19 lines
539 B
Plaintext
19 lines
539 B
Plaintext
|
###################################################################
|
||
|
kernel.dmesg_restrict = 1
|
||
|
kernel.kptr_restrict = 2
|
||
|
net.core.bpf_jit_harden = 2
|
||
|
kernel.perf_event_paranoid = 3
|
||
|
kernel.kexec_load_disabled = 1
|
||
|
user.max_user_namespaces = 0
|
||
|
kernel.unprivileged_bpf_disabled = 1
|
||
|
vm.unprivileged_userfaultfd = 0
|
||
|
dev.tty.ldisc_autoload = 0
|
||
|
vm.mmap_min_addr = 4096
|
||
|
kernel.randomize_va_space = 2
|
||
|
kernel.yama.ptrace_scope = 3
|
||
|
fs.protected_symlinks = 1
|
||
|
fs.protected_hardlinks = 1
|
||
|
fs.protected_fifos = 2
|
||
|
fs.protected_regular = 2
|
||
|
fs.suid_dumpable = 0
|