From d9747c64b038943253eaafdc59a49d5face46dab Mon Sep 17 00:00:00 2001 From: Fuwn Date: Fri, 20 Sep 2024 05:36:20 -0700 Subject: modules: server and core modules --- modules/core/security/audit.nix | 17 +++++++++++++++++ 1 file changed, 17 insertions(+) create mode 100644 modules/core/security/audit.nix (limited to 'modules/core/security/audit.nix') diff --git a/modules/core/security/audit.nix b/modules/core/security/audit.nix new file mode 100644 index 0000000..9922213 --- /dev/null +++ b/modules/core/security/audit.nix @@ -0,0 +1,17 @@ +let + enable = false; +in +{ + security = { + auditd.enable = enable; + + audit = { + inherit enable; + + rules = [ + "-a exit,always -F arch=b64 -S execve" + "-a exit,always -F arch=b32 -S execve" + ]; + }; + }; +} -- cgit v1.2.3