summary refs log tree commit diff
path: root/nixos/modules/security
Commit message (Expand)AuthorAge
* Merge pull request #18366 from groxxda/acme-loopFranz Pletz2016-09-06
|\
| * security.acme: the client really needs networkingAlexander Ried2016-09-06
* | Enable the runuser command from util-linuxEelco Dolstra2016-09-06
|/
* grsecurity module: set nixpkgs.config.grsecurity = trueJoachim Fasting2016-09-05
* setuid-wrappers: correctly umount the tmpfsDomen Kožar2016-09-04
* setuid-wrappers : Prepare permissions for running wrappersKarn Kallio2016-09-04
* Fixes #18124: atomically replace /var/setuid-wrappers/ (#18186)Domen Kožar2016-09-01
* Merge staging into masterTuomas Tynkkynen2016-09-01
|\
| * audit: Disable by defaultTuomas Tynkkynen2016-08-31
| * audit service: Explicitly call auditctl to disable everythingTuomas Tynkkynen2016-08-31
* | Revert "setuid-wrappers: Update wrapper dir atomically."Domen Kožar2016-08-31
* | hidepid service: use new boot.specialFileSystemsNikolay Amiantov2016-08-31
* | setuid-wrappers: Update wrapper dir atomically.Shea Levy2016-08-31
* | Merge pull request #17822 from abbradar/systemd-mountsNikolay Amiantov2016-08-30
|\ \
| * | nixos filesystems: unify early filesystems handlingNikolay Amiantov2016-08-27
* | | nixos manual: move chapter on grsecurity to auto-generated module docsJoachim Fasting2016-08-29
| |/ |/|
* | Merge pull request #15025 from ericsagnes/modules/manualDomen Kožar2016-08-28
|\ \ | |/ |/|
| * modules: move meta at top levelEric Sagnes2016-08-11
* | Merge pull request #11484 from oxij/nixos-toposort-filesystemsNikolay Amiantov2016-08-27
|\ \
| * | nixos: apply toposort to fileSystems to support bind and move mountsJan Malakhovski2016-08-23
* | | ldap: Add option for login PAM integrationMarkus Mueller2016-08-23
|/ /
* | grsecurity module: systemd-nspawn requires cap_sys_adminJoachim Fasting2016-08-15
* | grsecurity module: permit chmod +s in sandboxed buildsJoachim Fasting2016-08-15
|/
* chromium-suid-sandbox module: fix descriptionNikolay Amiantov2016-08-08
* chromium: add nixos module security.chromiumSuidSandboxobadz2016-08-06
* grsecurity module: disable EFI runtime services by defaultJoachim Fasting2016-08-02
* grsecurity module: correct internal noteJoachim Fasting2016-08-01
* grsecurity module: assert RBAC support in kernelJoachim Fasting2016-07-24
* grsecurity module: add gradm to system pathJoachim Fasting2016-07-24
* grsecurity module: tweak lockTunables option descriptionJoachim Fasting2016-07-16
* grsecurity module: grsecurity is not capitalized mid-sentenceJoachim Fasting2016-07-16
* grsecurity module: smarter container supportJoachim Fasting2016-07-16
* grsecurity module: enforce size overflows by defaultJoachim Fasting2016-07-16
* Merge pull request #16180 from zimbatm/shell-escapingzimbatm2016-06-19
|\
| * Escape all shell arguments uniformlyzimbatm2016-06-12
* | nixos: rewrite the grsecurity moduleJoachim Fasting2016-06-14
|/
* acme: added option `security.acme.preliminarySelfsigned` (#15562)Bob van der Linden2016-06-01
* setuid-wrappers: remove config.system.path from the closureDomen Kožar2016-05-23
* nixos/i3lock-color: added to pamRok Garbas2016-05-15
* grsecurity: add option to disable chroot caps restrictionJoachim Fasting2016-05-10
* apparmor-suid module: fix libcap lib output referenceJoachim Fasting2016-05-07
* grsecurity: support disabling TCP simultaneous connectJoachim Fasting2016-05-04
* grsecurity module: fix grsec-lock unit orderingJoachim Fasting2016-05-02
* acme.nix: Fix unit descriptionsEelco Dolstra2016-04-18
* Merge branch 'staging', containing closure-size #7701Vladimír Čunát2016-04-13
|\
| * Merge #12653: rework default outputsVladimír Čunát2016-04-07
| |\
| | * Merge branch 'closure-size' into p/default-outputsVladimír Čunát2016-03-14
| | |\
| | * | nixos systemPackages: rework default outputsVladimír Čunát2016-01-28
| * | | Merge branch 'master' into closure-sizeVladimír Čunát2016-04-01
| |\ \ \ | | |_|/ | |/| |
| * | | Merge master into closure-sizeVladimír Čunát2016-03-08
| |\ \ \