Add noexec to "/boot/"

Prevent execution on boot device since it holds no userspace
executables.
This commit is contained in:
inference 2024-02-13 02:51:45 +00:00
parent daf362fa21
commit e4ecfa03e1
Signed by: inference
SSH Key Fingerprint: SHA256:FtEVfx1CmTKMy40VwZvF4k+3TC+QhCWy+EmPRg50Nnc

View File

@ -1,6 +1,6 @@
# Inferencium - aa000-0
# Filesystem Table
# Version: 4.0.0-alpha.6
# Version: 4.0.0-alpha.7
# Copyright 2023 Jake Winters
# SPDX-License-Identifier: BSD-3-Clause
@ -13,7 +13,7 @@
# Local filesystems
## /boot/
UUID=[REDACTED] /boot/ vfat noauto,noatime 1 2
UUID=[REDACTED] /boot/ vfat noauto,noatime,noexec 1 2
## swap
/dev/mapper/swap none swap defaults 0 0
## /