mirror of
https://github.com/Kicksecure/security-misc.git
synced 2025-01-24 01:41:02 -05:00
/dev/, /dev/shm, /tmp
https://github.com/Kicksecure/security-misc/issues/157#issuecomment-1869073716
This commit is contained in:
parent
e15596e7af
commit
5b36599c0c
@ -5,9 +5,11 @@
|
|||||||
proc /proc proc nofail,defaults 0 0
|
proc /proc proc nofail,defaults 0 0
|
||||||
|
|
||||||
/dev /dev devtmpfs nofail,bind,remount,nosuid,noexec 0 0
|
/dev /dev devtmpfs nofail,bind,remount,nosuid,noexec 0 0
|
||||||
|
#udev /dev devtmpfs defaults,nosuid,noexec 0 0
|
||||||
|
|
||||||
## noexec optional
|
## noexec optional
|
||||||
/dev/shm /dev/shm tmpfs nofail,nosuid,nodev,noexec 0 0
|
/dev/shm /dev/shm tmpfs nofail,nosuid,nodev,noexec 0 0
|
||||||
|
#tmpfs /dev/shm tmpfs defaults,nosuid,nodev,noexec 0 0
|
||||||
|
|
||||||
## nodev,nosuid,noexec as per:
|
## nodev,nosuid,noexec as per:
|
||||||
## https://www.debian.org/doc/manuals/securing-debian-manual/ch04s10.en.html
|
## https://www.debian.org/doc/manuals/securing-debian-manual/ch04s10.en.html
|
||||||
@ -19,6 +21,7 @@ proc /proc pr
|
|||||||
|
|
||||||
## noexec optional
|
## noexec optional
|
||||||
/tmp /tmp tmpfs nofail,bind,nosuid,nodev,noexec 0 0
|
/tmp /tmp tmpfs nofail,bind,nosuid,nodev,noexec 0 0
|
||||||
|
#tmpfs /tmp tmpfs defaults,nodev,nosuid,noexec 0 0
|
||||||
|
|
||||||
/var /var none nofail,bind,nosuid,nodev 0 0
|
/var /var none nofail,bind,nosuid,nodev 0 0
|
||||||
|
|
||||||
@ -32,3 +35,6 @@ proc /proc pr
|
|||||||
|
|
||||||
## noexec optional
|
## noexec optional
|
||||||
/home /home none nofail,bind,nosuid,nodev,noexec 0 0
|
/home /home none nofail,bind,nosuid,nodev,noexec 0 0
|
||||||
|
|
||||||
|
## TODO:
|
||||||
|
#/sys
|
||||||
|
Loading…
Reference in New Issue
Block a user