1
0
mirror of https://github.com/tommytran732/tommytran.io synced 2024-11-22 09:31:34 -05:00

Mention NTS

Signed-off-by: Tommy <contact@tommytran.io>
This commit is contained in:
Tommy 2022-09-05 08:14:55 -04:00
parent 1fc566530a
commit bce99bd5d0
No known key found for this signature in database
GPG Key ID: 060B29EB996BD9F2

View File

@ -39,6 +39,6 @@ Right now, the installation procedure is still a bit cumbersome due to how much
These are sample [Butane/Ingition configuration files](https://github.com/tommytran732/Fedora-CoreOS-Ignition) that you can adapt to quickly deploy a Fedora CoreOS server with the containers of your choice. These are sample [Butane/Ingition configuration files](https://github.com/tommytran732/Fedora-CoreOS-Ignition) that you can adapt to quickly deploy a Fedora CoreOS server with the containers of your choice.
Out of the box, you will have a set of hardened boot parameters, sysctl settings, along with a set of kernel module blacklist from Whonix's [security-misc](https://github.com/Kicksecure/security-misc/blob/master/etc/modprobe.d/30_security-misc.conf). The configurations will also give you a basic setup with Firewalld, Fail2ban, and seboolean to tighten down security. Out of the box, you will have a set of hardened boot parameters, sysctl settings, along with a set of kernel module blacklist from Whonix's [security-misc](https://github.com/Kicksecure/security-misc/blob/master/etc/modprobe.d/30_security-misc.conf). The configurations will also give you a basic setup with Firewalld, Fail2ban, seboolean, and NTS to tighten down security.
I use these same configurations on my production servers. I use these same configurations on my production servers.