krathalan / systemd-sandboxing
Hardened systemd profiles for various services
☆21Updated 9 months ago
Alternatives and similar repositories for systemd-sandboxing:
Users that are interested in systemd-sandboxing are comparing it to the libraries listed below
- deprecated - maybe replaced by: `apparmor.d`☆87Updated last year
- Linux kernel source tree with OpenPaX patch☆78Updated 3 months ago
- TCP ISN CPU Information Leak Protection. TCP Initial Sequence Numbers Randomization to prevent TCP ISN based CPU Information Leaks.☆45Updated this week
- Paused mirror. Official repository at https://git.glasklar.is/system-transparency/core/stboot☆111Updated last year
- An app launcher to start apps in a restrictive sandbox https://www.kicksecure.com/wiki/sandbox-app-launcher☆38Updated last week
- Mirror only. Official repository at https://git.glasklar.is/system-transparency/core/system-transparency☆85Updated last month
- Systemd Hardening Helper - Mirror of https://github.com/desbma/shh☆113Updated this week
- Reviews of shim☆68Updated 2 months ago
- “libtypec” is aimed to provide a generic interface abstracting all platform complexity for user space to develop tools for efficient USB-…☆35Updated 5 months ago
- Watch netlink for interface address updates to do DynDNS just like nsupdate does (RFC2136 + RFC2845)☆15Updated this week
- A tool for detecting usbguard policy and device presence changes☆47Updated 6 months ago
- Arch Linux Security Update Notifications☆58Updated 6 months ago
- ☆16Updated 3 months ago
- Krathalan's AppArmor profiles for Arch Linux☆38Updated 3 months ago
- Select authentication and indentity profile to use on the system.☆51Updated this week
- Use SoloKey to unlock a LUKS encrypted partition☆31Updated 2 years ago
- Script to generate an OVMF vars file with default secure boot key enrolled.☆87Updated 2 years ago
- Kexec into an in-memory emergency system☆31Updated 2 years ago
- Scripts to build the Linux kernel from a config file and initrd from a list of programs☆22Updated last year
- Make a disk image formatted with both ext2 and FAT at once☆382Updated last year
- TPM 2.0 plugin for age☆83Updated 6 months ago
- Patch attestation utility☆27Updated 11 months ago
- Build ostree images based on Debian/Ubuntu☆105Updated 2 years ago
- Btrfs Snapshot Disk Usage Analyzer☆39Updated 4 years ago
- ☆63Updated 5 months ago
- Rewritten Clevis TPM2 PIN☆16Updated 8 months ago
- Build postprocessor to reset metadata fields for build reproducibility☆52Updated last month
- The utility to manipulate machine owner keys☆71Updated 10 months ago
- Linux-hardened deny_new_usb control☆21Updated 4 years ago
- Build initrd images using mkosi and distro packages☆41Updated last year