about summary refs log tree commit diff
path: root/nixos/modules/security
AgeCommit message (Expand)AuthorFilesLines
2019-10-28nixos/acme: fix staging endpoint urlFranz Pletz1-1/+1
2019-10-23nixos/tests/letsencrypt: use Pebble instead of BoulderFélix Baylac-Jacqué1-0/+5
2019-10-23certbot: 0.31.0 -> 0.39.0Félix Baylac-Jacqué1-2/+2
2019-09-24Merge pull request #67748 from typetetris/yubico-local-authJörg Thalheim1-1/+18
2019-09-23nixos/systemd: pick more upstream tmpfiles confsFranz Pletz1-7/+0
2019-09-19Revert "nixos/doc: re-format"Eelco Dolstra2-10/+31
2019-09-18nixos/doc: re-formatJan Tojnar2-31/+10
2019-09-18nixos/system-environment: introduce environment.profileRelativeSessionVariablesRobert Helgesson1-1/+1
2019-09-02Merge branch 'master' into stagingVladimír Čunát3-7/+11
2019-08-31nixos/modules: Remove all usages of types.stringSilvan Mosberger2-7/+7
2019-08-31Merge pull request #62954 from abbradar/auditdAaron Andersen1-0/+4
2019-08-31Merge staging-next into stagingFrederik Rietdijk2-118/+37
2019-08-30yubico-pam: make local authentication possibleEric Wolf1-1/+18
2019-08-29Fix letsencrypt (#60219)Arian van Putten2-121/+37
2019-08-26treewide: remove redundant quotesvolth5-10/+10
2019-07-30nixos/hardened: make pti=on overridablePierre Bourdon1-0/+16
2019-07-19Renaming security.virtualization.flushL1DataCache to virtualisationMarek Mahut1-4/+4
2019-06-10auditd service: make more usefulNikolay Amiantov1-0/+4
2019-05-13FIx some malformed XML in option descriptionsEelco Dolstra1-16/+2
2019-05-12Merge pull request #61306 from joachifm/feat/fix-apparmor-boot-linux_5_1Joachim F1-0/+2
2019-05-11nixos/apparmor: ensure that apparmor is selected at bootJoachim Fasting1-0/+2
2019-05-07rngd: harden service config, from archWill Dietz1-0/+5
2019-05-06rngd: add option to run w/debug flagWill Dietz1-10/+23
2019-04-28nixos/apparmor: allow reloading profiles without losing confinementJoachim Fasting1-0/+3
2019-04-28nixos/apparmor: order before sysinit.targetJoachim Fasting1-1/+6
2019-04-21nixos/hardened: split description of allowUserNamespaces into parasJoachim Fasting1-7/+17
2019-04-14nixos/pam: Add GNOME keyring use_authtok directive to password groupAlexander Kahl1-0/+2
2019-03-31yubico-pam: add nixos integrationWill Dietz1-0/+60
2019-03-29Merge pull request #57519 (systemd-confinement)aszlig1-0/+199
2019-03-27nixos/confinement: Use PrivateMounts optionaszlig1-1/+1
2019-03-27nixos/confinement: Remove handling for StartOnlyaszlig1-7/+2
2019-03-17nixos/security: make duo support secure failure correctlyAlex Guzman1-1/+1
2019-03-15nixos/confinement: Explicitly set serviceConfigaszlig1-8/+20
2019-03-14nixos/confinement: Allow to include the full unitaszlig1-3/+24
2019-03-14nixos/confinement: Allow to configure /bin/shaszlig1-12/+23
2019-03-14nixos/systemd-chroot: Rename chroot to confinementaszlig1-13/+13
2019-03-14nixos: Add 'chroot' options to systemd.servicesaszlig1-0/+160
2019-02-25Merge pull request #55792 from sdier/fix/pam-updateSilvan Mosberger2-14/+26
2019-02-24nixos/security: Fix pam configuration file generation.Scott Dier1-5/+8
2019-02-24nixos/security: Allow configuration of pam for duosec.Scott Dier1-6/+0
2019-02-24nixos/security: Add duo-unix support to pam.Scott Dier1-3/+18
2019-02-22nixos: add preferLocalBuild=true; on derivations for config filesSymphorien Gibol2-1/+5
2019-01-30Merge pull request #53762 from ju1m/nslcdFlorian Klink1-1/+1
2019-01-29nixos/pam: refactor U2F, docs about u2f_keys path (#54756)Wael Nasreddine1-11/+98
2019-01-18nixos/tests: test LDAP password changing through nslcdJulien Moutinho1-1/+1
2018-12-27nixos/security/misc: expose SMT control optionJoachim Fasting1-0/+30
2018-12-27nixos/security/misc: expose l1tf mitigation optionJoachim Fasting1-0/+39
2018-12-27nixos/security/misc: factor out protectKernelImageJoachim Fasting1-0/+15
2018-12-27nixos/security/misc: use mkMerge for easier extensionJoachim Fasting1-11/+13
2018-12-21config.security.googleOsLogin: add moduleFlorian Klink1-0/+68