From 3c5cc65c746025ca28180f8489b3cb8abe0c215d Mon Sep 17 00:00:00 2001 From: Tommy Date: Thu, 16 May 2024 22:18:42 -0700 Subject: [PATCH] Adjust sysctl on Fedora Server Signed-off-by: Tommy --- Fedora-Server-40.sh | 2 ++ 1 file changed, 2 insertions(+) diff --git a/Fedora-Server-40.sh b/Fedora-Server-40.sh index eaff148..aa09a74 100644 --- a/Fedora-Server-40.sh +++ b/Fedora-Server-40.sh @@ -62,6 +62,8 @@ sudo sed -i 's/# install btusb/install btusb/g' /etc/modprobe.d/30_security-misc unpriv curl https://raw.githubusercontent.com/Kicksecure/security-misc/master/usr/lib/sysctl.d/990-security-misc.conf | sudo tee /etc/sysctl.d/990-security-misc.conf sudo chmod 644 /etc/sysctl.d/990-security-misc.conf sudo sed -i 's/kernel.yama.ptrace_scope=2/kernel.yama.ptrace_scope=3/g' /etc/sysctl.d/990-security-misc.conf +sudo sed -i 's/net.ipv4.icmp_echo_ignore_all=1/net.ipv4.icmp_echo_ignore_all=0/g' /etc/sysctl.d/990-security-misc.conf +sudo sed -i 's/net.ipv6.icmp.echo_ignore_all=1/net.ipv6.icmp.echo_ignore_all=0/g' /etc/sysctl.d/990-security-misc.conf unpriv curl https://raw.githubusercontent.com/Kicksecure/security-misc/master/usr/lib/sysctl.d/30_silent-kernel-printk.conf | sudo tee /etc/sysctl.d/30_silent-kernel-printk.conf sudo chmod 644 /etc/sysctl.d/30_silent-kernel-printk.conf unpriv curl https://raw.githubusercontent.com/Kicksecure/security-misc/master/usr/lib/sysctl.d/30_security-misc_kexec-disable.conf | sudo tee /etc/sysctl.d/30_security-misc_kexec-disable.conf