Hardening TCP/IP and system

Hardening TCP/IP and system
15. June 2015, 18:46:49
Why is not included a file of this type adapted to the proper distribution?

Many examples of hardening can be found in the Internet. Normally, the content of these files is commented and is the user who must activate these functions. For example.

Code: [Select]
## sets the kernels reverse path filtering mechanism to value 1(on)
## will do source validation of the packet's recieved from all the interfaces on the machine
## protects from attackers that are using ip spoofing methods to do harm
net.ipv4.conf.all.rp_filter = 1
#net.ipv6.conf.all.rp_filter = 1

Code: [Select]

And many more options.
