From 2ddf7b5db5d335d4f64d0df2c0caab0c80a2a046 Mon Sep 17 00:00:00 2001 From: Patrick Schleizer Date: Sat, 21 Dec 2019 14:06:51 -0500 Subject: [PATCH] /lib/ nosuid --- etc/permission-hardening.d/30_default.conf | 7 +------ 1 file changed, 1 insertion(+), 6 deletions(-) diff --git a/etc/permission-hardening.d/30_default.conf b/etc/permission-hardening.d/30_default.conf index f1a97cf..5810d76 100644 --- a/etc/permission-hardening.d/30_default.conf +++ b/etc/permission-hardening.d/30_default.conf @@ -79,12 +79,7 @@ /sbin/ nosuid /usr/sbin/ nosuid /usr/local/sbin/ nosuid - -## No SUID binaries there by default. -## remount-secure mounts it with nosuid anyhow. -## Therefore no processing it here. -#/lib/ nosuid - +/lib/ nosuid /lib32/ nosuid /lib64/ nosuid /usr/lib/ nosuid