User Tools

Site Tools


devdocs:hardening_ideas

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revision Previous revision
Last revision Both sides next revision
devdocs:hardening_ideas [2018/10/18 22:18]
z5t1 [General Stuff]
devdocs:hardening_ideas [2018/10/18 22:19]
z5t1 [Rescue Environment]
Line 4: Line 4:
  
 Create a rescue environment in /​opt/​rescue. This environment will contain backup versions of essential binaries (similar to BSD's /rescue or /altroot directory). It will reside on a separate read only filesystem. It will use Busybox with static linking so it is not dependent on any other part of the system for proper functionality. Create a rescue environment in /​opt/​rescue. This environment will contain backup versions of essential binaries (similar to BSD's /rescue or /altroot directory). It will reside on a separate read only filesystem. It will use Busybox with static linking so it is not dependent on any other part of the system for proper functionality.
 +
 +The binaries should also be executable only by root.
  
 ====== Userspace Hardening ====== ====== Userspace Hardening ======
devdocs/hardening_ideas.txt ยท Last modified: 2018/10/18 22:21 by z5t1