Commit graph

244 commits

Author SHA1 Message Date
netblue30
d3965324d2 0.9.41 development starting 2016-05-31 06:51:49 -04:00
netblue30
dc6eb6ad58 0.9.40 testing 2016-05-17 11:25:13 -04:00
Fred-Barclay
4aceb53813
Moved to ~ 2016-04-16 23:27:18 +10:00
netblue30
22fb4697ce moving to 0.9.40-rc2, fixed firecfg.config path 2016-04-03 18:01:48 -04:00
netblue30
996c01fd3d testing 2016-03-31 09:05:56 -04:00
netblue30
e7d1fd9965 added firecfg utility 2016-03-25 08:47:17 -04:00
netblue30
ff097d8113 added firejail.config 2016-03-12 11:16:34 -05:00
netblue30
3a42337a9a compile time support to disable file transfer 2016-03-12 08:29:58 -05:00
netblue30
6ac6111f5f cleanup 2016-03-02 08:49:50 -05:00
netblue30
ccc5d78e18 0.9.40-rc1 testing 2016-02-29 08:31:20 -05:00
netblue30
abe50f280d ./configure --enable-network=restricted 2016-02-24 09:03:11 -05:00
netblue30
a9b4b95220 Merge branch 'master' of https://github.com/netblue30/firejail 2016-02-24 08:02:04 -05:00
Yuriy M. Kaminskiy
4db1a65a07 Add compile-time option to restrict --net= to root only
./configure --enable-network=restricted allows only --net=none to
non-root users.

Other variants delegate too much power to non-root users and dangerous (it
completely bypasses system-wide firewall and routing, it allows introducing
arbitrary-chosen MAC and IP interfaces on LAN [disregarding DHCP
policy], etc).
Root already had power to twiddle with anything, so no sense to restrain
her, and --net=none looks safe enough (and still useful) for ordinary
users.
2016-02-23 18:13:23 +03:00
netblue30
3212101227 x11 work 2016-02-23 09:53:54 -05:00
netblue30
3dbeb2f255 default seccomp filter update 2016-02-08 10:33:18 -05:00
netblue30
86d54bba35 0.9.38 testing 2016-02-01 09:41:04 -05:00
netblue30
cd0ecfc7a7 0.9.38-rc1 testing 2016-01-29 09:20:19 -05:00
netblue30
9edc43cc48 --disable-network --disable-userns compile time options 2016-01-25 10:48:23 -05:00
netblue30
dfd660f80d 0.9.38 testing 2016-01-24 20:31:52 -05:00
netblue30
5c1e080c0e development version 0.9.37 2016-01-09 08:39:18 -05:00
netblue30
f7439c3e0a 0.9.36 testing 2015-12-23 09:46:12 -05:00
netblue30
ac39cb3133 fixes 2015-12-10 13:49:30 -05:00
netblue30
2823ffcc25 release 0.9.36-rc1 testing 2015-12-08 09:55:37 -05:00
netblue30
f9021ef871 --tracelog 2015-12-03 08:45:52 -05:00
netblue30
d3cbab9b3c fixed sysconfdir 2015-11-14 13:20:47 -05:00
netblue30
fa56cd63c8 move firejail directory form /tmp to /run 2015-11-08 12:20:28 -05:00
netblue30
23fc8f4537 0.9.34 testing 2015-11-06 13:40:40 -05:00
netblue30
2b37849dbd Protect shell startup files 2015-10-30 08:55:25 -04:00
netblue30
9f0bfe58c7 release 0.9.34-rc1 testing 2015-10-29 10:18:35 -04:00
netblue30
54a0b2f720 small fixes in config.ac 2015-10-25 14:39:07 -04:00
Duncaen
d49889d246 Revert "fix struct stat64 problem for musl libc"
This reverts commit 8011645669.
2015-10-25 14:37:11 +01:00
netblue30
8011645669 fix struct stat64 problem for musl libc 2015-10-25 09:27:34 -04:00
netblue30
19841f51e3 set development version 2015-10-24 09:53:43 -04:00
netblue30
97c043335c 0.9.32 testing 2015-10-21 07:37:33 -04:00
netblue30
0cd353a7b7 new syscalls added to default seccomp filter 2015-10-15 12:26:49 -04:00
netblue30
676cbe860e release 0.9.32-rc1 2015-10-14 08:09:02 -04:00
Matthew Gyurgyik
4a202b68fa switch project url to github 2015-10-10 20:39:23 -04:00
netblue30
1265803f63 Default profiles work 2015-09-16 07:33:08 -04:00
netblue30
4d4ef74041 release 0.9.30 2015-09-14 09:50:12 -04:00
netblue30
d9dd0b3f28 0.9.30-rc2 development start 2015-09-10 11:17:19 -04:00
netblue30
79db355e0a 0.9.30-rc1 2015-09-10 08:15:42 -04:00
netblue30
9d91a26a15 added --enable-fatal-warnings 2015-08-21 08:16:06 -04:00
netblue30
878cd16973 fixing issues 2 and 4 2015-08-10 12:33:28 -04:00
netblue30
1379851360 Baseline firejail 0.9.28 2015-08-08 19:12:30 -04:00