Skip to content

Add extra hardening capabilities#7

Merged
LaserEyess merged 1 commit into
mainfrom
hardening
Jun 20, 2025
Merged

Add extra hardening capabilities#7
LaserEyess merged 1 commit into
mainfrom
hardening

Conversation

@LaserEyess

@LaserEyess LaserEyess commented Jun 20, 2025

Copy link
Copy Markdown
Owner
- ProcSubset=pid (to mask non pid proc files)
- SystemCallFilter=~@privileged @resources (we don't use these)

Also added ManagedOOMSwap=kill, just in case.

- ProcSubset=pid (to mask non pid proc files)
- SystemCallFilter=~@PRIVILEGED @resources (we don't use these)

Also added ManagedOOMSwap=kill, just in case.
@LaserEyess LaserEyess merged commit dc9a998 into main Jun 20, 2025
1 check passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant