mirror of
https://github.com/optim-enterprises-bv/secureblue.git
synced 2025-11-05 04:48:19 +00:00
docs: add feature details
This commit is contained in:
@@ -32,6 +32,7 @@ Hardening applied:
|
|||||||
- Brute force protection by locking user accounts for 24 hours after 50 failed login attempts, hardened password encryption and password quality suggestions
|
- Brute force protection by locking user accounts for 24 hours after 50 failed login attempts, hardened password encryption and password quality suggestions
|
||||||
- Installing chkrootkit
|
- Installing chkrootkit
|
||||||
- Set opportunistic DNSSEC and DNSOverTLS for systemd-resolved
|
- Set opportunistic DNSSEC and DNSOverTLS for systemd-resolved
|
||||||
|
- Configure chronyd to use Network Time Security (NTS)
|
||||||
- (Non-userns variants) Disabling unprivileged user namespaces
|
- (Non-userns variants) Disabling unprivileged user namespaces
|
||||||
- (Non-userns variants) Replacing bubblewrap with bubblewrap-suid so flatpak can be used without unprivileged user namespaces
|
- (Non-userns variants) Replacing bubblewrap with bubblewrap-suid so flatpak can be used without unprivileged user namespaces
|
||||||
- Enabling only the [flathub-verified](https://flathub.org/apps/collection/verified/1) remote by default
|
- Enabling only the [flathub-verified](https://flathub.org/apps/collection/verified/1) remote by default
|
||||||
|
|||||||
Reference in New Issue
Block a user