# CFGFILE for GrSecurity - Kernel 2.4 Security Enhancement # This entry must be set to enable(1) to work grsec_lock=1 # These are the available option 1=enable, 0=disable stealth_flags=0 stealth_igmp=1 stealth_icmp=1 stealth_udp=0 stealth_rst=0 rand_ttl_thresh=0 rand_ttl=0 altered_pings=0 rand_tcp_src_ports=1 rand_ip_ids=1 rand_pids=1 chroot_caps=0 chroot_restrict_nice=0 chroot_deny_ptrace=1 chroot_deny_mknod=1 chroot_deny_chmod=1 chroot_deny_chdir=1 chroot_deny_chroot=1 chroot_deny_mount=1 chroot_restrict_sigs=0 rand_net=0 secure_kbmap=1 coredump=1 execve_limiting=0 secure_fds=0 fifo_restrictions=1 linking_restrictions=1