07

Restrict Access to the
Kernel Logs (dmesg)

Set the following sysctl:

kernel.dmesg_restrict = 1
#EmbeddedLinuxSecurity
By default, every user on a Linux system can read messages from the kernel, notably using the dmesg command. However, kernel logs can sometimes contain sensitive information or provide insight to attackers on the progress of their exploit. Our tip: Limit access to this interface to users with CAP_SYSLOG.
Icon with a waving hand

Get in touch

sigma star gmbh
Eduard-Bodem-Gasse 6, 1st floor
6020 Innsbruck | Austria

sigma star gmbh logo