summary refs log tree commit diff
path: root/nixos/modules/security
Commit message (Expand)AuthorAge
* FIx some malformed XML in option descriptionsEelco Dolstra2019-05-13
* Merge pull request #61306 from joachifm/feat/fix-apparmor-boot-linux_5_1Joachim F2019-05-12
|\
| * nixos/apparmor: ensure that apparmor is selected at bootJoachim Fasting2019-05-11
* | rngd: harden service config, from archWill Dietz2019-05-07
|/
* rngd: add option to run w/debug flagWill Dietz2019-05-06
* nixos/apparmor: allow reloading profiles without losing confinementJoachim Fasting2019-04-28
* nixos/apparmor: order before sysinit.targetJoachim Fasting2019-04-28
* nixos/hardened: split description of allowUserNamespaces into parasJoachim Fasting2019-04-21
* nixos/pam: Add GNOME keyring use_authtok directive to password groupAlexander Kahl2019-04-14
* yubico-pam: add nixos integrationWill Dietz2019-03-31
* Merge pull request #57519 (systemd-confinement)aszlig2019-03-29
|\
| * nixos/confinement: Use PrivateMounts optionaszlig2019-03-27
| * nixos/confinement: Remove handling for StartOnlyaszlig2019-03-27
| * nixos/confinement: Explicitly set serviceConfigaszlig2019-03-15
| * nixos/confinement: Allow to include the full unitaszlig2019-03-14
| * nixos/confinement: Allow to configure /bin/shaszlig2019-03-14
| * nixos/systemd-chroot: Rename chroot to confinementaszlig2019-03-14
| * nixos: Add 'chroot' options to systemd.servicesaszlig2019-03-14
* | nixos/security: make duo support secure failure correctlyAlex Guzman2019-03-17
|/
* Merge pull request #55792 from sdier/fix/pam-updateSilvan Mosberger2019-02-25
|\
| * nixos/security: Fix pam configuration file generation.Scott Dier2019-02-24
| * nixos/security: Allow configuration of pam for duosec.Scott Dier2019-02-24
| * nixos/security: Add duo-unix support to pam.Scott Dier2019-02-24
* | nixos: add preferLocalBuild=true; on derivations for config filesSymphorien Gibol2019-02-22
|/
* Merge pull request #53762 from ju1m/nslcdFlorian Klink2019-01-30
|\
| * nixos/tests: test LDAP password changing through nslcdJulien Moutinho2019-01-18
* | nixos/pam: refactor U2F, docs about u2f_keys path (#54756)Wael Nasreddine2019-01-29
|/
* nixos/security/misc: expose SMT control optionJoachim Fasting2018-12-27
* nixos/security/misc: expose l1tf mitigation optionJoachim Fasting2018-12-27
* nixos/security/misc: factor out protectKernelImageJoachim Fasting2018-12-27
* nixos/security/misc: use mkMerge for easier extensionJoachim Fasting2018-12-27
* config.security.googleOsLogin: add moduleFlorian Klink2018-12-21
* security.pam.services.<name?>.: add googleOsLogin(AccountVerification|Authent...Florian Klink2018-12-21
* security.pam: make pam_unix.so required, not sufficientFlorian Klink2018-12-21
* nixos/rngd: do not pass --version flagGabriel Ebner2018-11-05
* apparmor-suid: don't force glibcWill Dietz2018-10-30
* dhparams module: add self as maintainerLéo Gaspard2018-10-31
* nixos/rngd: fix exec flags and udev rulesRenaud2018-10-28
* nixos/rngd: use new name pkgs.rng-toolsRenaud2018-10-24
* nixos/wrappers: remove outdated upgrade codeLinus Heckemann2018-10-21
* Merge pull request #48439 from joachifm/hardened-miscJoachim F2018-10-15
|\
| * nixos/security/misc: initJoachim Fasting2018-10-15
* | nixos/lock-kernel-modules: add myself to maintainersJoachim Fasting2018-10-15
|/
* Merge pull request #47563 from jameysharp/unscriptedJörg Thalheim2018-10-02
|\
| * nixos/pam: create wtmp/lastlog iff using pam_lastlogJamey Sharp2018-09-30
| * nixos/polkit: use tmpfiles to clean old dirsJamey Sharp2018-09-30
* | docs: formatGraham Christensen2018-09-29
|/
* acme module: fix self-signed cert with openssl 1.1Robin Gloster2018-09-12
* nixos docs: give IDs to thingsGraham Christensen2018-09-01
* Merge pull request #42834 from Synthetica9/patch-1Matthew Bauer2018-07-23
|\