From 750d417412323758871be0c9c43ff65a31071cc4 Mon Sep 17 00:00:00 2001 From: jvoisin Date: Mon, 23 Jul 2018 14:15:37 +0200 Subject: Activate more features in the default rules --- config/default.rules | 6 ++++++ 1 file changed, 6 insertions(+) diff --git a/config/default.rules b/config/default.rules index 4e6a27f..a21a6cf 100644 --- a/config/default.rules +++ b/config/default.rules @@ -1,3 +1,9 @@ +# Harden the PRNG +sp.harden_random.enable(); + +# Disabled XXE +sp.disable_xxe.enable(); + # Harden the `chmod` function sp.disable_function.function("chmod").param("mode").value_r("^[0-9]{2}[67]$").drop(); -- cgit v1.3