diff --git a/debian/control b/debian/control index 5b7c8ee..3e0b115 100644 --- a/debian/control +++ b/debian/control @@ -100,6 +100,44 @@ Description: enhances misc security settings Uncommon network protocols are blacklisted as they are rarely used and may have unknown vulnerabilities. . + The network protocols that are blacklisted are + . + * DCCP - Datagram Congestion Control Protocol + . + * SCTP - Stream Control Transmission Protocol + . + * RDS - Reliable Datagram Sockets + . + * TIPC - Transparent Inter-process Communication + . + * HDLC - High-Level Data Link Control + . + * AX25 - Amateur X.25 + . + * NetRom + . + * X25 + . + * ROSE + . + * DECnet + . + * Econet + . + * af_802154 - IEEE 802.15.4 + . + * IPX - Internetwork Packet Exchange + . + * AppleTalk + . + * PSNAP - Subnetwork Access Protocol + . + * p8023 - Novell raw IEEE 802.3 + . + * LLC - IEEE 802.2 + . + * p8022 - IEEE 802.2 + . The kernel logs are restricted to root only. . A systemd service clears System.map on boot as these contain kernel symbols