1 |
> The vmlinux image, system.map, .config and acl rules I'm using can be |
2 |
> downloaded from http://felinemenace.org/~andrewg/acl-crash.tgz, or |
3 |
> alternatively individually from |
4 |
> http://felinemenace.org/~andrewg/acl-crash/ |
5 |
> |
6 |
|
7 |
After playing around with the acl rules, I isolated it down to the |
8 |
domain line which seems to cause the problems.. take a default policy |
9 |
line from the gradm2 tarball, add (probably with other users) |
10 |
|
11 |
domain wargamers ul level0 level1 level2 level3 level4 level5 level6 |
12 |
level7 level8 level9 level10 |
13 |
|
14 |
then gradm -E -L /etc/grsec/blah, then gradm -D |
15 |
|
16 |
The kernel should then panic as before (with edi == 0x6b6b6b6b) |
17 |
|
18 |
Hope this helps, |
19 |
Andrew Griffiths |
20 |
|
21 |
-- |
22 |
gentoo-hardened@g.o mailing list |