add digits to drop-in file names

This commit is contained in:
Patrick Schleizer 2020-01-24 04:39:06 -05:00
parent 2ab940c603
commit a37da1c968
No known key found for this signature in database
GPG Key ID: CB8D50BB77BB3C48
4 changed files with 5 additions and 2 deletions

4
debian/control vendored
View File

@ -79,9 +79,9 @@ Description: enhances misc security settings
. .
* Coredumps are disabled as they may contain important information such as * Coredumps are disabled as they may contain important information such as
encryption keys or passwords. encryption keys or passwords.
/etc/security/limits.d/disable-coredumps.conf /etc/security/limits.d/30_security-misc.conf
/etc/sysctl.d/security-misc.conf /etc/sysctl.d/security-misc.conf
/lib/systemd/coredump.conf.d/disable-coredumps.conf /lib/systemd/coredump.conf.d/30_security-misc.conf
. .
* The thunderbolt and firewire kernel modules are blacklisted as they can be * The thunderbolt and firewire kernel modules are blacklisted as they can be
used for DMA (Direct Memory Access) attacks. used for DMA (Direct Memory Access) attacks.

View File

@ -32,3 +32,6 @@ rm_conffile /etc/modprobe.d/vivid.conf
rm_conffile /etc/modprobe.d/blacklist-dma.conf rm_conffile /etc/modprobe.d/blacklist-dma.conf
rm_conffile /etc/modprobe.d/msr.conf rm_conffile /etc/modprobe.d/msr.conf
rm_conffile /etc/modprobe.d/30_nf_conntrack_helper_disable.conf rm_conffile /etc/modprobe.d/30_nf_conntrack_helper_disable.conf
## renamed to /etc/security/limits.d/30_security-misc.conf
rm_conffile /etc/security/limits.d/disable-coredumps.conf