Raja Grewal
|
e0696d02a2
|
Update security-misc.maintscript
Due to previous splitting IN b02230a783 .
|
2024-07-15 20:46:04 +10:00 |
|
Raja Grewal
|
fbfdb0fa99
|
Update security-misc.maintscript relating to grub
|
2024-07-15 14:40:03 +10:00 |
|
Patrick Schleizer
|
5ba5a85ad0
|
bumped changelog version
|
2024-07-13 15:01:16 +00:00 |
|
Raja Grewal
|
9f58266546
|
Move nf_conntrack_helper disabling into separate file
|
2024-07-13 23:32:01 +10:00 |
|
Raja Grewal
|
2de3a79599
|
Refactor existing sysctl for clarity
|
2024-07-13 22:41:40 +10:00 |
|
Raja Grewal
|
b02230a783
|
Split modprobe into blacklisted and disabled configurations
|
2024-07-12 02:42:37 +10:00 |
|
Patrick Schleizer
|
05c1711b16
|
bumped changelog version
|
2024-06-11 12:56:56 +00:00 |
|
Patrick Schleizer
|
b316352ede
|
bumped changelog version
|
2024-06-01 18:13:08 +00:00 |
|
Patrick Schleizer
|
641e98e577
|
bumped changelog version
|
2024-06-01 17:35:04 +00:00 |
|
Patrick Schleizer
|
bbe64a0b79
|
bumped changelog version
|
2024-05-28 12:04:53 +00:00 |
|
Patrick Schleizer
|
bfca98ea89
|
bumped changelog version
|
2024-05-18 20:45:12 +00:00 |
|
Raja Grewal
|
1bb843ec38
|
Update Copyright (C) to 2024
|
2024-05-11 13:18:36 +10:00 |
|
Patrick Schleizer
|
5867b1b014
|
bumped changelog version
|
2024-05-10 11:20:36 +00:00 |
|
Patrick Schleizer
|
a9886a3119
|
bumped changelog version
|
2024-04-12 06:56:39 +00:00 |
|
Patrick Schleizer
|
7fba04d148
|
bumped changelog version
|
2024-04-01 06:56:45 +00:00 |
|
Patrick Schleizer
|
d9ac01ba5c
|
bumped changelog version
|
2024-03-18 15:10:10 +00:00 |
|
Patrick Schleizer
|
357ea5deab
|
bumped changelog version
|
2024-03-11 15:07:50 +00:00 |
|
wryMitts
|
03ed546cd8
|
Create proc group on install
Fixes https://github.com/Kicksecure/security-misc/issues/210
|
2024-03-10 16:55:10 -04:00 |
|
Patrick Schleizer
|
57fc487e5e
|
bumped changelog version
|
2024-03-10 13:19:26 +00:00 |
|
Patrick Schleizer
|
0f0d9ca2a4
|
bumped changelog version
|
2024-03-04 11:48:30 +00:00 |
|
Patrick Schleizer
|
a5cc1774f2
|
bumped changelog version
|
2024-02-26 13:32:44 +00:00 |
|
Patrick Schleizer
|
02d6f67741
|
bumped changelog version
|
2024-02-22 20:08:17 +00:00 |
|
Patrick Schleizer
|
a1f898e3b3
|
bumped changelog version
|
2024-02-22 19:58:01 +00:00 |
|
Patrick Schleizer
|
6b73e6c2a9
|
bumped changelog version
|
2024-02-22 16:07:16 +00:00 |
|
Patrick Schleizer
|
eb3e0b9292
|
bumped changelog version
|
2024-02-22 14:52:55 +00:00 |
|
Patrick Schleizer
|
d148a769b7
|
bumped changelog version
|
2024-02-22 14:50:05 +00:00 |
|
Patrick Schleizer
|
ad9d913902
|
bumped changelog version
|
2024-02-03 18:28:27 +00:00 |
|
Patrick Schleizer
|
8037ce52f9
|
bumped changelog version
|
2024-01-25 13:59:29 +00:00 |
|
Patrick Schleizer
|
185bfe7497
|
use interest-noawait instead of interest-await
fixes https://github.com/Kicksecure/security-misc/issues/196
|
2024-01-25 06:54:36 -05:00 |
|
Patrick Schleizer
|
64e41b113c
|
bumped changelog version
|
2024-01-18 14:10:51 +00:00 |
|
Patrick Schleizer
|
f0e2a82b55
|
bumped changelog version
|
2024-01-17 19:18:25 +00:00 |
|
Patrick Schleizer
|
5a6cd4c2ab
|
remove now empty /bin from copying since it is empty after usrmerge
https://github.com/Kicksecure/security-misc/issues/190
|
2024-01-17 13:51:30 -05:00 |
|
Patrick Schleizer
|
0efee2f50f
|
usrmerge
fixes https://github.com/Kicksecure/security-misc/issues/190
|
2024-01-17 13:39:56 -05:00 |
|
Patrick Schleizer
|
18a06935e0
|
run permission hardener when new packages are install files to /usr or /opt
(basically anywhere)
fixes https://github.com/Kicksecure/security-misc/issues/189
|
2024-01-17 13:23:20 -05:00 |
|
Patrick Schleizer
|
66e6371221
|
bumped changelog version
|
2024-01-16 14:26:34 +00:00 |
|
Patrick Schleizer
|
186f6015da
|
bumped changelog version
|
2024-01-16 14:14:18 +00:00 |
|
Patrick Schleizer
|
6aa55698ab
|
delete legacy folder /etc/permission-hardening.d if empty
https://github.com/Kicksecure/security-misc/pull/181
|
2024-01-16 09:10:59 -05:00 |
|
Patrick Schleizer
|
9cafd78fe2
|
rm_conffile /etc/permission-hardening.d
https://github.com/Kicksecure/security-misc/pull/181
|
2024-01-16 09:05:09 -05:00 |
|
Patrick Schleizer
|
fa53848b5c
|
bumped changelog version
|
2024-01-16 13:58:55 +00:00 |
|
Patrick Schleizer
|
ed7c09fc46
|
permission-hardening -> permission-hardener migration
mv --verbose /var/lib/permission-hardening /var/lib/permission-hardener
https://github.com/Kicksecure/security-misc/pull/181
|
2024-01-16 08:45:13 -05:00 |
|
Patrick Schleizer
|
a90cd43631
|
fix postinst for new permission-hardener
https://github.com/Kicksecure/security-misc/pull/181
|
2024-01-16 08:32:52 -05:00 |
|
Patrick Schleizer
|
862bf6b5ab
|
Merge remote-tracking branch 'ben-grande/clean'
|
2024-01-16 08:19:28 -05:00 |
|
Patrick Schleizer
|
dc8d9eece3
|
bumped changelog version
|
2024-01-09 05:52:49 +00:00 |
|
Patrick Schleizer
|
e8f8dcd0fb
|
bumped changelog version
|
2024-01-04 02:03:26 +00:00 |
|
Patrick Schleizer
|
db0503e71d
|
bumped changelog version
|
2024-01-02 14:55:13 +00:00 |
|
Ben Grande
|
abf72c2ee4
|
Rename file permission hardening script
Hardener as the script is the agent that is hardening the file
permissions.
|
2024-01-02 13:34:29 +01:00 |
|
Patrick Schleizer
|
94c0e26a08
|
bumped changelog version
|
2023-12-29 20:15:50 +00:00 |
|
Patrick Schleizer
|
e15596e7af
|
bumped changelog version
|
2023-12-25 16:28:10 +00:00 |
|
Patrick Schleizer
|
7fa597deca
|
bumped changelog version
|
2023-12-22 16:31:58 +00:00 |
|
Patrick Schleizer
|
99f2edd4f6
|
bumped changelog version
|
2023-12-12 16:51:21 +00:00 |
|
Patrick Schleizer
|
dcaafa6c8b
|
bumped changelog version
|
2023-12-04 17:06:45 +00:00 |
|
Patrick Schleizer
|
82bd9138de
|
bumped changelog version
|
2023-11-20 13:13:10 +00:00 |
|
Patrick Schleizer
|
c2b3ff5243
|
moved libpam-tmpdir dependency to kicksecure-meta-packages
https://github.com/Kicksecure/security-misc/pull/147
|
2023-11-20 04:40:28 -05:00 |
|
Patrick Schleizer
|
4e4df5dd7c
|
bumped changelog version
|
2023-11-11 22:29:57 +00:00 |
|
Patrick Schleizer
|
8d58077d68
|
bumped changelog version
|
2023-11-11 20:22:34 +00:00 |
|
Patrick Schleizer
|
7757080519
|
change license to AGPL-3+
https://forums.whonix.org/t/license-change-to-agplv3/17455
|
2023-11-11 13:41:28 -05:00 |
|
Patrick Schleizer
|
20f804f19c
|
bumped changelog version
|
2023-11-06 17:28:21 -05:00 |
|
Patrick Schleizer
|
72f6e6bb9c
|
output
|
2023-11-06 16:28:23 -05:00 |
|
Patrick Schleizer
|
5a96616b39
|
bumped changelog version
|
2023-11-05 21:13:14 -05:00 |
|
Patrick Schleizer
|
24b4d59ce4
|
bumped changelog version
|
2023-11-05 20:14:33 -05:00 |
|
Patrick Schleizer
|
d203e539aa
|
bumped changelog version
|
2023-11-05 18:17:59 -05:00 |
|
Patrick Schleizer
|
826e76d037
|
bumped changelog version
|
2023-11-05 17:43:33 -05:00 |
|
Patrick Schleizer
|
4fda9d2e84
|
bumped changelog version
|
2023-11-05 16:46:18 -05:00 |
|
Patrick Schleizer
|
40e536a9be
|
bumped changelog version
|
2023-11-05 16:04:03 -05:00 |
|
Patrick Schleizer
|
52b6e92e00
|
bumped changelog version
|
2023-11-05 15:58:21 -05:00 |
|
Patrick Schleizer
|
76e3a3c5f9
|
bumped changelog version
|
2023-11-05 15:29:38 -05:00 |
|
Patrick Schleizer
|
949c163370
|
bumped changelog version
|
2023-11-05 15:14:43 -05:00 |
|
Patrick Schleizer
|
4a19fbae0b
|
move permission-hardening to /usr/bin to make it more easily accessible
|
2023-11-05 15:13:01 -05:00 |
|
Patrick Schleizer
|
0544657123
|
bumped changelog version
|
2023-11-05 14:56:06 -05:00 |
|
Patrick Schleizer
|
eab5d7d4ec
|
cleanup
|
2023-11-05 14:50:13 -05:00 |
|
Patrick Schleizer
|
5a75bcfb19
|
Merge pull request #145 from monsieuremre/wifi-and-bluetooth
Wifi and Bluetooth Patch | Security and Privacy
|
2023-11-05 14:49:00 -05:00 |
|
Patrick Schleizer
|
dcead44cc6
|
output
|
2023-11-05 11:32:46 -05:00 |
|
Patrick Schleizer
|
f6bf69b41f
|
update link
|
2023-11-05 11:31:09 -05:00 |
|
Patrick Schleizer
|
0242c04dc2
|
port to DKMS drop-in folder
undisplace /etc/dkms/framework.conf.security-misc
moved to /etc/dkms/framework.conf.d/30_security-misc.conf
|
2023-11-03 14:51:14 -04:00 |
|
Patrick Schleizer
|
48adb44c6f
|
bumped changelog version
|
2023-11-03 12:17:24 -04:00 |
|
Patrick Schleizer
|
b6d53f698d
|
Revert "allow loading unsigned modules due to issues"
This reverts commit 661bcd8603 .
|
2023-11-03 12:17:00 -04:00 |
|
Patrick Schleizer
|
04b210ee88
|
bumped changelog version
|
2023-11-03 12:10:48 -04:00 |
|
Patrick Schleizer
|
7dc99d54c0
|
fix
|
2023-11-03 12:09:39 -04:00 |
|
Patrick Schleizer
|
2a602e78d6
|
Merge branch 'master' into PAM-tmp-files-hardening
|
2023-11-03 12:08:50 -04:00 |
|
Patrick Schleizer
|
ceffd2b3ee
|
bumped changelog version
|
2023-11-03 12:06:43 -04:00 |
|
Patrick Schleizer
|
cdd66ee376
|
wrap-and-sort
|
2023-11-03 10:48:46 -04:00 |
|
Patrick Schleizer
|
8326aecdb4
|
bumped changelog version
|
2023-11-03 10:33:02 -04:00 |
|
Patrick Schleizer
|
07540db90d
|
Revert "Revert "set default umask to 027""
This reverts commit f8913ceb2e .
|
2023-11-03 09:45:12 -04:00 |
|
Patrick Schleizer
|
f8913ceb2e
|
Revert "set default umask to 027"
This reverts commit cd216095eb .
|
2023-11-03 09:43:44 -04:00 |
|
Patrick Schleizer
|
43bd789c30
|
bumped changelog version
|
2023-11-03 09:28:08 -04:00 |
|
Patrick Schleizer
|
cd216095eb
|
set default umask to 027
using package libpam-umask
https://www.debian.org/doc/manuals/securing-debian-manual/ch04s11.en.html#id-1.5.14.19
https://github.com/Kicksecure/security-misc/pull/151
|
2023-11-03 09:12:24 -04:00 |
|
monsieuremre
|
3ee4be652b
|
depend on libpam-tmpdir
|
2023-11-02 09:36:58 +00:00 |
|
Patrick Schleizer
|
a768f1f1eb
|
bumped changelog version
|
2023-11-01 12:26:21 -04:00 |
|
Patrick Schleizer
|
5ed2a5ce4a
|
bumped changelog version
|
2023-11-01 11:10:36 -04:00 |
|
monsieuremre
|
90a88225a4
|
security-misc.maintscript
|
2023-10-27 14:38:31 +00:00 |
|
Patrick Schleizer
|
7d576842fb
|
bumped changelog version
|
2023-10-26 20:08:41 -04:00 |
|
Patrick Schleizer
|
ca9603af17
|
bumped changelog version
|
2023-10-26 12:23:48 -04:00 |
|
Patrick Schleizer
|
5f4222c1c3
|
enable SUID Disabler and Permission Hardener by default
https://www.kicksecure.com/wiki/SUID_Disabler_and_Permission_Hardener
https://forums.whonix.org/t/suid-disabler-and-permission-hardener/7706
|
2023-10-26 12:20:48 -04:00 |
|
Patrick Schleizer
|
8557e0963e
|
bumped changelog version
|
2023-10-25 17:55:37 -04:00 |
|
Patrick Schleizer
|
b7e2d49f5f
|
comment
|
2023-10-25 17:41:05 -04:00 |
|
Patrick Schleizer
|
a2f811aff0
|
Merge pull request #135 from monsieuremre/kernel-fix
Kernel hardening fix
|
2023-10-25 17:26:46 -04:00 |
|
monsieuremre
|
ee6716e178
|
security-misc.maintscript
|
2023-10-24 20:43:10 +00:00 |
|
Patrick Schleizer
|
3317332cb4
|
bumped changelog version
|
2023-10-24 05:51:11 -04:00 |
|
Patrick Schleizer
|
f3b40f12cb
|
bumped changelog version
|
2023-10-22 19:23:22 -04:00 |
|
Patrick Schleizer
|
ee15f749bb
|
bumped changelog version
|
2023-10-22 16:54:58 -04:00 |
|