#!/bin/bash # Security hardening hook for live system set -euo pipefail echo "Applying security hardening..." # Apply security hardening functions from proper volume path # shellcheck source=/build/src/security-hardening.sh source /build/src/security-hardening.sh # Create WiFi module blacklist create_wifi_blacklist # Create Bluetooth module blacklist create_bluetooth_blacklist # Configure SSH configure_ssh # Configure password policy configure_password_policy # Configure system limits configure_system_limits # Configure audit rules configure_audit_rules # Enable auditd service systemctl enable auditd echo "Security hardening completed."