-
- Downloads
roles: add a hardening role for sysctl hardening options
Add sysctl hardening options which disallow perf/viewing kernel symbols and dmesg for non-admin users as they contain valuable information for attackers.
Showing
- playbooks/all-hosts-basic.yml 1 addition, 0 deletionsplaybooks/all-hosts-basic.yml
- roles/hardening/files/50-dmesg-restrict.conf 1 addition, 0 deletionsroles/hardening/files/50-dmesg-restrict.conf
- roles/hardening/files/50-kptr-restrict.conf 1 addition, 0 deletionsroles/hardening/files/50-kptr-restrict.conf
- roles/hardening/files/50-ptrace-restrict.conf 1 addition, 0 deletionsroles/hardening/files/50-ptrace-restrict.conf
- roles/hardening/handlers/main.yml 4 additions, 0 deletionsroles/hardening/handlers/main.yml
- roles/hardening/tasks/main.yml 16 additions, 0 deletionsroles/hardening/tasks/main.yml
Loading
Please register or sign in to comment