mirror of
https://github.com/optim-enterprises-bv/secureblue.git
synced 2025-11-04 12:28:04 +00:00
docs: add feature details
This commit is contained in:
@@ -32,6 +32,7 @@ Hardening applied:
|
||||
- Brute force protection by locking user accounts for 24 hours after 50 failed login attempts, hardened password encryption and password quality suggestions
|
||||
- Installing chkrootkit
|
||||
- Set opportunistic DNSSEC and DNSOverTLS for systemd-resolved
|
||||
- Configure chronyd to use Network Time Security (NTS)
|
||||
- (Non-userns variants) Disabling unprivileged user namespaces
|
||||
- (Non-userns variants) Replacing bubblewrap with bubblewrap-suid so flatpak can be used without unprivileged user namespaces
|
||||
- Enabling only the [flathub-verified](https://flathub.org/apps/collection/verified/1) remote by default
|
||||
|
||||
Reference in New Issue
Block a user