diff options
author | Etienne CHAMPETIER <champetier.etienne@gmail.com> | 2015-09-19 21:20:45 +0200 |
---|---|---|
committer | John Crispin <blogic@openwrt.org> | 2015-10-03 10:04:52 +0200 |
commit | fafbf7338ec8304f2a0ec0ba76048fba2c01c07e (patch) | |
tree | d14acda37e8b24a044e0994a57192cc936da3380 /unitd.h | |
parent | c2f1f1908b43f945efc99cb43b49e512ee5d02aa (diff) | |
download | unitd-fafbf7338ec8304f2a0ec0ba76048fba2c01c07e.tar unitd-fafbf7338ec8304f2a0ec0ba76048fba2c01c07e.zip |
Add MS_NODEV MS_NOEXEC MS_NOSUID mount options where needed
These options aren't mandatory, but can prevent some future
bugs from being exploited. Good reading:
http://lwn.net/Articles/647757/
Value chosen by looking at fedora 22 / ubuntu 14.04
Not tested yet (away from my tests routers)
Not touching jail/jail.c as this conflict with
my pending patch serie
Signed-off-by: Etienne CHAMPETIER <champetier.etienne@gmail.com>
Diffstat (limited to 'unitd.h')
0 files changed, 0 insertions, 0 deletions