krathalan / systemd-sandboxing
Hardened systemd profiles for various services
☆23Updated last year
Alternatives and similar repositories for systemd-sandboxing:
Users that are interested in systemd-sandboxing are comparing it to the libraries listed below
- deprecated - maybe replaced by: `apparmor.d`☆84Updated last year
- Systemd Hardening Helper - Mirror of https://github.com/desbma/shh☆121Updated last week
- ☆18Updated 5 months ago
- Linux kernel source tree with OpenPaX patch☆92Updated last month
- An app launcher to start apps in a restrictive sandbox https://www.kicksecure.com/wiki/sandbox-app-launcher☆41Updated 2 months ago
- Paused mirror. Official repository at https://git.glasklar.is/system-transparency/core/stboot☆111Updated last year
- Imagine the information security compliance guideline says you need an antivirus but you run Arch Linux☆123Updated last year
- Experimental pacman integration for Reproducible Builds and Binary Transparency (with sigstore/rekor)☆85Updated 9 months ago
- Build ostree images based on Debian/Ubuntu☆109Updated 2 years ago
- A high level language for SELinux policy☆59Updated last month
- Patch attestation utility☆29Updated last year
- Systemd Hardening Helper - Automatic systemd service hardening guided by strace profiling☆68Updated last week
- Mirror only. Official repository at https://git.glasklar.is/system-transparency/core/system-transparency☆86Updated last month
- A collection of info about session management with logind☆34Updated last year
- A simple GUI to change settings in coreboot's CBFS, via the nvramtool utility.☆88Updated last year
- Shared server infrastructure☆58Updated last week
- A tool for detecting usbguard policy and device presence changes☆48Updated 8 months ago
- Arch Linux Security Update Notifications☆58Updated 8 months ago
- My local AppArmor profiles for apps that can use those☆68Updated 3 months ago
- TPM 2.0 plugin for age☆92Updated 2 months ago
- Scripts to slightly improve the security of the Linux boot process with UEFI Secure Boot and TPM support☆277Updated 2 years ago
- Forensic tool to read all installed packages from a mounted Arch Linux drive and compare the filesystem to a trusted source☆34Updated last year
- Build initrd images using mkosi and distro packages☆40Updated last year
- NixOS Reproducibility Checker☆99Updated 2 years ago
- Systemd configuration for a network namespace containing a WireGuard VPN connection☆42Updated last year
- Scalable, modular, and easy to combine BIOS firmware technology without boundaries on processor architecture.☆42Updated this week
- Attest the trustworthiness of a device against a human using time-based one-time passwords☆173Updated 9 months ago
- Krathalan's AppArmor profiles for Arch Linux☆39Updated 5 months ago
- ☆25Updated 3 years ago
- ***** This repo is moved to https://github.com/libtypec/libtypec/ ***** “libtypec” is aimed to provide a generic interface abstracting al…☆36Updated last month