From f487752ba1b469eb0b2f85657e2ee0860f58496b Mon Sep 17 00:00:00 2001 From: monsieuremre <130907164+monsieuremre@users.noreply.github.com> Date: Thu, 26 Oct 2023 19:30:58 +0000 Subject: [PATCH] not limiting ourselves. we do not do this not just once. --- usr/libexec/security-misc/permission-lockdown | 6 ++---- 1 file changed, 2 insertions(+), 4 deletions(-) diff --git a/usr/libexec/security-misc/permission-lockdown b/usr/libexec/security-misc/permission-lockdown index 8e807ff..372fc2f 100755 --- a/usr/libexec/security-misc/permission-lockdown +++ b/usr/libexec/security-misc/permission-lockdown @@ -35,11 +35,9 @@ home_folder_access_rights_lockdown() { # Each users home directory to himself for user in $(dir /home); do # lists directories only if [ grep -q "$user" /etc/passwd ]; then # check if user actually exists, and this is not some random directory - if [ -f /var/cache/security-misc/state-files/$user ] - continue # only doing once - fi dpkg-statoverride --add --update $user $user 0700 /home/$user # home directory of the user itself - touch /var/cache/security-misc/state-files/$user # so that we know we did this one + echo "Permission updated: chmod go-rwx /home/$user" + fi done }