Skip to content

Releases: wravoc/harden-freebsd

3.1

23 Apr 03:55
Compare
Choose a tag to compare

New security researched and tested directive available included (more security), features, new Wallpapers, new FreeBSD 14.0 version.


New Features in 3.1

  • A package audit is automatically run identifying vulnerabilities in installed packages and saves to file pkg-audit-report
  • Security Tiering has been introduced with additional settings files minimal and server
  • A script argument can be given naming the settings ini file you wish to use, mainly to toggle between secure and minimal, otherwise settings.ini is used
    • A minimum security and high performance server tier ini files are now included
    • Adjust as neccessary or make your own set
  • A script argument of "restore" is now available, overwriting the changed files with the original files saved during first run
    • rc.conf, sysctl.conf, and loader.conf are restored. login.conf and the password changes are not reversed, neither are file permissions or at, cron adjustments
    • minimum.ini does not have first_run = True set as it is expected to usually run secure. Therefore if using this ini file first, backups will not be made.
  • New wallpapers have been added with the assistance of LimeWire BlueWillow v4 Artificial Intelligence image generator.
  • Change the default umask to 027

3.0.1

10 Aug 04:58
Compare
Choose a tag to compare

Zenbleed Workaround, Downfall Advisory, Inception checker, FreeBSD Security Advisory, Hardened FreeBSD Wallpaper.

2.0.2

28 Jun 22:15
Compare
Choose a tag to compare

Loader.conf settings now tunable for kernel adjustments and two third party pieces of software to verify the implementation is working. This script now surpasses all settings available in the default hardening script.

1.0.1

23 Jun 16:38
Compare
Choose a tag to compare

64bit ASLR setting was reverted back to 32bit as 64bit is enabled by default.

Initial Release

23 Jun 15:59
Compare
Choose a tag to compare

Tested and working with no errors or issues reported on FreeBSD 13.2 amd64, x86-64, x64.