Gentoo Archives: gentoo-hardened

From: Alex Efros <powerman@××××××××.name>
To: gentoo-hardened@l.g.o
Subject: Re: [gentoo-hardened] Security Level: high/server/workstation/virtualization
Date: Fri, 27 Jan 2012 20:20:34
Message-Id: 20120127201942.GB5600@home.power
In Reply to: [gentoo-hardened] Security Level: high/server/workstation/virtualization by Alex Efros
1 Hi!
2
3 Two small notes related to security level defaults:
4
5 1) On my system vmware reboot host OS when starting guest OS if any one
6 (or both) of these are enabled:
7
8 CONFIG_PAX_KERNEXEC (enabled by default on workstation security level)
9 CONFIG_PAX_MEMORY_UDEREF
10
11 2) When wireshark started by non-root user this option kill all my
12 processes (https://bugs.gentoo.org/show_bug.cgi?id=379369):
13
14 CONFIG_GRKERNSEC_BRUTE (enabled by default on all security levels)
15
16 --
17 WBR, Alex.

Replies