Commit graph

105 commits

Author SHA1 Message Date
Alexandre Pujol
02499d90f0
feat(profiles): general update. 2023-03-25 15:48:59 +00:00
Alexandre Pujol
1042728ca6
feat(profiles): general update. 2023-03-12 15:35:59 +00:00
Alexandre Pujol
52b3c1bcc5
feat(profiles): general update. 2023-03-10 10:20:48 +00:00
Alexandre Pujol
5e77974546
feat(profiles): better cockpit integration. 2023-03-07 18:01:07 +00:00
Jeroen Rijken
6911ca7c13 General update
Signed-off-by: Jeroen Rijken <jeroen.rijken@xs4all.nl>
2023-03-03 11:56:23 +00:00
nobody43
8b4407ca02 fixes 2023-02-22 21:52:55 +00:00
nobody43
d18e012f9e fixes 2023-02-22 21:52:55 +00:00
nobody43
a873af1f26 general_initial 2023-02-22 21:52:55 +00:00
Alexandre Pujol
a402200dbe
feat(profiles): general update. 2023-02-05 00:03:20 +00:00
Alexandre Pujol
e93e80ee20
feat(opensuse): final opensuse integration. 2023-02-04 23:55:14 +00:00
Vladimir Bauer
3c3f164e91
minor syntax fix (#112) 2023-01-29 10:53:41 +00:00
Alexandre Pujol
72e0618aa2
feat(profile): libvirt allow CPU information.
See #101.
2023-01-28 19:09:15 +00:00
Alexandre Pujol
807bf7f1c8
feat(profile): general update. 2023-01-24 20:07:10 +00:00
Alexandre Pujol
c59a40ec4e
feat(profiles): general update. See #101 2023-01-15 17:15:26 +00:00
Alexandre Pujol
f20aa4f548
feat(profiles): general update. 2023-01-14 13:28:21 +00:00
Alexandre Pujol
c453484eab
fix(profiles): docker pull need full access of the container. 2022-12-10 15:18:00 +00:00
Alexandre Pujol
1e5d90afe8
feat(profiles): general update. 2022-11-29 12:02:38 +00:00
Alexandre Pujol
9a46df81b9
feat(profiles): remove rules promoted into the base abstraction. 2022-11-28 18:05:29 +00:00
Alexandre Pujol
a90cdbe879
feat(profiles): general update. 2022-11-03 21:40:01 +00:00
nobody43
f94faf697e
Read-only root compatibility (#86)
* Read-only root compatibility

* remove complain

Co-authored-by: nobodysu <nobodysu@users.noreply.github.com>
2022-10-18 18:23:52 +00:00
Alexandre Pujol
f2989321eb
feat(profiles): general update. 2022-09-24 18:06:06 +01:00
Alexandre Pujol
8ff5ed7a69
feat(profiles): general update. 2022-09-11 20:45:14 +01:00
Jeroen
9818daba5f
LVM and general update (#68)
* Small fixes

* General update

* Add LVM

* Various small fixes

* Add profile

* Typo

* sbin to regex

* Date and time to extends

* Read cmdline

* Remove grep duplicate

* Small fixes

* Typo

* Permissions for warning scripts

* Add net_admin for multipath
2022-09-06 21:01:17 +00:00
Alexandre Pujol
746a36bfb4
feat(profiles): add our virt-aa-helper. 2022-09-03 16:10:17 +01:00
Alexandre Pujol
769627fc25
feat(profiles): remove libvirt abstractions. 2022-09-03 16:06:31 +01:00
Alexandre Pujol
3b56d3ff0f
feat(profiles): use the new hex variable. 2022-09-03 14:43:34 +01:00
Alexandre Pujol
9d4956df0d
feat(profiles): general update. 2022-08-21 20:16:29 +01:00
Alexandre Pujol
79860f207d
feat(profiles): initial support for dockerd. 2022-08-19 21:26:17 +01:00
Jeroen Rijken
af603fbc62 Revert "tty and pts are part of abstractions/consoles"
This reverts commit 51a33f3f5e.
2022-08-19 19:25:22 +01:00
Jeroen Rijken
c680dfe7db sort rules 2022-08-19 19:25:22 +01:00
Jeroen Rijken
099a97cb36 General update 2022-08-19 19:25:22 +01:00
Jeroen Rijken
005dec1a53 tty and pts are part of abstractions/consoles 2022-08-19 19:25:22 +01:00
Jeroen Rijken
6af5c76fb8 Add and update CNI profiles 2022-08-19 19:25:22 +01:00
Alexandre Pujol
c148aa978c
feat(profiles): general update. 2022-08-13 20:31:57 +01:00
Alexandre Pujol
2878fa6a2e
feat(profiles): general update. 2022-07-29 16:47:09 +01:00
Jeroen Rijken
58cfe9ad37 Small fixes 2022-07-29 16:41:19 +01:00
Jeroen Rijken
616753aea0 Consolidate rules 2022-07-29 16:41:19 +01:00
Jeroen Rijken
fcea04c69b Remove complain flags 2022-07-29 16:41:19 +01:00
Jeroen Rijken
e724d835ed Add ps to ptrace 2022-07-29 16:41:19 +01:00
Jeroen Rijken
e4d118365a Add Kubernetes pause container 2022-07-29 16:41:19 +01:00
Jeroen Rijken
e6525e1f04 Add missing volumes 2022-07-29 16:41:19 +01:00
Jeroen Rijken
07f1db2725 Fix some typo's 2022-07-29 16:41:19 +01:00
Jeroen Rijken
33da7af6e8 container updates 2022-07-29 16:41:19 +01:00
Alexandre Pujol
48c023d4bd
feat(profiles): containerd support for docker & cosmetic. 2022-07-21 20:15:02 +01:00
Jeroen Rijken
eb87e035b8 Initial containerd-shim-runc support 2022-07-21 20:05:56 +01:00
Jeroen Rijken
266d5c6dc0 Add IPV6 2022-07-21 19:46:45 +01:00
Jeroen Rijken
b404d7e4c4 Move xtables-nft to separate profile 2022-07-21 19:46:45 +01:00
Jeroen Rijken
130c562488 Allow containerd signal from k3s 2022-07-21 19:46:45 +01:00
Jeroen Rijken
61eab33cd8 Add ptrace subprofile 2022-07-21 19:46:45 +01:00
Jeroen Rijken
d6d9c943ae Add missing permission 2022-07-21 19:46:45 +01:00