Commit Graph

322 Commits

Author SHA1 Message Date
c336bc4fd2 comment 2019-12-21 06:39:13 -05:00
b5f88efe20 fix 2019-12-21 06:27:01 -05:00
2088628c8d debugging 2019-12-21 06:24:08 -05:00
2dca031527 debugging 2019-12-21 06:22:46 -05:00
195e00cc87 output 2019-12-21 06:16:38 -05:00
4b21b6df41 fix 2019-12-21 06:11:44 -05:00
8436da2b7b output 2019-12-21 05:58:50 -05:00
da15265e1c fix 2019-12-21 05:55:23 -05:00
2a248fe0de fix 2019-12-21 05:54:39 -05:00
4f12664362 output 2019-12-21 05:54:07 -05:00
e3355843c8 fix 2019-12-21 05:51:22 -05:00
234ec5fe93 fix 2019-12-21 05:47:35 -05:00
7ff900c204 fix 2019-12-21 05:37:43 -05:00
e1a5ee4bcf output 2019-12-21 05:26:55 -05:00
66aaf3e22c output 2019-12-21 05:25:54 -05:00
7aa7d0b5a0 improve error handling 2019-12-21 05:22:27 -05:00
8919d38de9 disable debugging 2019-12-21 05:21:46 -05:00
cf5dee64fd refactoring 2019-12-21 05:18:34 -05:00
29cd9a0c38 fix 2019-12-21 05:17:35 -05:00
486027a4d7 fix 2019-12-21 05:15:38 -05:00
1fd26be864 fix 2019-12-21 05:14:51 -05:00
0fc97c37be fix 2019-12-21 05:14:39 -05:00
1018d5b3b0 output 2019-12-21 05:11:51 -05:00
4388fc4d5a refactoring 2019-12-21 05:11:19 -05:00
ed20980f4c refactoring 2019-12-21 05:07:10 -05:00
315ce86b9a refactoring 2019-12-21 04:33:03 -05:00
0c5848494b do not remount if already has intended mount options 2019-12-21 04:21:26 -05:00
203f4ad46e refactoring 2019-12-21 04:17:10 -05:00
e7fd0dadb0 output 2019-12-21 04:09:35 -05:00
e6ea21c775 record existing modes in separate dpkg-statoverwrite databases
to have a history of what was modified and to allow to undo changes
2019-12-21 04:08:35 -05:00
17e8605119 add matchwhitelist feature
add "/usr/lib/virtualbox/ matchwhitelist"
2019-12-20 12:57:24 -05:00
1b569ea790 comment 2019-12-20 12:32:36 -05:00
f88ca25889 fix terminology, sguid -> sgid
Thanks to @madaidan for the bug report!

https://forums.whonix.org/t/permission-hardening/8655/21
2019-12-20 11:58:07 -05:00
ff0a26fb5d comment 2019-12-20 11:49:19 -05:00
71496a33ab skip folders are these are not suid / guid 2019-12-20 11:47:53 -05:00
9321ecff41 no more need to add/remove / 2019-12-20 11:43:53 -05:00
b95225b6a6 pipefail 2019-12-20 11:37:05 -05:00
cad6f328f4 minor 2019-12-20 11:34:44 -05:00
3265f9894d output 2019-12-20 11:27:43 -05:00
1615ebec58 output 2019-12-20 11:07:44 -05:00
1e11b775cf output 2019-12-20 11:05:05 -05:00
731f802895 output 2019-12-20 11:04:12 -05:00
cd8efe5800 output 2019-12-20 11:03:22 -05:00
b31abea0af improve error handling 2019-12-20 10:49:31 -05:00
79cd3b86b6 comment 2019-12-20 10:47:23 -05:00
b3458cc6ee fix checking existing entries to avoid needless calls to dpkg-statoverride 2019-12-20 10:45:59 -05:00
370f3c5e54 comment 2019-12-20 10:35:05 -05:00
133d09f298 output 2019-12-20 10:33:16 -05:00
1ffa8e197e speed up setuid removal by using find with '-perm /u=s,g=s'
https://forums.whonix.org/t/permission-hardening/8655/19
2019-12-20 10:31:26 -05:00
4cfdf2c65b fix, re-enforce nosuid even if changed on the disk 2019-12-20 10:21:27 -05:00