Gentoo Archives: gentoo-hardened

From: kakou <kakou@×××××.org>
To: gentoo-hardened@l.g.o
Subject: [gentoo-hardened] Problem with grsecurity
Date: Sat, 18 Nov 2006 13:46:34
Message-Id: 1163857476.15707.14.camel@po-briffaut.kakou.org
1 Hello,
2 I have installed grsecurity and obtained a policy with grlearn.
3 When I use gradm -a admin, I have this error in log :
4
5 (root:U:/sbin/gradm) use of CAP_SYS_ADMIN denied
6 for /sbin/gradm[gradm:4373] uid/euid:0/0 gid/egid:0/0,
7 parent /bin/bash[bash:10954] uid/euid:0/0 gid/egid:0/0
8
9 I have no subject for "/sbin/gradm" for the role root and if I try to
10 add this subject, I have an error because this subject already exist
11 (???).
12 Moerover any subject is a simlinks to "/sbin/gradm".
13
14 I have this error (but all is running fine :)) on two server.
15 The first one with a tweaked policy and the second one with the default
16 policy obtained with grlearn.
17
18 Someone has an idea?
19
20
21 Kakou

Attachments

File name MIME type
signature.asc application/pgp-signature

Replies

Subject Author
Re: [gentoo-hardened] Problem with grsecurity atoth@××××××××××.hu