Age | Commit message (Collapse) | Author | |
---|---|---|---|
2002-12-12 | Allow the log directive to work for non-translated syscalls as well. | Anil Madhavapeddy | |
provos ok | |||
2002-12-11 | rename log->dolog, from thorpej@netbsd, ok provos | Anil Madhavapeddy | |
2002-12-09 | Restriction that -c args must be numeric. Motivation on privilege elevation. | Ian Darwin | |
Environment variables (HOME,USER,CWD). File name details. Style fixes. ok provos@ | |||
2002-12-09 | add support for regular expressions and pidname translations. from provos | Jun-ichiro itojun Hagino | |
2002-12-09 | better parsing of # comments. from provos | Jun-ichiro itojun Hagino | |
2002-12-09 | prevent the use of permit for aliases. from provos | Jun-ichiro itojun Hagino | |
2002-12-05 | spelling; niels ok. | Federico G. Schwindt | |
2002-12-04 | rename to a new ioctl | Michael Shalayeff | |
2002-11-29 | inconsistant spelling; torh@bogus.net | Theo de Raadt | |
2002-11-29 | Foward; torh@bogus.net | Theo de Raadt | |
2002-11-27 | Make fc -e work in "sh-mode" (shell invoked as /bin/sh or -o sh option) | Peter Valchev | |
as well; matches Solaris. "can't hurt anything" marc@ Original report from PR user/2883 | |||
2002-11-26 | avoid symbol conflict with "errno" | Jun-ichiro itojun Hagino | |
2002-11-26 | performance improvement by omitting a redundant getcwd. | Jun-ichiro itojun Hagino | |
from provos | |||
2002-11-26 | error should go to stderr. from provos | Jun-ichiro itojun Hagino | |
2002-11-16 | rename translation tables. from provos | Jun-ichiro itojun Hagino | |
2002-11-15 | no need to check trans_size. from provos | Jun-ichiro itojun Hagino | |
2002-11-14 | use $ or # before commands in examples | Theo de Raadt | |
2002-11-12 | fix bug in determining execve name. from provos | Jun-ichiro itojun Hagino | |
2002-11-09 | doh, better now. | Federico G. Schwindt | |
2002-11-09 | uucp(1) doesn't exist anymore. | Federico G. Schwindt | |
2002-10-31 | typo, reported by avsm@openbsd | Jun-ichiro itojun Hagino | |
2002-10-28 | Seeking on a character device works fine. | Todd C. Miller | |
2002-10-28 | add missing "break". Alexander Yurchenko | Jun-ichiro itojun Hagino | |
2002-10-23 | Move a cast from LHS to RHS to quiet a "cast from pointer to integer | Todd C. Miller | |
of different size" warning on 64-bit platforms. | |||
2002-10-18 | Pull in some changes from NetBSD | Todd C. Miller | |
o When extracting GNU tar archives, honor @LongLink long links/files o Add an option to prevent pax from prompting for the next volume upon premature end of archive. | |||
2002-10-17 | little cleanup (intercept_getpid dies within the function on error). | Jun-ichiro itojun Hagino | |
from provos | |||
2002-10-16 | sprinkle const; mostly from NetBSD | Todd C. Miller | |
2002-10-16 | Slight KNF and return -1 on no match, not EOF | Todd C. Miller | |
2002-10-16 | Fix comment typos; most from NetBSD and FreeBSD | Todd C. Miller | |
2002-10-16 | kill register | Todd C. Miller | |
2002-10-16 | Sync date parsing code with that in date(1) (which is obviously what pax's | Todd C. Miller | |
date code was based on). It is now possible to specify 4 digit years. | |||
2002-10-16 | support for privilege elevation. | Jun-ichiro itojun Hagino | |
with privilege elevation no suid or sgid binaries are necessary any longer. Applications can be executed completely unprivileged. Systrace raises the privileges for a single system call depending on the configured policy. Idea from discussions with Perry Metzger, Dug Song and Marcus Watts. from provos | |||
2002-10-16 | translation for socket system call | Jun-ichiro itojun Hagino | |
from provos | |||
2002-10-16 | correctly evaluate group predicates. | Jun-ichiro itojun Hagino | |
afrom provos | |||
2002-10-16 | enable meta key in emacs mode for 7-bit locales; provos@ | Todd C. Miller | |
2002-10-15 | Time ranges were documented incorrectly; Christian von Roques | Todd C. Miller | |
We should probably add support for specifying the century too... | |||
2002-10-09 | predicates are part of the grammar now; in non-root case, predicates are | Jun-ichiro itojun Hagino | |
evaluated only once; in root case, predicates and variable expansion are dynamic. from provos | |||
2002-10-08 | "output" is a pointer of size "outlen", so use outlen instead of | Jun-ichiro itojun Hagino | |
sizeof(output) From "Vincent Labrecque" <vincent@psyfreaks.ca> | |||
2002-10-08 | assume that inserting a template implies permit for the current | Jun-ichiro itojun Hagino | |
syscall from provos | |||
2002-10-07 | int -> uid_t | Vincent Labrecque | |
ok millert | |||
2002-10-04 | wrong word; cjeker@diehard.n-r-g.com | Theo de Raadt | |
2002-09-30 | When using "nl" as an argument to .Fl, escape nl to make it literal, | Todd C. Miller | |
else it is interpreted as a command and doesn't format correctly. deraadt@ OK | |||
2002-09-30 | fix return value; from marius@umich.edu via provos | Jun-ichiro itojun Hagino | |
2002-09-23 | support for templates. they allow fast generation of new policies. an | Jun-ichiro itojun Hagino | |
appropriate template can be inserted during initial policy generation. from provos | |||
2002-09-18 | fix Xr refs; frisco@blackant.net | Theo de Raadt | |
2002-09-17 | split white space and single line policy processing into separate | Jun-ichiro itojun Hagino | |
functions. from provos | |||
2002-09-17 | daemon should not change the directory. from provos | Jun-ichiro itojun Hagino | |
2002-09-16 | periodically save policies that have been modified. from provos | Jun-ichiro itojun Hagino | |
>here is a diff that will cause systrace to periodically save policies >that have been modified. Useful if you run systrace on an xterm and >kill it accidently. Or other applications like opera that are long >running and can cause weird crashes. | |||
2002-09-06 | standalone ; at top scope is illegal in ansi c | Theo de Raadt | |
2002-09-06 | no , at end of enum | Theo de Raadt | |