diff --git a/README.md b/README.md index bf433d8..936ebf7 100644 --- a/README.md +++ b/README.md @@ -38,3 +38,38 @@ $ mkdocs serve ``` This will host the website locally on [http://127.0.0.1:8000/](http://127.0.0.1:8000/). + +## To-Do + +Important: + + +- [ ] Improving dotfiles of: + - [ ] SwayNC + - [ ] Tofi + - [ ] Wayfire decorations +- [ ] User packages + - [ ] Graphical package manager +- [ ] Firewall (ufw) +- [ ] User services (Turnstile backend) +- [ ] Default config and user groups automatically (no cloning of configs, (maybe a `.tar.gz` at root)) +- [x] Automatic decryption through TPM (Clevis) +- [x] Clevis package +- [x] Booster werkende krijgen +- [ ] Hardenend kernel +- [ ] Sysctl optimisations +- [ ] Better luks encryption algoritm (faster) +- [ ] Better boot parameters +- [ ] Better partitioning (/usr, /proc etc their own partitions and also more secure root partition) +- [ ] Better polkit permisissions +- [ ] Applicatio sandboxing (bubblejail, bubblewrap, apparmor) + +Less important: + +- [ ] macchanger +- [ ] plymouth (for graphical boot up) (not possible with booster) +- [ ] ABRoot + +Notes: + +https://madaidans-insecurities.github.io/guides/linux-hardening.html#kernel