objective-see / objective-see/BlockBlock

Notarization Mode: Non-Notarized Bash Script From VPN

Open
#98 4 comments 0 reactions 0 assignees View on GitHub

Nobody has claimed this yet.

Dominant language
Objective-C
Stars
848
Forks
49
PR merge metrics
No merged PRs in 30d

Description

We are seeing the attached alert on our two Macs which are running a VPN (IVPN.net). On my wife's computer she may have multiple pop-ups appear sequentially which I have not personally experienced.

I have found a single rule related to IVPN which is allowed. I understand that clicking "Allow" in an alert is not saved between System and BlockBlock reboots, which I assume is the reason why the "temporarily" checkbox is greyed-out. (And why the rule is allowed when I look it up.)

Why can't I allow the script to run permanently since it is from a trusted app that I installed? I've read the documentation a couple times but I haven't found an answer (or understand if one does exist).

At this point we will have to forgo using the Notarization Mode until we have a resolution.

Many thanks- GV

Image

Contributor guide

No contributing guide indexed for this repository

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

Research direction

Start by reproducing the Notarization Mode alert on macOS with the IVPN VPN installed, using the screenshot and the existing BlockBlock documentation as the initial references. Trace how the allowed rule and the disabled temporary checkbox are handled; done means determining whether permanent approval is supported and documenting or correcting the behavior.

Written by the indexing model from the issue text.

Assessment

Tech stack
bash, macos
Domain
operating-systems, security
Issue type
Bug
Difficulty
4/5
Estimated time
3-5 days
Activity status
Quiet
Clarity
Needs clarification
Newbie friendliness
35/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.