1
0
mirror of https://github.com/tommytran732/QubesOS-Scripts synced 2024-12-22 07:01:33 -05:00
Commit Graph

28 Commits

Author SHA1 Message Date
e7ef3a8194
Simplify SELinux instructions 2024-11-12 06:15:10 -07:00
7b8f77e399
Enable SELinux on Fedora minimal 2024-11-12 05:52:05 -07:00
babf17970a
Consistency fix 2024-11-12 05:45:29 -07:00
481700d2cc
Use download command everywhere 2024-11-11 16:54:18 -07:00
xyhhx
e352ff1302
jackwagon: fix fedora scripts (#3)
* fix: fix fedora scripts

* refactor: remove utils.sh
2024-09-11 18:29:51 -07:00
a1c2d0a73a
Update modprobe URL 2024-07-26 05:07:07 -07:00
14fa0d89e1
Add set -u
Signed-off-by: Tommy <contact@tommytran.io>
2024-07-20 18:20:34 -07:00
5500bc5164
Not overwrite USERGROUP_ENAB on anything but Ubuntu
The nonsense with umask is introduced by Canonical's infinite wisdom:
https://git.launchpad.net/ubuntu/+source/pam/tree/debian/patches/pam_umask_usergroups_from_login.defs.patch?h=ubuntu/noble
https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=583958
We don't need to break sensible distributions because of Ubuntu nonsenses
2024-07-09 15:23:55 -07:00
c6475d524c
Use SecureBlue HMalloc and suppress curl output
Signed-off-by: Tommy <contact@tommytran.io>
2024-07-03 02:19:13 -07:00
e810a7d978
Add set -e
Signed-off-by: Tommy <contact@tommytran.io>
2024-07-02 16:52:42 -07:00
889e82ad60
POSIX compliance
Signed-off-by: Tommy <contact@tommytran.io>
2024-06-25 23:42:21 -07:00
4200946a8d
Better umask handling
Signed-off-by: Tommy <contact@tommytran.io>
2024-05-29 12:49:37 -07:00
6dd8134451
unpriv curl for minimal VMs
Signed-off-by: Tommy <contact@tommytran.io>
2024-05-16 22:47:39 -07:00
04fd34d738
Add ZRAM config
Signed-off-by: Tommy <contact@tommytran.io>
2024-05-16 22:36:29 -07:00
a5c22bbff2
Add hardened_malloc to Fedora
Signed-off-by: Tommy <contact@tommytran.io>
2024-04-28 14:16:43 -07:00
49c7b038d3
Keep everything consistent with Linux-Setup-Scripts
Signed-off-by: Tommy <contact@tommytran.io>
2024-04-28 13:57:34 -07:00
4ba0f414f1
Styling fix
Signed-off-by: Tommy <contact@tommytran.io>
2024-04-26 16:12:38 -07:00
384a3a6ef3
curl | sudo tee
Signed-off-by: Tommy <contact@tommytran.io>
2023-12-01 23:21:43 -07:00
ea308830c1
Fix 990-security-misc path
Signed-off-by: Tommy <contact@tommytran.io>
2023-11-15 14:21:33 -07:00
a5dd3256bb
Update KickSecure configuration paths & remove MirageOS builds 2023-10-31 09:32:17 -07:00
0048651850
Add Apache license header 2023-09-27 00:58:33 -07:00
bce5e59d4e
Update Kicksecure sysctl
Signed-off-by: Tommy <contact@tommytran.io>
2023-02-05 23:57:22 -05:00
391783ddad
Add SSH client config and DNSSEC for Fedora
Signed-off-by: Tommy <contact@tommytran.io>
2023-01-18 08:52:35 -05:00
2f8d9491cd
Remove NetworkManager systemd-sandbox-exec
Signed-off-by: Tommy <contact@tommytran.io>
2022-12-06 04:49:38 -05:00
a60193c8e2
Additional Hardening
Signed-off-by: Tommy <contact@tommytran.io>
2022-12-02 03:08:54 -05:00
6d40311b8d
Create fedora-minimal.sh
Signed-off-by: Tommy <contact@tommytran.io>
2022-07-26 18:09:49 -04:00
56e8f982fb
kickseucre 2022-05-26 13:50:11 -04:00
97c298473c
Create fedora-minimal.sh 2022-05-25 04:26:23 -04:00