Commit graph

  • 5113bc3909 Add libexec for apt Jeroen Rijken 2022-07-31 21:47:08 +02:00
  • 77b81a6fcf Add support for adding snapshots to grub. Jeroen Rijken 2022-07-30 23:02:48 +02:00
  • 6db5fbb67d Fix typo Jeroen Rijken 2022-07-30 19:15:53 +02:00
  • f072edc93a Fix zsysd profile name Jeroen Rijken 2022-07-30 18:51:09 +02:00
  • aac12fe1e9 Remove entries duplicate with base abstractions. Jeroen Rijken 2022-07-30 18:46:24 +02:00
  • b9db812ff8 Use nameservice-strict, fix exec Jeroen Rijken 2022-07-30 18:38:26 +02:00
  • 0ee510556c Small fixes Jeroen Rijken 2022-07-30 15:22:05 +02:00
  • 8787506308 Cosmetic fixes Jeroen Rijken 2022-07-30 14:11:39 +02:00
  • f20409709f Add capability, dbus and some proc Jeroen Rijken 2022-07-30 12:24:59 +02:00
  • 29935e166c Move complain flag Jeroen Rijken 2022-07-30 11:48:08 +02:00
  • a4ace6db57 Initial support for zsys Jeroen Rijken 2022-07-30 11:32:42 +02:00
  • 2878fa6a2e
    feat(profiles): general update. Alexandre Pujol 2022-07-29 16:47:09 +01:00
  • 58cfe9ad37 Small fixes Jeroen Rijken 2022-07-29 09:50:36 +02:00
  • 616753aea0 Consolidate rules Jeroen Rijken 2022-07-27 20:06:58 +02:00
  • fcea04c69b Remove complain flags Jeroen Rijken 2022-07-23 15:41:40 +02:00
  • e724d835ed Add ps to ptrace Jeroen Rijken 2022-07-23 15:30:44 +02:00
  • e4d118365a Add Kubernetes pause container Jeroen Rijken 2022-07-23 15:28:35 +02:00
  • e6525e1f04 Add missing volumes Jeroen Rijken 2022-07-23 15:28:07 +02:00
  • 07f1db2725 Fix some typo's Jeroen Rijken 2022-07-23 13:38:58 +02:00
  • 465a31c638 General updates Jeroen Rijken 2022-07-23 13:22:56 +02:00
  • 33da7af6e8 container updates Jeroen Rijken 2022-07-23 13:22:47 +02:00
  • 3af11c4d16 ZFS updates Jeroen Rijken 2022-07-23 13:22:38 +02:00
  • 2ac321f1dd Small fixes Jeroen Rijken 2022-07-29 09:50:36 +02:00
  • 17550cf5f9 Consolidate rules Jeroen Rijken 2022-07-27 20:06:58 +02:00
  • 0317054ea6 Remove complain flags Jeroen Rijken 2022-07-23 15:41:40 +02:00
  • dff147cfe4 Add ps to ptrace Jeroen Rijken 2022-07-23 15:30:44 +02:00
  • 74089938dd Add Kubernetes pause container Jeroen Rijken 2022-07-23 15:28:35 +02:00
  • 8d0b503957 Add missing volumes Jeroen Rijken 2022-07-23 15:28:07 +02:00
  • 384d86cef1 Fix some typo's Jeroen Rijken 2022-07-23 13:38:58 +02:00
  • d411381e4e General updates Jeroen Rijken 2022-07-23 13:22:56 +02:00
  • e069e0f8ef container updates Jeroen Rijken 2022-07-23 13:22:47 +02:00
  • c6d86ff123 ZFS updates Jeroen Rijken 2022-07-23 13:22:38 +02:00
  • b55c3f7d06
    ci: fix build image name. Alexandre Pujol 2022-07-22 12:09:07 +01:00
  • 7aca29b244
    feat(profiles): initial snap support. Alexandre Pujol 2022-07-21 22:40:06 +01:00
  • 177d27d94c
    feat(profiles): general update. Alexandre Pujol 2022-07-21 22:37:17 +01:00
  • 58b96a7ba9
    feat(profiles): add aptd profile. Alexandre Pujol 2022-07-21 22:31:59 +01:00
  • 595a27560f
    feat(profiles): add mullvad profiles. Alexandre Pujol 2022-07-21 20:17:03 +01:00
  • 48c023d4bd
    feat(profiles): containerd support for docker & cosmetic. Alexandre Pujol 2022-07-21 20:15:02 +01:00
  • 55bd85796c packagekitd dbus updates Jeroen Rijken 2022-07-19 20:02:55 +02:00
  • 137433ce6e dbus to NetworkManager Jeroen Rijken 2022-07-19 18:10:01 +02:00
  • eb87e035b8 Initial containerd-shim-runc support Jeroen Rijken 2022-07-19 17:09:36 +02:00
  • 266d5c6dc0 Add IPV6 Jeroen Rijken 2022-07-21 16:50:55 +02:00
  • b404d7e4c4 Move xtables-nft to separate profile Jeroen Rijken 2022-07-21 16:46:34 +02:00
  • 130c562488 Allow containerd signal from k3s Jeroen Rijken 2022-07-21 16:46:01 +02:00
  • 61eab33cd8 Add ptrace subprofile Jeroen Rijken 2022-07-21 16:03:54 +02:00
  • d6d9c943ae Add missing permission Jeroen Rijken 2022-07-21 16:00:06 +02:00
  • dca33292f7 Update ruleset for clean installation. Jeroen Rijken 2022-07-21 15:58:30 +02:00
  • a1f4dbee50 First batch of cleanups based on PR comments. Jeroen Rijken 2022-07-19 21:58:27 +02:00
  • c03c624472 Allow signals from containerd to calico Jeroen Rijken 2022-07-19 17:14:32 +02:00
  • 8f81a39df1 Support read AppArmor profiles Jeroen Rijken 2022-07-19 17:10:53 +02:00
  • 560250cf5f Fix mode Jeroen Rijken 2022-07-19 15:08:05 +02:00
  • 2deb2a48a6 Fix name range. Jeroen Rijken 2022-07-19 15:00:39 +02:00
  • a3415dc42c Typo and calico proc. Jeroen Rijken 2022-07-19 14:52:32 +02:00
  • c84455cca4 Fixes for container network creation. Jeroen Rijken 2022-07-19 14:48:57 +02:00
  • 3e006e3c76 Fix for calico unable to create network namespace. Jeroen Rijken 2022-07-19 14:34:31 +02:00
  • 5565217c91 Move xtables profile to child profile of k3s. Jeroen Rijken 2022-07-19 14:08:18 +02:00
  • 78cfb23bff Apply suggested fixes from PR Jeroen Rijken 2022-07-18 20:23:05 +02:00
  • 5af6cda328 Allow dbus messages and user database reading. Jeroen Rijken 2022-07-18 17:58:01 +02:00
  • 28a3584c14 Initial support for xtables-nft-multi Jeroen Rijken 2022-07-18 17:57:15 +02:00
  • 463da2a8f4 Initial support for k3s Jeroen Rijken 2022-07-18 17:56:52 +02:00
  • 87594a0755 Add IPV6 Jeroen Rijken 2022-07-21 16:50:55 +02:00
  • d6e8232cf3 Move xtables-nft to separate profile Jeroen Rijken 2022-07-21 16:46:34 +02:00
  • ac0671eb80 Allow containerd signal from k3s Jeroen Rijken 2022-07-21 16:46:01 +02:00
  • 0c1cdd3843 Add ptrace subprofile Jeroen Rijken 2022-07-21 16:03:54 +02:00
  • 275c466418 Add missing permission Jeroen Rijken 2022-07-21 16:00:06 +02:00
  • ad1d48c034 Update ruleset for clean installation. Jeroen Rijken 2022-07-21 15:58:30 +02:00
  • b8445e3b45 dbus style nobodysu 2022-07-20 00:48:58 +03:00
  • 0edce5ccef First batch of cleanups based on PR comments. Jeroen Rijken 2022-07-19 21:58:27 +02:00
  • 6937f8bc73 packagekitd dbus updates Jeroen Rijken 2022-07-19 20:02:55 +02:00
  • a1b497d101 dbus to NetworkManager Jeroen Rijken 2022-07-19 18:10:01 +02:00
  • ebf80eda09 Allow signals from containerd to calico Jeroen Rijken 2022-07-19 17:14:32 +02:00
  • a775fd12cb Support read AppArmor profiles Jeroen Rijken 2022-07-19 17:10:53 +02:00
  • 5e060d7650 Initial containerd-shim-runc support Jeroen Rijken 2022-07-19 17:09:36 +02:00
  • e5df2256a1 Fix mode Jeroen Rijken 2022-07-19 15:08:05 +02:00
  • 2a1b9744a9 Fix name range. Jeroen Rijken 2022-07-19 15:00:39 +02:00
  • 8fda216cc2
    doc: cosmetic. Alexandre Pujol 2022-07-19 13:56:36 +01:00
  • e8472987d8 Typo and calico proc. Jeroen Rijken 2022-07-19 14:52:32 +02:00
  • 1edd808046 Fixes for container network creation. Jeroen Rijken 2022-07-19 14:48:57 +02:00
  • 480a5f02ab Fix for calico unable to create network namespace. Jeroen Rijken 2022-07-19 14:34:31 +02:00
  • 469ecdfede Move xtables profile to child profile of k3s. Jeroen Rijken 2022-07-19 14:08:18 +02:00
  • 2eb2371739 Apply suggested fixes from PR Jeroen Rijken 2022-07-18 20:23:05 +02:00
  • cc7c4a37d2 Allow dbus messages and user database reading. Jeroen Rijken 2022-07-18 17:58:01 +02:00
  • 955874ed81 Initial support for xtables-nft-multi Jeroen Rijken 2022-07-18 17:57:15 +02:00
  • 94191f88b9 Initial support for k3s Jeroen Rijken 2022-07-18 17:56:52 +02:00
  • f4dd2745d1
    feat(profiles): add software-properties-dbus. Alexandre Pujol 2022-07-19 00:03:01 +01:00
  • 5b01f7963b
    feat(profiles): add file-roller. Alexandre Pujol 2022-07-18 23:58:12 +01:00
  • 9692926752
    feat(profiles): general update. Alexandre Pujol 2022-07-18 23:57:25 +01:00
  • 2ec802d40d Remove deny root Jeroen Rijken 2022-07-18 14:34:05 +02:00
  • e9bcd3f820 Small fixes Jeroen Rijken 2022-07-17 14:22:13 +02:00
  • 70aa5fdbb2 Small fixes Jeroen Rijken 2022-07-16 21:20:30 +02:00
  • 5a02490082 Needed for certain containers like calico Jeroen Rijken 2022-07-16 17:38:02 +02:00
  • 13aee74df9 Various containerd fixes Jeroen Rijken 2022-07-16 17:34:14 +02:00
  • 9e3ab9b9b4 Remove deny root Jeroen Rijken 2022-07-18 14:34:05 +02:00
  • c750cb1b77
    feat(profiles): general update. Alexandre Pujol 2022-07-18 11:36:16 +01:00
  • 081308db2f
    Add ZFS Event Daemon (#56) Jeroen 2022-07-18 00:04:13 +02:00
  • 76fd28ce9b Small fixes Jeroen Rijken 2022-07-17 14:22:13 +02:00
  • 10e76e57b0 Small fixes Jeroen Rijken 2022-07-16 21:20:30 +02:00
  • 0bffe7d69e Needed for certain containers like calico Jeroen Rijken 2022-07-16 17:38:02 +02:00
  • 6251981533 Various containerd fixes Jeroen Rijken 2022-07-16 17:34:14 +02:00
  • fe91648c74 Add ZFS Event Daemon Jeroen Rijken 2022-07-16 16:43:42 +02:00