Ophestra cat
cat pushed to bwrap at security/fortify 2025-03-18 02:18:40 +09:00
b74a08dda9 sandbox: prepare ops early
cat pushed to bwrap at security/fortify 2025-03-17 22:38:40 +09:00
1b9408864f sandbox: pass cmd to cancel function
cat pushed to bwrap at security/fortify 2025-03-17 22:13:40 +09:00
cc89dbdf63 sandbox: place files with content
cat pushed to bwrap at security/fortify 2025-03-17 22:03:21 +09:00
228f3301f2 sandbox: create directories
cat pushed to bwrap at security/fortify 2025-03-17 21:56:10 +09:00
07181138e5 sandbox/mount: pass absolute path
cat pushed to bwrap at security/fortify 2025-03-17 21:51:03 +09:00
816b372f14 sandbox: cancel process on serve error
cat pushed to bwrap at security/fortify 2025-03-17 21:46:49 +09:00
d7eddd54a2 sandbox: rename params struct
cat pushed to bwrap at security/fortify 2025-03-17 17:10:09 +09:00
7c063833e0 internal/sys: wrap getuid/getgid
cat pushed to bwrap at security/fortify 2025-03-17 16:38:01 +09:00
af3619d440 sandbox: create symlinks
cat pushed to bwrap at security/fortify 2025-03-17 16:17:15 +09:00
528674cb6e sandbox/init: fail early on nil op
cat pushed to bwrap at security/fortify 2025-03-17 16:11:28 +09:00
70c9757e26 sandbox/mount: rename device flag
cat pushed to bwrap at security/fortify 2025-03-17 15:43:18 +09:00
c83a7e2efc sandbox: mount container /dev/mqueue
cat pushed to bwrap at security/fortify 2025-03-17 15:33:51 +09:00
904208b87f sandbox: unwrap path string
cat pushed to bwrap at security/fortify 2025-03-17 12:51:26 +09:00
007b52d81f sandbox/seccomp: check for both partial read outcomes
cat pushed to bwrap at security/fortify 2025-03-17 12:26:29 +09:00
3385538142 nix: clean up flake outputs
cat pushed to bwrap at security/fortify 2025-03-17 12:12:21 +09:00
6d07935893 nix: clean up flake outputs
cat pushed to bwrap at security/fortify 2025-03-17 12:06:28 +09:00
35b49a4f90 nix: clean up flake outputs
cat pushed to bwrap at security/fortify 2025-03-17 09:49:32 +09:00
7b554234b2 nix: clean up devShells
cat pushed to develop at security/fortify 2025-03-17 02:56:35 +09:00
24618ab9a1 sandbox: move out of internal
9ce4706a07 sandbox: move params setup functions
9a1f8e129f sandbox: wrap fmsg interface
ee10860357 seccomp: install output atomically
44277dc0f1 dbus: run in native sandbox
Compare 51 commits »
cat pushed to bwrap at security/fortify 2025-03-17 02:55:41 +09:00
24618ab9a1 sandbox: move out of internal