mirror of
https://github.com/Kicksecure/security-misc.git
synced 2025-06-20 12:04:10 -04:00
![]() Change from exactwhitelist to matchwhitelist. Discussion revealed that there's a good reason to leave setgid in here, which is essentially defense-in-depth (sometimes users may want to revert Kicksecure's default of kernel.yama.ptrace_scope=2, e.g. to debug a program, and Kicksecure should not be less secure than vanilla Debian in that situation). |
||
---|---|---|
.. | ||
25_default_whitelist_bubblewrap.conf | ||
25_default_whitelist_chromium.conf | ||
25_default_whitelist_dbus.conf | ||
25_default_whitelist_firejail.conf | ||
25_default_whitelist_fuse.conf | ||
25_default_whitelist_hardened_malloc.conf | ||
25_default_whitelist_mount.conf | ||
25_default_whitelist_pam.conf | ||
25_default_whitelist_passwd.conf | ||
25_default_whitelist_policykit.conf | ||
25_default_whitelist_postfix.conf | ||
25_default_whitelist_qubes.conf | ||
25_default_whitelist_selinux.conf | ||
25_default_whitelist_spice.conf | ||
25_default_whitelist_ssh.conf | ||
25_default_whitelist_sudo.conf | ||
25_default_whitelist_unix_chkpwd.conf | ||
25_default_whitelist_virtualbox.conf | ||
30_default.conf |