svn commit: r315447 - head/usr.sbin/bsdinstall/scripts
Bartek Rutkowski
robak at FreeBSD.org
Fri Mar 17 11:45:47 UTC 2017
Author: robak (ports committer)
Date: Fri Mar 17 11:45:46 2017
New Revision: 315447
URL: https://svnweb.freebsd.org/changeset/base/315447
Log:
Revert changes introduced in r314036 on demand by jhb and bapt.
Approved by: bapt, jhb
Modified:
head/usr.sbin/bsdinstall/scripts/hardening
Modified: head/usr.sbin/bsdinstall/scripts/hardening
==============================================================================
--- head/usr.sbin/bsdinstall/scripts/hardening Fri Mar 17 11:45:16 2017 (r315446)
+++ head/usr.sbin/bsdinstall/scripts/hardening Fri Mar 17 11:45:46 2017 (r315447)
@@ -36,15 +36,15 @@ FEATURES=$( dialog --backtitle "FreeBSD
--title "System Hardening" --nocancel --separate-output \
--checklist "Choose system security hardening options:" \
0 0 0 \
- "0 hide_uids" "Hide processes running as other users" ${hide_uids:-on} \
- "1 hide_gids" "Hide processes running as other groups" ${hide_gids:-on} \
- "2 read_msgbuf" "Disable reading kernel message buffer for unprivileged users" ${read_msgbuf:-on} \
- "3 proc_debug" "Disable process debugging facilities for unprivileged users" ${proc_debug:-on} \
- "4 random_pid" "Randomize the PID of newly created processes" ${random_pid:-on} \
- "5 stack_guard" "Insert stack guard page ahead of the growable segments" ${stack_guard:-on} \
- "6 clear_tmp" "Clean the /tmp filesystem on system startup" ${clear_tmp:-on} \
- "7 disable_syslogd" "Disable opening Syslogd network socket (disables remote logging)" ${disable_syslogd:-on} \
- "8 disable_sendmail" "Disable Sendmail service" ${disable_sendmail:-on} \
+ "0 hide_uids" "Hide processes running as other users" ${hide_uids:-off} \
+ "1 hide_gids" "Hide processes running as other groups" ${hide_gids:-off} \
+ "2 read_msgbuf" "Disable reading kernel message buffer for unprivileged users" ${read_msgbuf:-off} \
+ "3 proc_debug" "Disable process debugging facilities for unprivileged users" ${proc_debug:-off} \
+ "4 random_pid" "Randomize the PID of newly created processes" ${random_pid:-off} \
+ "5 stack_guard" "Insert stack guard page ahead of the growable segments" ${stack_guard:-off} \
+ "6 clear_tmp" "Clean the /tmp filesystem on system startup" ${clear_tmp:-off} \
+ "7 disable_syslogd" "Disable opening Syslogd network socket (disables remote logging)" ${disable_syslogd:-off} \
+ "8 disable_sendmail" "Disable Sendmail service" ${disable_sendmail:-off} \
2>&1 1>&3 )
exec 3>&-
More information about the svn-src-head
mailing list