Skip to content

HBSD: prevent reading in sensitive files and locations by non-root users

Loic requested to merge loic/HardenedBSD:hidesym into hardened/current/master
  1. HBSD: prevent kernel reading by non-root users
  2. ̶H̶B̶S̶D̶:̶ ̶r̶e̶s̶t̶r̶i̶c̶t̶ ̶m̶o̶d̶e̶ ̶i̶n̶ ̶b̶s̶d̶.̶o̶w̶n̶.̶m̶k̶
  3. HBSD: prevent modules reading by non-root users
  4. HBSD: restrict mode in bsd.own.mk (version 2)
  5. HBSD: Secure the root directory
  6. HBSD: Disable users access to /etc config files
  7. HBSD: No new home directories world-readable
  8. HBSD: Update mtree for /var/log
  9. HBSD: Update mtree for root directory

This pull request is for #47 (closed)

Signed-off-by: Loic loic.f@hardenedbsd.org

Edited by Loic

Merge request reports