diff --git a/package/linux-hardened/config.nix b/package/linux-hardened/config.nix index 1072651..f6be423 100644 --- a/package/linux-hardened/config.nix +++ b/package/linux-hardened/config.nix @@ -117,7 +117,6 @@ # Kernel memory base RELOCATABLE = true; RANDOMIZE_BASE = true; - RANDOMIZE_MEMORY = true; # Stack protection STACKPROTECTOR = true; @@ -194,6 +193,8 @@ X86_UMIP = true; X86_USER_SHADOW_STACK = true; + RANDOMIZE_MEMORY = true; + STRICT_SIGALTSTACK_SIZE = true; };