mirror of
https://github.com/Kicksecure/security-misc.git
synced 2024-12-22 20:53:36 +07:00
/dev/, /dev/shm, /tmp
https://github.com/Kicksecure/security-misc/issues/157#issuecomment-1869073716
This commit is contained in:
parent
e15596e7af
commit
5b36599c0c
@ -5,9 +5,11 @@
|
||||
proc /proc proc nofail,defaults 0 0
|
||||
|
||||
/dev /dev devtmpfs nofail,bind,remount,nosuid,noexec 0 0
|
||||
#udev /dev devtmpfs defaults,nosuid,noexec 0 0
|
||||
|
||||
## noexec optional
|
||||
/dev/shm /dev/shm tmpfs nofail,nosuid,nodev,noexec 0 0
|
||||
#tmpfs /dev/shm tmpfs defaults,nosuid,nodev,noexec 0 0
|
||||
|
||||
## nodev,nosuid,noexec as per:
|
||||
## https://www.debian.org/doc/manuals/securing-debian-manual/ch04s10.en.html
|
||||
@ -19,6 +21,7 @@ proc /proc pr
|
||||
|
||||
## noexec optional
|
||||
/tmp /tmp tmpfs nofail,bind,nosuid,nodev,noexec 0 0
|
||||
#tmpfs /tmp tmpfs defaults,nodev,nosuid,noexec 0 0
|
||||
|
||||
/var /var none nofail,bind,nosuid,nodev 0 0
|
||||
|
||||
@ -32,3 +35,6 @@ proc /proc pr
|
||||
|
||||
## noexec optional
|
||||
/home /home none nofail,bind,nosuid,nodev,noexec 0 0
|
||||
|
||||
## TODO:
|
||||
#/sys
|
||||
|
Loading…
Reference in New Issue
Block a user