|
4743efb556
|
chromium: add enable-google-safebrowsing-less-private.json.sample
|
2024-05-11 20:34:36 +03:00 |
|
|
e2dd25113a
|
chromium: ExtensionManifestV2Availability expects 2, not true
|
2024-05-11 19:49:04 +03:00 |
|
|
0ad28afe47
|
chromium: allow manifestv2, enable chromecast, safebrowsing, passwordleakdetection, efficiencymode, suggest disabling bookmarks bar and document previously forgotten policies
|
2024-05-11 19:44:16 +03:00 |
|
|
d6aae8fb9a
|
browsers: add OISD (big) to AdNauseam
|
2024-05-11 18:01:05 +03:00 |
|
|
7430dd9e99
|
{firefox,chromium}: add HTTP Indicator
|
2024-05-11 17:35:37 +03:00 |
|
|
28542ca06a
|
firefox policy: clean-up attempt
|
2024-05-11 17:28:29 +03:00 |
|
|
ba4fb50c76
|
firefox: set DoH to Quad9 DNS as a more international option, Ecosia Search Engine
|
2024-05-11 17:26:33 +03:00 |
|
|
fef359500f
|
firefox: add AdNauseam configuration
|
2024-05-11 17:24:44 +03:00 |
|
|
ec40dd0250
|
chromium: initial commit of AdNauseam managed configuration
|
2024-05-11 17:22:26 +03:00 |
|
|
972c866541
|
chromium/aminda-extensions cleanup
|
2024-05-11 16:46:20 +03:00 |
|
|
9a974e7bca
|
{firefox,chromium,edge}: add Ecosia
|
2024-05-11 16:16:12 +03:00 |
|
|
97bbaa09a1
|
dracut.conf.d: fix name recovery to rescue, add yes_rescue counterpart
|
2024-05-11 10:41:41 +03:00 |
|
|
9fcb0aa289
|
dnf.conf: note install_only_limit and kernel updates
|
2024-05-10 19:27:32 +03:00 |
|
|
0cb5b0992b
|
sudoers.d/nordvpnd: instead of restarting DNS, allow reloading it. Also IPv6 enabling
|
2024-05-10 18:27:06 +03:00 |
|
|
c81c1dd7d0
|
unbound: restore dot-dns0-quad9.conf with IPv4 for DNS0 & IPv6 for Quad9 ECS
This partially reverts commit 422ab0de4e
|
2024-05-09 20:02:23 +03:00 |
|
|
93e2ab81dd
|
chromium policy: fix doh-cloudflare-secure.json name inconsistency
|
2024-05-09 17:11:17 +03:00 |
|
|
764073e241
|
etc/hosts/blocklist: use only ::1, systemd-resolved will fix it automatically to 127.0.0.1 too
|
2024-05-09 12:05:37 +03:00 |
|
|
dff016aa45
|
hosts/dns: IPv4 represented as IPv6 is technically valid, but this feels so wrong...
|
2024-05-09 10:21:23 +03:00 |
|
|
f5223b871f
|
etc/hosts/dns: attempt to block private ECS providers on IPv6
|
2024-05-09 09:48:00 +03:00 |
|
|
9f2b75368d
|
etc/hosts/dns: add dns9.quad9.net alias (note the first 9)
|
2024-05-09 09:41:03 +03:00 |
|
|
1e807e888c
|
etc: add NetworkManager-resolv.conf-restore.bash
|
2024-05-09 09:38:25 +03:00 |
|
|
6567488801
|
NetworkManager: also add explicit no-systemd-resolved.conf
|
2024-05-09 09:31:39 +03:00 |
|
|
0566ebbbc2
|
NetworkManager: add comments on {dns-none,paws-off-my-resolv,systemd-resolved}.conf
|
2024-05-09 09:29:53 +03:00 |
|
|
8f11f1a512
|
NetworkManager: fix dns-none.conf (no longer symlink)
|
2024-05-09 09:26:29 +03:00 |
|
|
c751a61146
|
NetworkManager: fix no-search-domains.conf & systemd-resolved.conf
Although in systemd-resolved.conf everything is already implied
|
2024-05-09 09:25:20 +03:00 |
|
|
71582a9b95
|
NetworkManager/conf.d: add vim modelines
|
2024-05-09 09:21:21 +03:00 |
|
|
6900a44b4a
|
NetworkManager/paws-off-my-resolv.conf: actually use rc-manager instead of dns=none (commented)
|
2024-05-09 09:19:22 +03:00 |
|
|
d7703b6b63
|
dnf.conf: comment fastestmirror and explain it in a comment
|
2024-05-08 19:38:00 +03:00 |
|
|
3b5434eb1d
|
etc: add traditional-resolv.conf-generate.bash which takes three arguments and has no trust-ad
|
2024-05-07 19:29:05 +03:00 |
|
|
8fe31b9e64
|
fix edge paths
|
2024-05-07 11:29:37 +03:00 |
|
|
e7b26cd343
|
chromium/policies/managed: add non-functional Edge policies
|
2024-05-07 11:23:30 +03:00 |
|
|
e4d691f2b1
|
unbound: prefer IPv4 with private ECS using DoT servers
|
2024-05-07 08:26:20 +03:00 |
|
|
afb0801430
|
unbound: add doh-local.sample
Works otherwise, but self-signed cert didn't satisfy Chromium I wanted to point at it
|
2024-05-06 18:55:00 +03:00 |
|
|
10bec4c782
|
resolv.tsv: use more appropiate link for AdGuard prvate ECS
|
2024-05-06 09:05:00 +03:00 |
|
|
f5b76c1341
|
unbound: add .sample to threads.conf, comment to question it's necessity and usage
|
2024-05-05 11:08:52 +03:00 |
|
|
b18df5462c
|
unbound: add/rename/fix prefer-ip{4,6}.conf
|
2024-05-04 09:05:16 +03:00 |
|
|
0063e2409b
|
etc/dracut.conf.d: add sedric configs
|
2024-05-03 21:19:32 +03:00 |
|
|
175256d8e4
|
etc/dnf/protected.d: add systemd-ukify.conf although not yet in use
|
2024-05-03 20:48:14 +03:00 |
|
|
252f77ab0c
|
systemd-resolved & unbound: comment ECS servers again.
This partially reverts 85c7fedcb2 and will be explained at https://aminda.eu/n/dns soon
|
2024-05-03 18:07:51 +03:00 |
|
|
aa865106db
|
unbound: correct ecs.conf.sample
|
2024-05-03 17:35:15 +03:00 |
|
|
962817874e
|
etc/dracut.conf.d: add UKI generation & Lumina cmdline
|
2024-05-03 16:24:03 +03:00 |
|
|
85c7fedcb2
|
systemd-resolved, unbound: only ECS IPv6
|
2024-05-03 06:23:37 +03:00 |
|
|
6cae19ba4f
|
unbound: more ecs.conf.sample experimentation
|
2024-05-02 21:32:39 +03:00 |
|
|
32c99a2d43
|
etc/resolv.conf: fix comment explaining rotate
|
2024-05-01 13:08:06 +03:00 |
|
|
1aca183f92
|
aminda-nocron-reboot.service: fix conflict with systemd-zram-setup@zram0.service
|
2024-05-01 10:38:54 +03:00 |
|
|
6e0f72c7b1
|
aminda-nocron-reboot.service: split duperemove and sysctl -p --system to aminda-duperemove.service & sysctl-p--system.service
|
2024-05-01 10:22:57 +03:00 |
|
|
aa6aad28ba
|
resolv: follow the same order as man resolv.conf
|
2024-05-01 10:13:30 +03:00 |
|
|
ba298f94a5
|
resolv: increase timeout to 2 (match unbound/RFC 8767), decrease attempts to 2, rotate
|
2024-05-01 09:54:07 +03:00 |
|
|
447385fdb8
|
chrony: rename ntppool.sources -> ntp-pool.sources
|
2024-04-30 21:02:28 +03:00 |
|
|
78136f7437
|
systemd/timesyncd.conf.d: don't only use ntp pool as a fallback
|
2024-04-30 21:01:46 +03:00 |
|