diff options
author | jkh <jkh@FreeBSD.org> | 2000-11-07 23:05:14 +0000 |
---|---|---|
committer | jkh <jkh@FreeBSD.org> | 2000-11-07 23:05:14 +0000 |
commit | 3e6dc67f1fc629ceacdf110524b175b0910a7093 (patch) | |
tree | f84562f00c3aaac3e908dd966a9dbabffb06cd0b /usr.sbin/sysinstall | |
parent | d9a6f6cc6053ce6af2017e34d5f181d79265bb22 (diff) | |
download | FreeBSD-src-3e6dc67f1fc629ceacdf110524b175b0910a7093.zip FreeBSD-src-3e6dc67f1fc629ceacdf110524b175b0910a7093.tar.gz |
For High security profile, set securelevel to 1 to protect /dev/*mem
and mounted disks, among other things.
Requested by: kirk
Diffstat (limited to 'usr.sbin/sysinstall')
-rw-r--r-- | usr.sbin/sysinstall/config.c | 2 |
1 files changed, 2 insertions, 0 deletions
diff --git a/usr.sbin/sysinstall/config.c b/usr.sbin/sysinstall/config.c index 5c2e24a..6199345 100644 --- a/usr.sbin/sysinstall/config.c +++ b/usr.sbin/sysinstall/config.c @@ -516,6 +516,8 @@ configSecurityHigh(dialogMenuItem *self) variable_set2("sshd_enable", "YES", 1); variable_set2("portmap_enable", "NO", 1); variable_set2("nfs_server_enable", "NO", 1); + variable_set2("kern_securelevel_enable", "YES", 1); + variable_set2("kern_securelevel", "1", 1); if (self) msgConfirm("High security settings have been selected.\n\n" |