From f4c54881ac21ed095f54a59f9c0baf582ef76d9b Mon Sep 17 00:00:00 2001 From: Patrick Schleizer Date: Fri, 24 Jan 2020 04:49:19 -0500 Subject: [PATCH] description --- debian/control | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/debian/control b/debian/control index 2444db6..b194240 100644 --- a/debian/control +++ b/debian/control @@ -37,7 +37,7 @@ Description: enhances misc security settings very useful for kernel exploits. . * Kexec is disabled as it can be used to load a malicious kernel. - /etc/sysctl.d/security-misc.conf + /etc/sysctl.d/30_security-misc.conf . * ASLR effectiveness for mmap is increased. . @@ -51,7 +51,7 @@ Description: enhances misc security settings * Some data spoofing attacks are made harder. . * SACK can be disabled as it is commonly exploited and is rarely used by - uncommenting settings in file /etc/sysctl.d/security-misc.conf. + uncommenting settings in file /etc/sysctl.d/30_security-misc.conf. . * Slab merging is disabled as sometimes a slab can be used in a vulnerable way which an attacker can exploit. @@ -80,7 +80,7 @@ Description: enhances misc security settings * Coredumps are disabled as they may contain important information such as encryption keys or passwords. /etc/security/limits.d/30_security-misc.conf - /etc/sysctl.d/security-misc.conf + /etc/sysctl.d/30_security-misc.conf /lib/systemd/coredump.conf.d/30_security-misc.conf . * The thunderbolt and firewire kernel modules are blacklisted as they can be @@ -286,7 +286,7 @@ Description: enhances misc security settings public IP used by a user. . Hence, this package disables this feature by shipping the - /etc/sysctl.d/security-misc.conf configuration file. + /etc/sysctl.d/30_security-misc.conf configuration file. . Note that TCP time stamps normally have some usefulness. They are needed for: