Bookmark this page

Summary

In this chapter, you learned:

  • USBGuard protects your systems against rogue USB devices by implementing basic whitelisting and blacklisting capabilities based on device attributes.

  • The usbguard-daemon service determines whether or not to authorize a USB device based on a policy defined by a set of rules.

  • When a USB device is inserted into the system the daemon scans the existing rules sequentially, and when a matching rule is found it either allows, blocks or rejects the device, based on the rule target.

  • The usbguard utility is used to manage the USB device authorization rules.

Revision: rh415-7.5-b847083