1. 11 Jul, 2019 2 commits
  2. 08 Jul, 2019 3 commits
  3. 06 Jul, 2019 2 commits
  4. 05 Jul, 2019 1 commit
    • Thierry Laurion's avatar
      sdcard initrd support to suport boot fromiso · 9fdef751
      Thierry Laurion authored
      sdhci and subdependencies initrd kernel modules loaded to support Heads kexec'ing Tails kernel from sdcard integrity validated iso, permitting Tails to boot from a Read Only sdcard (fromiso). Heads boot device is referred by device/by-uuid (fromiso) to continue Heads kexec boot process from OS initrd loaded modules, prerequisite to continue kernel booting.
      
      This would permit measured boot (on-boot iso integrity validation from Read Only sdcard) on many tamper evident laptop models( RYF x200, QubesOS to be certified x230, x220 and many other laptops using those modules for memory extension slot support).
      
      Linked to this discussion: https://lists.autistici.org/message/20190612.203305.bcc3b98b.en.html
      Linked to this Heads ticket: https://github.com/osresearch/heads/issues/581
      9fdef751
  5. 25 Jun, 2019 1 commit
  6. 22 Jun, 2019 2 commits
  7. 19 Jun, 2019 1 commit
  8. 17 Jun, 2019 3 commits
  9. 06 Jun, 2019 2 commits
  10. 04 Jun, 2019 1 commit
    • anonym's avatar
      Completely disable IPv6. · b9f7e884
      anonym authored
      We attempt to completely block it on the netfilter level but we have
      seen ICMPv6 "leaks" any way (related to Router Solicitation, refs:
      16148) so let's just completely disable.
      b9f7e884
  11. 20 May, 2019 1 commit
    • anonym's avatar
      Only probe for partitions on the boot device. · 5dfc6624
      anonym authored
      Without arguments partprobe will scan all devices, and if it
      encounters a device it doesn't support (e.g. fake raid-0 arrays) it
      will return non-zero, thus aborting Tails' partitioning script,
      resulting in an unbootable install.
      
      Will-fix: #16389
      5dfc6624
  12. 18 May, 2019 6 commits
  13. 16 May, 2019 2 commits
  14. 11 May, 2019 2 commits
  15. 10 May, 2019 1 commit
  16. 05 May, 2019 2 commits
  17. 26 Apr, 2019 1 commit
  18. 20 Apr, 2019 1 commit
  19. 13 Apr, 2019 2 commits
    • intrigeri's avatar
      Remove obsolete usr.bin.onioncircuits AppArmor profile (refs: #12170) · 45501805
      intrigeri authored
      All Tails current branches now install onioncircuits 0.6-0.0tails1,
      which ships a more current AppArmor profile than the one we
      have in our own Git tree.
      45501805
    • intrigeri's avatar
      Disable the TopIcons GNOME Shell extension (refs: #16608) · 2ad4585d
      intrigeri authored
      This extension causes crashes (#11188).
      
      It does not work on Wayland (#8309, #12213) so long-term, we need to remove
      it anyway.
      
      So far we've been blocking on the WIP conversion of OpenPGP Applet into a proper
      GNOME Shell extension (#8310) but it's no clear whether it's worth the effort.
      
      In order to learn how much our users rely on this extension and — transitively —
      on OpenPGP Applet, let's disable this extension for one Tails release. While
      TopIcons is disabled by default:
      
       - Users can still use OpenPGP Applet via the system tray in the bottom
         left corner of the desktop.
       - Users who do need TopIcons for other reasons can enable it again
         with 1 command line.
      2ad4585d
  20. 08 Apr, 2019 2 commits
  21. 04 Apr, 2019 2 commits