# Turn on Source Address Verification in all interfaces to # prevent some spoofing attacks. net.ipv4.conf.default.rp_filter=1 net.ipv4.conf.all.rp_filter=1 # Turn on SYN-flood protections. Starting with 2.6.26, there is no loss # of TCP functionality/features under normal conditions. When flood # protections kick in under high unanswered-SYN load, the system # should remain more stable, with a trade off of some loss of TCP # functionality/features (e.g. TCP Window scaling). net.ipv4.tcp_syncookies=1
Name | Type | Size | Permission | Actions |
---|---|---|---|---|
10-console-messages.conf | File | 77 B | 0644 |
|
10-ipv6-privacy.conf | File | 490 B | 0644 |
|
10-kernel-hardening.conf | File | 726 B | 0644 |
|
10-link-restrictions.conf | File | 257 B | 0644 |
|
10-lxd-inotify.conf | File | 153 B | 0644 |
|
10-magic-sysrq.conf | File | 1.16 KB | 0644 |
|
10-network-security.conf | File | 509 B | 0644 |
|
10-ptrace.conf | File | 1.26 KB | 0644 |
|
10-zeropage.conf | File | 506 B | 0644 |
|
99-cloudimg-ipv6.conf | File | 185 B | 0644 |
|
99-sysctl.conf | File | 2.62 KB | 0644 |
|
README | File | 519 B | 0644 |
|