1. 21 Sep, 2016 2 commits
    • Shawn Webb's avatar
      Read TPE data from the rules file. · bd33b6ae
      Shawn Webb authored
      
      
      New secadm rule section: tpe. Members of tpe:
          - enable (boolean): Enable TPE
          - all (boolean): Enable TPE for all suers
          - invert (boolean): Invert GID logic
          - gid (int): The Group ID (GID) for which TPE applies
      
      Fully-qualified example:
      
      secadm {
      	tpe {
      		enable: true,
      		gid: 10,
      		invert: true,
      	}
      }
      
      Signed-off-by: Shawn Webb's avatarShawn Webb <shawn.webb@hardenedbsd.org>
      bd33b6ae
    • Shawn Webb's avatar
      Introduce basic Trusted Path Execution (TPE) support · 3dd7584b
      Shawn Webb authored
      
      
      This introduces a new command to secadm: tpe. To enable TPE, use
      `secadm tpe -T`. To disable TPE, use `secadm tpe -t`. To set the GID,
      use `secadm tpe -g <gid>`. To enforce TPE for everyone, use `secadm
      tpe -A`. To invert the GID, use `secadm tpe -g`. The GID by default is
      0.
      
      TODO:
          1) Documentation
          2) Support tpe in secadm.rules(5)
      
      Signed-off-by: Shawn Webb's avatarShawn Webb <shawn.webb@hardenedbsd.org>
      3dd7584b
  2. 23 Aug, 2016 1 commit
  3. 11 Jun, 2016 1 commit
  4. 09 Jun, 2016 2 commits
  5. 11 Apr, 2016 2 commits
  6. 04 Apr, 2016 1 commit
    • Johannes Meixner's avatar
      Invert logic · 4987d9a4
      Johannes Meixner authored
      - add WITHOUT_KMOD variable for ports/hardenedbsd/secadm
      - add WITHOUT_CLI variable for ports/hardenedbsd/secadm-kmod
      4987d9a4
  7. 26 Mar, 2016 2 commits
  8. 07 Mar, 2016 5 commits
  9. 05 Mar, 2016 4 commits
  10. 29 Feb, 2016 4 commits
  11. 28 Feb, 2016 4 commits
  12. 27 Feb, 2016 3 commits
  13. 20 Feb, 2016 1 commit
  14. 16 Feb, 2016 1 commit
  15. 02 Feb, 2016 1 commit
  16. 29 Dec, 2015 1 commit
  17. 28 Dec, 2015 1 commit
  18. 25 Dec, 2015 1 commit
  19. 19 Dec, 2015 2 commits
  20. 08 Dec, 2015 1 commit