diff --git a/etc/permission-hardening.conf b/etc/permission-hardening.conf index 85d2c16..276b1a4 100644 --- a/etc/permission-hardening.conf +++ b/etc/permission-hardening.conf @@ -22,7 +22,12 @@ /sbin/ nosuid /usr/sbin/ nosuid /usr/local/sbin/ nosuid -/lib/ nosuid + +## Takes 1 minute to parse. No SUID binaries there by default. +## remount-secure mounts it with nosuid anyhow. +## Therefore no processing it here. +#/lib/ nosuid + /lib32/ nosuid /lib64/ nosuid /usr/lib/ nosuid