Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
Gracana
on Dec 31, 2020
|
parent
|
context
|
favorite
| on:
Linux Hardening Guide
That really isn't systemd's fault. Software needs to manage the efi variables, so systemd mounts efivarfs writable.
easterncalculus
on Dec 31, 2020
[–]
What software actually needs to repeatedly write to these variables? Systemd itself does, but there was absolutely a world before having this option on by default. Grub and such can just unmount after they are done.
Consider applying for YC's Summer 2025 batch! Applications are open till May 13
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search: