Skip to content

Initial Setup for Filesystem Hardening #4

@RohitChopra-Opstree

Description

@RohitChopra-Opstree

1. Initial Setup

1.1 Filesystem

1.1.1 Configure Filesystem Kernel Modules

  • 1.1.1.1 Ensure cramfs kernel module is not available (Automated)
  • 1.1.1.2 Ensure freevxfs kernel module is not available (Automated)
  • 1.1.1.3 Ensure hfs kernel module is not available (Automated)
  • 1.1.1.4 Ensure hfsplus kernel module is not available (Automated)
  • 1.1.1.5 Ensure jffs2 kernel module is not available (Automated)

1.1.2 Configure Filesystem Partitions

1.1.2.1 Configure /tmp
  • 1.1.2.1.1 Ensure /tmp is a separate partition (Automated)
  • 1.1.2.1.2 Ensure nodev option set on /tmp partition (Automated)
  • 1.1.2.1.3 Ensure nosuid option set on /tmp partition (Automated)
  • 1.1.2.1.4 Ensure noexec option set on /tmp partition (Automated)

Metadata

Metadata

Labels

No labels
No labels

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions