Skip to content

Latest commit

 

History

History
25 lines (17 loc) · 425 Bytes

kernel-hardening.md

File metadata and controls

25 lines (17 loc) · 425 Bytes

Kernel Hardening

Hardening params

# Prevent loading of modules after a specific timeframe after boot
kernel.modules_disabled=1

# Disable live patching 
kernel.kexec_load_disabled=1

# You are not using berkeley package filter
# disable loading of modules 
kernel.unprivileged_bpf_disabled=1

Tools

Lockdown

Interesting script to do some restrictions 

https://gitlab.com/taggart/lockdown