Commit Graph

30 Commits

Author SHA1 Message Date
Lance Vick e9aa4eb72c
drop https for mirrors that don't support it 2020-12-14 14:08:40 -08:00
Lance Vick 9b62315c36
compressed image, cleanup for upstreaming, automatic iso boot 2020-11-09 16:19:36 -08:00
Lance Vick c1297ffcc2
guard against ambiguious ref attacks in fetch 2020-10-21 22:59:29 -07:00
Lance Vick 92f2222849
working builds, working audit, drop unmaintained cpe-info 2020-10-21 14:38:25 -07:00
Lance Vick 055e5038ba
Merge remote-tracking branch 'origin/master' into airgap-fixes 2020-10-20 17:05:56 -07:00
Lance Vick 28ba130cea
swap buggy/broken genisofs for maintained xorriso 2020-10-17 15:37:12 -07:00
Lance Vick c8a07da24b
use https with apt wherever possible 2020-10-16 02:44:26 -07:00
Lance Vick 73d0e657fa
download and hash verify all packages before install 2020-10-16 01:37:56 -07:00
Lance Vick 249e93bcce
overhaul update-packages to be faster, and save sha256 hash manifest of downloaded debs 2020-10-15 17:08:15 -07:00
Lance Vick 1badff2241
safer/simpler uid/gid mapping w/ reduced build privs 2020-10-15 16:26:28 -07:00
Lance Vick 2fdac9efed
cleaned up, updated, and more reliable package updates 2020-10-07 18:24:58 -07:00
Lance Vick 51a134f00f
make patches optional 2020-09-09 04:07:35 -07:00
Lance Vick 3d631420b1
fix patching on repeated builds 2020-08-12 22:54:32 -07:00
Lance Vick 4e66c50835
Name change and boot-from-usb on Heads 2020-08-12 22:25:41 -07:00
Lance Vick 1ad50ac4c8
add build container cve reporting 2020-07-24 17:51:05 -07:00
Lance Vick bd5d947f1e
use main mirrors for pinned packages, then try snapshots 2020-07-24 13:19:34 -07:00
Lance Vick 826d60556d
improved audit output with CVE reporting 2020-07-24 13:18:53 -07:00
Lance Vick b54b103009
add audit target for collecting legal/cve details 2020-07-24 03:08:28 -07:00
Lance Vick ba24e9f786
automate snapshot date bump 2020-07-23 04:12:31 -07:00
Lance Vick 4904c3f8d1
add proper clean script 2020-07-17 18:02:22 -07:00
Lance Vick c328c928ea
librem15v4 support + generic x86_64 for iso 2020-07-17 17:38:06 -07:00
Lance Vick 0a79141750
working usb, yubikeys, and some kernel hardening 2020-07-14 18:35:16 -07:00
Lance Vick 1888d6793e
Lock timestamps in iso metadata 2020-07-12 02:45:12 -07:00
Lance Vick a0606ab246
Deterministic iso support (on supported filesystems) 2020-07-11 16:08:30 -07:00
Lance Vick 30b3465989
working on librem13v4 hardware 2020-07-07 14:13:18 -07:00
Lance Vick d9cbf08931
add coreboot-heads build support 2020-06-29 15:55:34 -07:00
Lance Vick 07075f5abf
download all sources up-front to enable offline builds 2020-06-16 20:29:26 -07:00
Lance Vick c0ff10663d
more rename fixes 2020-06-15 19:22:36 -07:00
Lance Vick a04256641a
download all sources up front for offline builds 2020-06-15 10:21:28 -07:00
Lance Vick 622272fb2c
working qemu target and containerized vm booting 2020-06-15 01:08:20 -07:00