Patrick Schleizer
|
5b36599c0c
|
/dev/, /dev/shm, /tmp
https://github.com/Kicksecure/security-misc/issues/157#issuecomment-1869073716
|
2023-12-29 14:57:38 -05:00 |
|
Patrick Schleizer
|
c86c83cef7
|
formatting
https://github.com/Kicksecure/security-misc/issues/157
|
2023-12-25 10:31:58 -05:00 |
|
Patrick Schleizer
|
971ff687b1
|
do not mount /dev/cdrom by default
https://github.com/Kicksecure/security-misc/issues/157
|
2023-12-25 10:30:35 -05:00 |
|
Patrick Schleizer
|
9fce67fcd9
|
remove superfluous, broken remount mount option
https://github.com/Kicksecure/security-misc/issues/157
|
2023-12-25 10:28:47 -05:00 |
|
Patrick Schleizer
|
40fd8cb608
|
no nofail mount option to avoid breaking the boot of a system
unit testing belongs elsewhere
https://github.com/Kicksecure/security-misc/issues/157
|
2023-12-25 09:51:09 -05:00 |
|
Patrick Schleizer
|
4aa645f29f
|
comment
https://github.com/Kicksecure/security-misc/issues/157
|
2023-12-25 09:46:33 -05:00 |
|
Patrick Schleizer
|
2b7aeedb4a
|
mount /dev/cdrom to /mnt/cdrom (instead of /mnt/cdrom0) and
nodev,nosuid,noexec
as per:
https://www.debian.org/doc/manuals/securing-debian-manual/ch04s10.en.html
https://github.com/Kicksecure/security-misc/issues/157
|
2023-12-25 09:44:51 -05:00 |
|
Patrick Schleizer
|
0d9e9780da
|
formatting
https://github.com/Kicksecure/security-misc/issues/157
|
2023-12-25 09:37:14 -05:00 |
|
Patrick Schleizer
|
00f9ab4394
|
/dev devtmpfs
https://github.com/Kicksecure/security-misc/issues/157
|
2023-12-25 09:36:05 -05:00 |
|
Patrick Schleizer
|
55709b3aa0
|
/tmp tmpfs
https://github.com/Kicksecure/security-misc/issues/157
|
2023-12-25 09:30:57 -05:00 |
|
Patrick Schleizer
|
b0dd967611
|
usrmerge
https://github.com/Kicksecure/security-misc/issues/157
|
2023-12-25 09:28:08 -05:00 |
|
Patrick Schleizer
|
269fada14a
|
combine bind lines
https://github.com/Kicksecure/security-misc/issues/157
|
2023-12-25 09:25:14 -05:00 |
|
Patrick Schleizer
|
039de1dc9b
|
add hardened fstab /usr/share/doc/security-misc/fstab-vm
to the documentation folder as an example
not directly used by security-misc
will later be used by Kicksecure VM build process
https://github.com/Kicksecure/security-misc/issues/157
|
2023-12-12 11:50:11 -05:00 |
|