Garret Kelly
|
abe50444bc
|
apt-install: Allow downgrades to satisfy package pins
Resolves #1
|
2021-06-19 13:23:45 -04:00 |
Lance Vick
|
e9aa4eb72c
|
drop https for mirrors that don't support it
|
2020-12-14 14:08:40 -08:00 |
Lance Vick
|
9b62315c36
|
compressed image, cleanup for upstreaming, automatic iso boot
|
2020-11-09 16:19:36 -08:00 |
Lance Vick
|
c1297ffcc2
|
guard against ambiguious ref attacks in fetch
|
2020-10-21 22:59:29 -07:00 |
Lance Vick
|
92f2222849
|
working builds, working audit, drop unmaintained cpe-info
|
2020-10-21 14:38:25 -07:00 |
Lance Vick
|
055e5038ba
|
Merge remote-tracking branch 'origin/master' into airgap-fixes
|
2020-10-20 17:05:56 -07:00 |
Lance Vick
|
28ba130cea
|
swap buggy/broken genisofs for maintained xorriso
|
2020-10-17 15:37:12 -07:00 |
Lance Vick
|
c8a07da24b
|
use https with apt wherever possible
|
2020-10-16 02:44:26 -07:00 |
Lance Vick
|
73d0e657fa
|
download and hash verify all packages before install
|
2020-10-16 01:37:56 -07:00 |
Lance Vick
|
249e93bcce
|
overhaul update-packages to be faster, and save sha256 hash manifest of downloaded debs
|
2020-10-15 17:08:15 -07:00 |
Lance Vick
|
1badff2241
|
safer/simpler uid/gid mapping w/ reduced build privs
|
2020-10-15 16:26:28 -07:00 |
Lance Vick
|
2fdac9efed
|
cleaned up, updated, and more reliable package updates
|
2020-10-07 18:24:58 -07:00 |
Lance Vick
|
51a134f00f
|
make patches optional
|
2020-09-09 04:07:35 -07:00 |
Lance Vick
|
3d631420b1
|
fix patching on repeated builds
|
2020-08-12 22:54:32 -07:00 |
Lance Vick
|
4e66c50835
|
Name change and boot-from-usb on Heads
|
2020-08-12 22:25:41 -07:00 |
Lance Vick
|
1ad50ac4c8
|
add build container cve reporting
|
2020-07-24 17:51:05 -07:00 |
Lance Vick
|
bd5d947f1e
|
use main mirrors for pinned packages, then try snapshots
|
2020-07-24 13:19:34 -07:00 |
Lance Vick
|
826d60556d
|
improved audit output with CVE reporting
|
2020-07-24 13:18:53 -07:00 |
Lance Vick
|
b54b103009
|
add audit target for collecting legal/cve details
|
2020-07-24 03:08:28 -07:00 |
Lance Vick
|
ba24e9f786
|
automate snapshot date bump
|
2020-07-23 04:12:31 -07:00 |
Lance Vick
|
4904c3f8d1
|
add proper clean script
|
2020-07-17 18:02:22 -07:00 |
Lance Vick
|
c328c928ea
|
librem15v4 support + generic x86_64 for iso
|
2020-07-17 17:38:06 -07:00 |
Lance Vick
|
0a79141750
|
working usb, yubikeys, and some kernel hardening
|
2020-07-14 18:35:16 -07:00 |
Lance Vick
|
1888d6793e
|
Lock timestamps in iso metadata
|
2020-07-12 02:45:12 -07:00 |
Lance Vick
|
a0606ab246
|
Deterministic iso support (on supported filesystems)
|
2020-07-11 16:08:30 -07:00 |
Lance Vick
|
30b3465989
|
working on librem13v4 hardware
|
2020-07-07 14:13:18 -07:00 |
Lance Vick
|
d9cbf08931
|
add coreboot-heads build support
|
2020-06-29 15:55:34 -07:00 |
Lance Vick
|
07075f5abf
|
download all sources up-front to enable offline builds
|
2020-06-16 20:29:26 -07:00 |
Lance Vick
|
c0ff10663d
|
more rename fixes
|
2020-06-15 19:22:36 -07:00 |
Lance Vick
|
a04256641a
|
download all sources up front for offline builds
|
2020-06-15 10:21:28 -07:00 |
Lance Vick
|
622272fb2c
|
working qemu target and containerized vm booting
|
2020-06-15 01:08:20 -07:00 |