mirror of
https://github.com/Kicksecure/security-misc.git
synced 2025-11-25 17:56:17 -05:00
Change from exactwhitelist to matchwhitelist. Discussion revealed that there's a good reason to leave setgid in here, which is essentially defense-in-depth (sometimes users may want to revert Kicksecure's default of kernel.yama.ptrace_scope=2, e.g. to debug a program, and Kicksecure should not be less secure than vanilla Debian in that situation). |
||
|---|---|---|
| .. | ||
| dracut/modules.d-disabled/20remount-secure | ||
| issue.d | ||
| modules-load.d | ||
| NetworkManager/conf.d | ||
| permission-hardener.d | ||
| sysctl.d | ||
| systemd | ||