I'm working on a small #debian package to provide basics to assist in #security #hardening a current debian installation.
"Conflicts" with dangerous/problematic packages. Docs with hints or config steps. Predefined settings for known issues/vulns. Something that is both a guide and provides automatic assistance and prework and prescription where possible. (E.g. lists of modules for use with kernel.modules_disabled=1)
I'd be interested to hear what else one would expect from such a package.





