Bob Mottram
|
c9a1c8b510
|
ME might affect many x86 installs, so instead of stopping the show just remove the interface, which reduces risks a little
|
2017-05-02 17:35:23 +01:00 |
Bob Mottram
|
cbddf8308f
|
Check for AMT within tests, because it could get turned on after installation
|
2017-05-02 11:03:25 +01:00 |
Bob Mottram
|
d6222879d2
|
Check for active Intel backdoor
|
2017-05-02 10:59:31 +01:00 |
Bob Mottram
|
427e910b0f
|
Only use usb canary on non-mesh installs
|
2017-05-01 12:34:47 +01:00 |
Bob Mottram
|
aabb4503f0
|
usb canary only installs once
|
2017-05-01 12:28:44 +01:00 |
Bob Mottram
|
c7bffe6a77
|
Add usb canary
|
2017-05-01 12:25:15 +01:00 |
Bob Mottram
|
bde41a1f21
|
Re-introduce rate limits on the firewall
|
2017-04-25 13:45:44 +01:00 |
Bob Mottram
|
38072abc54
|
Drop spoofed packets
|
2017-04-25 13:40:11 +01:00 |
Bob Mottram
|
794962ac85
|
Drop any outgoing telnet connections
|
2017-04-25 12:28:26 +01:00 |
Bob Mottram
|
39c126cba5
|
Remove any cached yarn files
|
2017-04-14 10:41:48 +01:00 |
Bob Mottram
|
425a4fc132
|
Block bad ip ranges
|
2017-03-31 15:27:09 +01:00 |
Bob Mottram
|
0913425df4
|
Take ownership of the snakeoil
|
2017-03-18 12:48:54 +00:00 |
Bob Mottram
|
16d1681d35
|
bad yarn cache permissions
|
2017-03-18 11:24:19 +00:00 |
Bob Mottram
|
873f67068d
|
Bump /tmp to 150M to allow tahoe-lafs install
|
2017-03-04 22:31:08 +00:00 |
Bob Mottram
|
747f533efb
|
Extra packages
|
2017-02-24 15:44:01 +00:00 |
Bob Mottram
|
fbeb938fc8
|
Include more of the base install within image builds
|
2017-02-23 15:44:09 +00:00 |
Bob Mottram
|
840c5f7976
|
Remove unused function
|
2016-12-21 20:05:00 +00:00 |
Bob Mottram
|
7ad43b6800
|
quotes
|
2016-12-21 19:40:28 +00:00 |
Bob Mottram
|
e3ff98ce41
|
quotes
|
2016-12-21 19:33:55 +00:00 |
Bob Mottram
|
2712e1cedd
|
echo
|
2016-12-21 19:28:35 +00:00 |
Bob Mottram
|
5c7ac4e375
|
Permissions
|
2016-12-03 17:57:00 +00:00 |
Bob Mottram
|
0f89aafbad
|
Prosody permissions
|
2016-12-03 13:07:29 +00:00 |
Bob Mottram
|
3806f4e4e9
|
Ensure prosody permissions
|
2016-12-03 12:37:07 +00:00 |
Bob Mottram
|
8d8ba4a788
|
dovecot permissions
|
2016-12-02 18:48:04 +00:00 |
Bob Mottram
|
46a4f19698
|
Dovecot permissions
|
2016-12-02 12:41:48 +00:00 |
Bob Mottram
|
df8886a222
|
During interactive install bypass the app selecting stage
This will ensure that apps all get separate passwords assigned
|
2016-12-01 13:51:11 +00:00 |
Bob Mottram
|
3695d6a138
|
Bump size of tmp
|
2016-12-01 10:53:40 +00:00 |
Bob Mottram
|
4ed6e4ff7f
|
Schedule daily STIG tests
|
2016-11-30 21:00:17 +00:00 |
Bob Mottram
|
42d5bc9321
|
Move tmp to a ramdisk
|
2016-11-30 20:10:51 +00:00 |
Bob Mottram
|
28e8155750
|
Modules aren't installed anyway
|
2016-11-30 18:27:07 +00:00 |
Bob Mottram
|
3f0d9b7b82
|
Disable null passwords
|
2016-11-30 17:54:45 +00:00 |
Bob Mottram
|
b88a3e867b
|
Disable tipc
|
2016-11-30 17:24:05 +00:00 |
Bob Mottram
|
6b4dba4771
|
Disable rds
|
2016-11-30 17:21:22 +00:00 |
Bob Mottram
|
21a3edf51a
|
Disable sctp
|
2016-11-30 17:18:22 +00:00 |
Bob Mottram
|
c9f6fbd54f
|
Disable dccp
|
2016-11-30 17:15:43 +00:00 |
Bob Mottram
|
23f67f2426
|
Checking for ctrl-alt-del link
|
2016-11-30 15:43:31 +00:00 |
Bob Mottram
|
73316797e3
|
Change rule to exclude nonexistent directory
|
2016-11-30 14:38:28 +00:00 |
Bob Mottram
|
5c79c584fc
|
Set sticky bits
|
2016-11-30 13:40:17 +00:00 |
Bob Mottram
|
3f58fc17d2
|
exim/procmail command permissions
|
2016-11-30 13:12:15 +00:00 |
Bob Mottram
|
b97ec3892b
|
Dummy nologin command
To fix STIG error
|
2016-11-30 10:30:56 +00:00 |
Bob Mottram
|
466dec4d89
|
Change function name
|
2016-11-30 09:41:56 +00:00 |
Bob Mottram
|
396b202982
|
Disable core dumps
|
2016-11-29 23:19:31 +00:00 |
Bob Mottram
|
4eced972fd
|
Install screen to enable console locking
|
2016-11-29 22:39:29 +00:00 |
Bob Mottram
|
f6fd2111e7
|
Ensure permissions on freedombone commands
|
2016-11-29 21:49:40 +00:00 |
Bob Mottram
|
9749cb43ce
|
sudo permissions
|
2016-11-29 21:17:52 +00:00 |
Bob Mottram
|
11899c9904
|
Set command file permissions
|
2016-11-29 20:49:11 +00:00 |
Bob Mottram
|
8e9933725d
|
Remove logins via serial console
|
2016-11-29 20:34:29 +00:00 |
Bob Mottram
|
35d789f133
|
Limit the number of user logins
|
2016-11-29 19:30:36 +00:00 |
Bob Mottram
|
a686f2401c
|
Limit number of login attempts
|
2016-11-29 18:10:27 +00:00 |
Bob Mottram
|
b8b0637e13
|
Set maximum login attempts
|
2016-11-29 16:31:07 +00:00 |