aboutsummaryrefslogtreecommitdiffstatshomepage
path: root/service (follow)
Commit message (Expand)AuthorAgeFilesLines
* global: regroup all importsJason A. Donenfeld2019-05-1413-33/+46
* service: reuse golang.org/x/sys/windows address family constantsSimon Rozman2019-05-141-12/+13
* firewall: fix logic errorJason A. Donenfeld2019-05-131-1/+1
* firewall: only allow specified dns serversJason A. Donenfeld2019-05-133-49/+186
* service: use more standard naming scheme for syscallsJason A. Donenfeld2019-05-134-99/+95
* service: allow go to create correct environment blockJason A. Donenfeld2019-05-134-83/+10
* service: run UI with elevated tokenJason A. Donenfeld2019-05-123-375/+11
* service: run UI at high integrityJason A. Donenfeld2019-05-113-0/+34
* service: use LUID directlyJason A. Donenfeld2019-05-101-15/+5
* service: clean up addresses from stale interfacesJason A. Donenfeld2019-05-101-0/+51
* service: fix user logoutJason A. Donenfeld2019-05-101-17/+50
* service: account for delete pending windows bug in tunneltrackerJason A. Donenfeld2019-05-092-12/+35
* service: prevent against multiple routines per sessionJason A. Donenfeld2019-05-081-4/+18
* service: print in log after UI exitsJason A. Donenfeld2019-05-081-3/+10
* service: waste a page due to sheer incompetenceJason A. Donenfeld2019-05-081-1/+1
* service: require elevated tokenJason A. Donenfeld2019-05-081-0/+1
* service: make the generated bindings do the type forcingJason A. Donenfeld2019-05-082-64/+56
* service: local system's token is a bit more locked down than elevatedJason A. Donenfeld2019-05-081-2/+3
* service: give process elevated security attributes plus logon session ID with minimal permissionsJason A. Donenfeld2019-05-085-42/+311
* firewall: cleanupJason A. Donenfeld2019-05-086-58/+59
* firewall: implode recurring address definitionsOdd Stranne2019-05-081-14/+15
* firewall: remove unused codeOdd Stranne2019-05-088-296/+44
* firewall: add permitHyperV()Odd Stranne2019-05-083-0/+108
* firewall: implement permitNdp()Odd Stranne2019-05-082-4/+222
* service: delay restart for one secondJason A. Donenfeld2019-05-071-0/+5
* ringlogger: export R/O handle for UI processJason A. Donenfeld2019-05-072-2/+3
* updater: move into managerJason A. Donenfeld2019-05-066-148/+386
* ui: syntax: implement trafic blocking semanticsJason A. Donenfeld2019-05-051-2/+8
* service: temporarily disable security attributesJason A. Donenfeld2019-05-041-1/+11
* firewall: do not add unused permit rules when !restrictAllJason A. Donenfeld2019-05-041-16/+18
* firewall: DNS is TCP and UDPJason A. Donenfeld2019-05-031-3/+22
* firewall: block dns before allowing localhostJason A. Donenfeld2019-05-033-38/+31
* firewall: only use one listJason A. Donenfeld2019-05-032-230/+22
* firewall: since DNS is a blacklist, we have to exclude our own interfaceJason A. Donenfeld2019-05-032-6/+18
* firewall: pass blob of security descriptor instead of raw, and give daclJason A. Donenfeld2019-05-035-30/+33
* firewall: wrap errors because there are lots of syscallsJason A. Donenfeld2019-05-033-88/+102
* service: wire up firewallJason A. Donenfeld2019-05-034-18/+57
* firewall: introduce incomplete untested prototypeOdd Stranne2019-05-0310-0/+2857
* service: lock OS thread before making inheritable handlesJason A. Donenfeld2019-05-021-0/+7
* service: wtf->wtsJason A. Donenfeld2019-05-022-3/+3
* service: set security attributes on new processJason A. Donenfeld2019-05-023-9/+60
* service: correct sid boundsJason A. Donenfeld2019-05-021-2/+1
* service: fix oooJason A. Donenfeld2019-05-021-1/+1
* ui: fix log closure variableJason A. Donenfeld2019-04-301-3/+3
* service: inform UIs it is time to quit so they can kill trayJason A. Donenfeld2019-04-303-0/+30
* ui: fix quoting in error stringsJason A. Donenfeld2019-04-301-1/+1
* service: pass global state with notificationJason A. Donenfeld2019-04-292-5/+10
* service: tunnel: print stack and quit after 30 seconds of shutdown deadlockJason A. Donenfeld2019-04-291-3/+42
* service: improve state transitionsJason A. Donenfeld2019-04-293-11/+33
* service: tunnel: UAPI serialization is always DNS relatedJason A. Donenfeld2019-04-272-4/+4