Gentoo Archives: gentoo-hardened

From: Grant <emailgrant@×××××.com>
To: gentoo-hardened@l.g.o
Subject: [gentoo-hardened] GRKERNSEC_PROC & munin
Date: Wed, 19 Jun 2013 16:50:29
Message-Id: CAN0CFw0sW_iCiyUMOQYMSA1vVa5Y3H5hZBDL3BaByENi54vo+Q@mail.gmail.com
1 I've enabled GRKERNSEC_PROC and GRKERNSEC_PROC_USERGROUP with
2 GRKERNSEC_PROC_GID [=10] but not GRKERNSEC_PROC_USER. When I try to
3 run the netstat plugin for munin, I get an error:
4
5 # munin-run netstat
6 cannot open /proc/net/snmp: No such file or directory
7
8 even though I do have the file:
9
10 # ls -l /proc/net/snmp
11 -r--r--r-- 1 root wheel 0 Jun 19 09:40 /proc/net/snmp
12
13 munin-run is run as root and I have 'user root' and 'group root' in
14 /etc/munin/munin-node.conf so I don't see why munin-run can't find
15 /proc/net/snmp. Is this problem related to grsec?
16
17 - Grant