc7ce7 fix: use alternate delimiter for motd tip qoijjj 2024-08-20 16:00:04 -07:00
  • 38cbf7715a feat: add audit-secureblue just command (#382) qoijjj 2024-08-20 15:08:18 -07:00
  • 8c9d2e341c chore: remove patch merged upstream qoijjj 2024-08-20 11:33:20 -07:00
  • 3b2b1dbd93 fix: url in motd qoijjj 2024-08-20 10:36:00 -07:00
  • d6e18573ae feat: add link to release notifications FAQ in motd qoijjj 2024-08-20 10:34:51 -07:00
  • ab62176792 docs: fix typo qoijjj 2024-08-20 10:33:53 -07:00
  • 65de464f45 docs: link to release notifications in postinstall readme qoijjj 2024-08-20 10:33:31 -07:00
  • de7bcc1f68 docs: add FAQ item about secureblue changes qoijjj 2024-08-20 10:32:57 -07:00
  • 327eb2279d docs: add a note to motd to check the latest release notes qoijjj 2024-08-20 10:28:53 -07:00
  • f86b2c49e1 docs: add FAQ item about known upstream proprietary nvidia driver bug qoijjj 2024-08-20 09:48:35 -07:00
  • 06c2883bb1 fix: improve usbguard just command qoijjj 2024-08-19 18:21:50 -07:00
  • 0415516b2e docs: clarify POSTINSTALL-README.md qoijjj 2024-08-19 17:22:57 -07:00
  • 6d8a1bfeb1 docs: add step to POSTINSTALL-README.md qoijjj 2024-08-19 17:20:18 -07:00
  • 469e3fe7eb docs: add more postinstall steps qoijjj 2024-08-19 17:06:51 -07:00
  • 9d929fb087 chore: adjust patch in response to upstream changes qoijjj 2024-08-19 15:20:41 -07:00
  • b51dfb9049 chore: set patchfiles detectable in .gitattributes qoijjj 2024-08-19 09:51:49 -07:00
  • 80fda3adc6 chore: remove unused file qoijjj 2024-08-19 09:47:21 -07:00
  • dd10a99f93 fix: cleanup motd variables qoijjj 2024-08-18 22:44:35 -07:00
  • 5d4d755b96 chore: remove unusable toggle-nvk just command qoijjj 2024-08-18 22:04:23 -07:00
  • 49b8ad6efb fix: parse epoch time directly from json for motd qoijjj 2024-08-18 21:41:21 -07:00
  • 0d3869bbb5 fix: use json format for rpm-ostree in motd qoijjj 2024-08-18 21:35:05 -07:00
  • 7c5a225b7c docs: include missing item in readme qoijjj 2024-08-18 21:24:54 -07:00
  • 2d7b5a3ab2 fix: move justfile hardening to gui scripts qoijjj 2024-08-18 21:23:47 -07:00
  • 4c04c11b90 fix: typo in justfile script qoijjj 2024-08-18 20:21:41 -07:00
  • 357ce2934e feat: add tpm2 unlock improvements qoijjj 2024-08-18 20:00:33 -07:00
  • 3b4e75781a fix: build fix by including necessary package qoijjj 2024-08-18 19:07:19 -07:00
  • 01cf3e66a6 fix: disable maximize_build_space to ensure build deps are available qoijjj 2024-08-18 18:59:20 -07:00
  • 78198f4e5a feat: patch brew installation just command to not require wheel qoijjj 2024-08-18 18:35:56 -07:00
  • a832247d84 docs: readme clarification qoijjj 2024-08-14 22:01:28 -07:00
  • a6256a396c docs: fix links in readme qoijjj 2024-08-13 11:08:14 -07:00
  • 31b1339fa5 chore: disable yafti run on config change as it causes user confusion qoijjj 2024-08-11 04:49:00 -07:00
  • 94eca70c71 fix: container policy hardening script for cosmic images (#367) Ivo Damjanović 2024-08-11 05:54:07 +02:00
  • e27586f10f docs: fix readme typo qoijjj 2024-08-10 18:35:05 -07:00
  • d1e8c3c041 docs: reorganize images qoijjj 2024-08-10 10:55:30 -07:00
  • 3b927dc8ed fix: check only the first string token when searching lsattr qoijjj 2024-08-10 03:56:35 -07:00
  • 872cb784ef feat: add ujust command to lock bash environment files to mitigate LD… (#365) qoijjj 2024-08-09 16:14:44 -07:00
  • 3e9bfa81a9 fix: remove chsh removal script since it has been removed upstream qoijjj 2024-08-08 17:45:03 -07:00
  • 0104d6a697 fix: revert container policy hardening migration to /etc until upstream migrates qoijjj 2024-08-08 17:28:44 -07:00
  • 2deefb4d54 fix: revert /etc migration only for signing module qoijjj 2024-08-08 17:18:15 -07:00
  • 378caba43f docs: clarify disablement of GNOME user extensions better (#364) fiftydinar 2024-08-09 00:59:25 +02:00
  • 3fb96ece10 chore: move /usr/etc to /etc per upstream rpm-ostree recommendation qoijjj 2024-08-08 15:48:30 -07:00
  • ed02255f57 docs: more cleanup qoijjj 2024-08-08 00:01:50 -07:00
  • 4888f639e5 chore: enable semantic commits qoijjj 2024-08-07 23:58:23 -07:00
  • 7b8f12d5c0 docs: cleanup qoijjj 2024-08-07 23:57:59 -07:00
  • 4c85413563 remove gnome videos (totem) from yafti.yml (#363) SnuggleCovenant 2024-08-07 17:53:34 -04:00
  • e1a130f6f9 feat: Disable user Gnome extensions & user-installation of them (#361) fiftydinar 2024-08-07 02:14:30 +02:00
  • d68cf29895 docs: add xwayland toggle note to FAQ qoijjj 2024-08-06 14:34:08 -07:00
  • 78b531846d chore: fix build by isolating silverblue-only package qoijjj 2024-08-06 10:39:05 -07:00
  • 2318f83a9a chore: ensure package consistency across images qoijjj 2024-08-06 10:01:13 -07:00
  • f75215cfdf fix: set permissions for xwayland file in ujust command qoijjj 2024-08-03 12:19:43 -07:00
  • c21a697252 Update 60-custom.just.readme.md to put new kargs in the correct section (#357) spaceoden 2024-08-02 12:01:52 -08:00
  • 9f56f2ff06 feat: set additional kargs to override suboptimal defaults qoijjj 2024-08-01 22:43:23 -07:00
  • ce67bf3e80 docs: remove postinstall step now handled by yafti qoijjj 2024-08-01 11:27:06 -07:00
  • 084fe1a40c fix: remove usbguard-dbus due to insufficient systemd sandboxing (#352) qoijjj 2024-07-31 14:20:49 -07:00
  • eea350af56 fix: remove comments from harden-flatpak ujust command to fix just parsing qoijjj 2024-07-30 16:25:15 -07:00
  • a9be430e64 docs: readme language improvements qoijjj 2024-07-30 16:09:37 -07:00
  • b36cc78dfb docs: clarify readme language qoijjj 2024-07-30 15:35:27 -07:00
  • 7c0976da7e feat: add to harden-flatpak logic that applies the highest supported hwcap (#346) spaceoden 2024-07-30 14:31:43 -08:00
  • c1ed731e7d docs: formatting qoijjj 2024-07-30 13:32:56 -07:00
  • 0a285cde7b docs: remove stuff that doesn't belong in the postinstall instructions qoijjj 2024-07-30 13:31:25 -07:00
  • b31aff0994 fix: prevent bluefin yafti from starting qoijjj 2024-07-30 00:22:30 -07:00
  • 298bbda019 fix: ujust command typos qoijjj 2024-07-30 00:03:25 -07:00
  • 7132b12816 docs: add note about VM network connectivity qoijjj 2024-07-29 23:23:52 -07:00
  • b9fc6e4826 feat: remove xwayland by default (#347) qoijjj 2024-07-29 23:02:10 -07:00
  • 16b01248cf docs: remove ublue-specific language from the contributing doc qoijjj 2024-07-29 16:29:37 -07:00
  • 9a843f3861 docs: add docs to JIT disable in Gnome (#345) Root 2024-07-29 12:57:15 -04:00
  • 1352428c1b docs: remove no longer relevant section qoijjj 2024-07-28 23:12:26 -07:00
  • 0b908d7994 fix: typo in docs qoijjj 2024-07-28 23:11:48 -07:00
  • 9156eecb98 docs: fix link in readme qoijjj 2024-07-28 23:06:46 -07:00
  • 1a55f1549b feat: add ujust to toggle Gnome JS JIT (#344) Root 2024-07-29 00:48:48 -04:00
  • abcdd4e3ac chore: remove chsh qoijjj 2024-07-28 21:39:58 -07:00
  • 45c9506980 feat: switch to hardened-chromium (#343) qoijjj 2024-07-28 21:12:45 -07:00
  • e500f078ef refactor(iso-script): improve flexibility and add new images (#336) HryshcIlya 2024-07-29 09:11:13 +05:00
  • be1effa83d Remove net.ipv4.conf.*.secure_redirects = 0 (#315) Tommy 2024-07-27 12:38:16 -07:00
  • 1106f0e897 docs: update URLs to reflect new file structure (#333) HryshcIlya 2024-07-27 09:22:31 +05:00
  • 5de5250eb3 docs: add cosmic images to the experimental section qoijjj 2024-07-26 15:24:19 -07:00
  • a70ee206a9 feat: add cosmic images (#334) MkKvcs 2024-07-27 00:23:34 +02:00
  • 98eebd7b59 docs: fix links in README.md (#326) HryshcIlya 2024-07-25 21:13:01 +05:00
  • c16debbdd4 Revert "feat: switch to hardened-chromium (#332)" qoijjj 2024-07-25 00:15:25 -07:00
  • 721ad757b5 feat: switch to hardened-chromium (#332) qoijjj 2024-07-24 23:35:23 -07:00
  • 0ccc7cd11b chore: fix server image build issues qoijjj 2024-07-23 08:48:09 -07:00
  • 761e8b3610 chore: remove optional packages that are available via brew qoijjj 2024-07-23 08:16:36 -07:00
  • 5746615794 fix: include only setools-console on server images qoijjj 2024-07-23 07:43:58 -07:00
  • f2d82a1e9f fix: remove usbguard-notifier from server images qoijjj 2024-07-23 07:01:36 -07:00
  • 7eaa98e399 docs: further readme readability improvements qoijjj 2024-07-23 06:57:12 -07:00
  • 9e11ed2f8e docs: reorganize readme qoijjj 2024-07-23 06:49:55 -07:00
  • 98c2b6cd58 docs: update readme to reflect postinstall changes qoijjj 2024-07-23 06:47:03 -07:00
  • c824e7e37b docs: move nvidia steps to POSTINSTALL-README.md qoijjj 2024-07-23 06:46:38 -07:00
  • 14dfed4f45 docs: improve image list readability qoijjj 2024-07-23 06:45:20 -07:00
  • dd2ce0ee3d docs: fix typo qoijjj 2024-07-23 06:31:39 -07:00
  • 50bac9eadd docs: improve image list readability qoijjj 2024-07-23 06:29:33 -07:00
  • f8537210d7 docs: fix typo qoijjj 2024-07-23 06:26:17 -07:00