# openEuler Embedded extra volatiles for security:
# Main function is similar to 00_core of initscripts/volatiles
# And extra 'p' mode which will change files/dir's permission
# for security concern

p root root 0640 /dev/mem none
p root root 0600 /etc/fstab none
p root root 0644 /etc/group none
p root root 0750 /etc/init.d/ none
p root root 0750 /etc/init.d/* none
p root root 0644 /etc/passwd none
p root root 0600 /etc/securetty none
f root root 0600 /etc/security/opasswd none
p root root 0600 /etc/shadow none
p root root 0600 /etc/ssh/sshd_config none
p root root 0750 /lib/modules/ none
p root root 0700 /root/ none
d root root 0750 /var/log/audit/ none
p root root 0750 /var/log/audit/ none
f root root 0600 /var/log/audit/audit.log none
p root root 0600 /var/log/audit/audit.log none
p root root 0750 /var/log/ none
p root root 0640 /var/log/* none
f root root 0640 /var/log/auth.log none
p root root 0640 /var/log/wtmp none
p root root 0755 /bin/ none
p root root 0755 /etc/ none
p root root 0755 /home/ none
p root root 0755 /lib/ none
p root root 0755 /dev/ none
p root root 0755 /sbin/init none
p root root 0750 /var/volatile/log none
p root root 0644 /etc/motd none
p root root 0644 /etc/issue none
p root root 0644 /etc/issue.net none
