[GH-ISSUE #619] Restoring Hardened Operating System to Original State #92

Open
opened 2026-03-03 14:29:27 +03:00 by kerem · 1 comment
Owner

Originally created by @esnavarro on GitHub (May 27, 2025).
Original GitHub issue: https://github.com/konstruktoid/hardening/issues/619

Originally assigned to: @konstruktoid on GitHub.

Hi Sir konstruktoid,

This is to inquire if there is a supported method or procedure to revert a hardened operating system back to its original, non-hardened state. We are currently evaluating some changes and would like to understand if a rollback or restoration is feasible without a full reinstallation. I apply the hardening procedure to our production environment our system vendor requested if possible the temporary disabling the os lockdown. If such a process exists, we humbly request, could you please provide a necessary steps to remove the hardening?

Originally created by @esnavarro on GitHub (May 27, 2025). Original GitHub issue: https://github.com/konstruktoid/hardening/issues/619 Originally assigned to: @konstruktoid on GitHub. Hi Sir konstruktoid, This is to inquire if there is a supported method or procedure to revert a hardened operating system back to its original, non-hardened state. We are currently evaluating some changes and would like to understand if a rollback or restoration is feasible without a full reinstallation. I apply the hardening procedure to our production environment our system vendor requested if possible the temporary disabling the os lockdown. If such a process exists, we humbly request, could you please provide a necessary steps to remove the hardening?
Author
Owner

@konstruktoid commented on GitHub (May 27, 2025):

Hi @esnavarro, there's no way to rollback the changes made automatically. The code is a non-idempotent shell script mainly used for testing, if you're planning to configure production systems I suggest you use an more suitable solution such as Ansible.

I suggest you contact your system vendor to narrow down which configuration changes are causing issues, and update those settings without requiring an reinstallation.

<!-- gh-comment-id:2911321514 --> @konstruktoid commented on GitHub (May 27, 2025): Hi @esnavarro, there's no way to rollback the changes made automatically. The code is a non-idempotent shell script mainly used for testing, if you're planning to configure production systems I suggest you use an more suitable solution such as Ansible. I suggest you contact your system vendor to narrow down which configuration changes are causing issues, and update those settings without requiring an reinstallation.
Sign in to join this conversation.
No milestone
No project
No assignees
1 participant
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set.

Reference
starred/hardening#92
No description provided.