|
90bebe1665
|
Better regex
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-05-31 13:19:20 -07:00 |
|
|
023cc46676
|
Typo fix
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-05-31 05:11:03 -07:00 |
|
|
4b9ae05218
|
Even better regex
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-05-31 02:33:02 -07:00 |
|
|
5bc20644e6
|
Better regex
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-05-31 02:27:28 -07:00 |
|
|
0c892f019b
|
Consistency fix
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-05-29 17:48:45 -07:00 |
|
|
7c8394ea12
|
Better virtualization handling
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-05-29 14:52:09 -07:00 |
|
|
24e7e6bd88
|
Minor reorganization
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-05-29 12:43:53 -07:00 |
|
|
1cca00f237
|
Better umask handling
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-05-29 12:27:45 -07:00 |
|
|
0a6419874a
|
Fix grub
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-05-27 10:26:12 -07:00 |
|
|
c2c57e5393
|
Update kernel hardening params
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-05-27 10:22:47 -07:00 |
|
|
3d1ece9861
|
Consistency fix
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-05-17 02:49:31 -07:00 |
|
|
4501edcdd9
|
Typo fixes
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-05-06 23:31:30 -07:00 |
|
|
83248c3718
|
Stop systemd-timesyncd before masking
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-04-28 13:44:01 -07:00 |
|
|
59fb5c611b
|
Better handling for Parallels
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-04-28 13:41:30 -07:00 |
|
|
b60c44327e
|
Remove duplicated commands
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-04-28 11:49:50 -07:00 |
|
|
912c884841
|
Move networking setup to the end of the scripts
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-04-28 11:47:36 -07:00 |
|
|
efd8e9c7cc
|
Block Flatpak system-bus and session-bus
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-04-23 14:29:57 -07:00 |
|
|
9b3bfbd5aa
|
Use lockdown=confidentiality for all desktop distros
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-04-19 14:57:27 -07:00 |
|
|
dd1cf61a49
|
Change to using --ozone-platform=wayland
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-04-18 15:31:31 -07:00 |
|
|
a71310508e
|
Override for org.gnome.Extensions
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-04-18 04:42:57 -07:00 |
|
|
476042087f
|
Enforce privacy settings
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-04-18 04:31:29 -07:00 |
|
|
fd54d28c4f
|
Add privacy configuration
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-04-18 04:07:16 -07:00 |
|
|
ca3b57ba71
|
Make sure /usr/local/share/applications exists sand allow X11 if using Rosetta
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-04-17 20:26:13 -07:00 |
|
|
b741e44281
|
Force Edge to run in Wayland
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-04-15 01:41:23 -07:00 |
|
|
64516002af
|
URL fix
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-04-15 01:35:36 -07:00 |
|
|
9b3575d9a0
|
Blacklist dconf dbus
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-04-13 22:17:54 -07:00 |
|
|
416e6c3d80
|
Block org.gnome.Shell.Extensions dbus
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-04-13 18:50:49 -07:00 |
|
|
c21861c0d4
|
Remove msr
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-04-05 13:35:35 -07:00 |
|
|
3e0304a4b9
|
Add --no-talk-name=org.freedesktop.systemd1
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-04-02 17:53:04 -07:00 |
|
|
ab8395a91c
|
Deny org.freedesktop.Flatpak
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-04-02 16:39:13 -07:00 |
|
|
9b9a465516
|
Disable unnecessary shellcheck
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-03-25 12:41:40 -07:00 |
|
|
18787512f0
|
Remove unnecessary line
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-03-22 14:41:32 -07:00 |
|
|
8c362a9999
|
Fix amd_iommu and remove extra_latent_entropy
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-02-26 21:37:40 -07:00 |
|
|
7672345a89
|
Consistency fixes
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-02-13 17:16:33 -07:00 |
|
|
6cdbe919f9
|
Split SSH hardening config
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-02-07 09:52:52 -07:00 |
|
|
d0819bbcb1
|
Cleanup kernel args
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-02-07 06:39:00 -07:00 |
|
|
77c3b23e3d
|
Sane apt upgrades
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-01-24 16:48:16 -07:00 |
|
|
5c7cedd512
|
Implement qemu-guest-agent
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-01-22 08:55:42 -07:00 |
|
|
effebda27a
|
Support UTM Rosetta
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-01-22 05:12:05 -07:00 |
|
|
8cb97dfeb9
|
Fix rosetta logic issues
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-01-22 04:22:35 -07:00 |
|
|
4071009728
|
Update telemetry disablement
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-01-22 04:20:45 -07:00 |
|
|
6e207360fa
|
Ubuntu 23.10 already defaults to gcc-13
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-01-22 03:38:18 -07:00 |
|
|
1e0d6d3a3c
|
Update grub hardening
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-01-21 01:23:50 -07:00 |
|
|
78ab2f2421
|
--nodevice=input does not work on Ubuntu yet
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-01-21 00:23:35 -07:00 |
|
|
d9f28a1198
|
Remove snap loupe
|
2024-01-20 23:33:06 -07:00 |
|
|
86a90937b6
|
Add Flatpak
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-01-20 23:29:30 -07:00 |
|
|
d2f32c7d3d
|
Remove baobab
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-01-20 21:00:51 -07:00 |
|
|
5370413e80
|
Update Ubuntu desktop to Mantic
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-01-20 20:38:03 -07:00 |
|