Description
Device authorization policies can be enforced through the USBGuard daemon and tools. usbguard-git is for administrators controlling which removable devices may interact with a system.
Design rules and recovery access carefully. Device authorization can block keyboards, smartcards, storage, network adapters, or emergency media, and permissive rules can allow malicious peripherals.