[systemd-devel] Udev hardening

Greg KH gregkh at linuxfoundation.org
Mon Dec 14 13:41:25 UTC 2020


On Mon, Dec 14, 2020 at 02:54:31PM +0200, Adi Ml wrote:
> Hi,
> 
> I would like to harden my udev service with the
> SystemCallFilter option. What systemcalls should be permitted/allowed in
> order to secure it and avoid irrelevant system calls?

It all depends on what type of scripts/programs you want udev to be able
to call.  That's up to your and your specific hardware configuration.

good luck!

greg k-h


More information about the systemd-devel mailing list