summarylogtreecommitdiffstats
AgeCommit message (Collapse)Author
2021-04-26upgpkg: 5.11.16.hardened1-1Levente Polyak
2021-04-19upgpkg: 5.11.15.hardened1-1Levente Polyak
2021-04-15upgpkg: 5.11.14.hardened1-1Levente Polyak
2021-04-12upgpkg: 5.11.13.hardened1-1Levente Polyak
2021-04-03upgpkg: 5.11.11.hardened1-1Levente Polyak
2021-03-25upgpkg: 5.11.10.hardened1-1Levente Polyak
2021-03-25upgpkg: 5.11.9.hardened1-1Levente Polyak
2021-03-21upgpkg: 5.11.8.hardened1-1Levente Polyak
2021-03-17upgpkg: 5.11.7.hardened1-1Levente Polyak
2021-03-14upgpkg: 5.11.6.hardened1-1Levente Polyak
2021-03-11upgpkg: 5.10.23.hardened1-1Levente Polyak
2021-03-09upgpkg: 5.10.22.hardened1-1Levente Polyak
2021-03-09upgpkg: 5.10.21.hardened1-1Levente Polyak
2021-03-01upgpkg: 5.10.19.hardened1-1Levente Polyak
2021-02-25upgpkg: 5.10.18.hardened1-1Levente Polyak
2021-02-17upgpkg: 5.10.17.hardened1-1Levente Polyak
2021-02-13upgpkg: 5.10.16.hardened1-1Levente Polyak
2021-02-10upgpkg: 5.10.15.hardened1-1Levente Polyak
2021-02-07upgpkg: 5.10.14.hardened1-1Levente Polyak
2021-02-04upgpkg: 5.10.13.hardened1-1Levente Polyak
2021-02-04LSM: Enable bpf by defaultLevente Polyak
2021-02-04Build in loadpin, but keep it disabled by defaultLevente Polyak
2021-02-04FS#69479: Disable Lantiq and Rockchip driversLevente Polyak
2021-01-30upgpkg: 5.10.12.hardened1-1Levente Polyak
2021-01-28upgpkg: 5.10.11.hardened1-1Levente Polyak
2021-01-24upgpkg: 5.10.10.hardened1-1Levente Polyak
2021-01-19upgpkg: 5.10.9.a-1Levente Polyak
2021-01-17upgpkg: 5.10.8.a-1Levente Polyak
2021-01-12upgpkg: 5.10.7.a-1Levente Polyak
2021-01-09upgpkg: 5.10.6.a-1Levente Polyak
2021-01-07fix screen does not wake up after suspendLevente Polyak
fixes FS#69202
2021-01-06backport alsa deadlock and disable bpf preloadLevente Polyak
- backport alsa deadlock FS#69171 - disable bpf preload FS#69155
2020-12-30upgpkg: 5.10.4.a-1Levente Polyak
2020-12-23Disable CONFIG_EXPERTLevente Polyak
Everything we need in hardened is not hidden behind EXPERT anymore.
2020-12-22Disable most of MTDLevente Polyak
Besides some support for directly flashing BIOS chips which is marked as DANGEROUS, these seem only useful on embedded devices. Only leave the simulator and the MTD-on-block emulator.
2020-12-22Disable SFILevente Polyak
Only used on some exotic Intel smartphone platforms without ACPI.
2020-12-22Disable autosleep and wakelocksLevente Polyak
Not useful without appropriate userspace, like Android.
2020-12-22Disable PCI endpoint supportLevente Polyak
We're only running on host devices.
2020-12-22Disable CAIFLevente Polyak
Seems to be for ST-Ericsson embedded modems.
2020-12-22Disable VME and RapidIOLevente Polyak
Seems to be exotic, industrial hardware.
2020-12-22Disable USB gadget supportLevente Polyak
We're only running on host devices.
2020-12-22Disable SDR and test media driversLevente Polyak
Using the device type filter menu.
2020-12-22Disable ComediLevente Polyak
Big driver set in staging of little use.
2020-12-22Disable I3C, SPMI and HSILevente Polyak
Seems to be restricted to embedded stuff with integrated modems.
2020-12-22Disable OpenFirmware supportLevente Polyak
This is a big chunk of drivers that doesn't seem to be useful to us.
2020-12-22Pick some configuration options from Fedora's default kernelLevente Polyak
- Unset GART_IOMMU: Old IOMMU code, should be unused. - Unset MICROCODE_OLD_INTERFACE: Option help emphatically asks not to set this. - Unset ARCH_MEMORY_PROBE: Manual memory hot-plug should be unused. - Unset USB_DYNAMIC_MINORS: We had this set forever, but it doesn't actually seem to be needed. - Unset NTFS_FS: Please use ntfs-3g.
2020-12-21FS#68978 Enable SoundWire machine driverLevente Polyak
2020-12-21prepare linux-hardened 5.10Levente Polyak
2020-12-21upgpkg: 5.9.16.a-1Levente Polyak
2020-12-16upgpkg: 5.9.15.a-1Levente Polyak