Re: sysctls in kern_shutdown: add twin tunables

From: Robert N. M. Watson <rwatson_at_FreeBSD.org>
Date: Thu, 30 Sep 2010 19:49:05 +0100
On 30 Sep 2010, at 19:19, Andriy Gapon wrote:

> http://people.freebsd.org/~avg/kern_shutdown-tunables.diff
> 
> The above patch adds twin tunables for the following (R/W) sysctls:
> - debug.debugger_on_panic
> - debug.trace_on_panic
> - kern.sync_on_panic
> 
> This seems useful to me, but I am not sure if I am not missing something
> important.  E.g. security-wise.
> It seems that I am not paranoid enough often times.


This change seems fine to me. Our trust model assumes that loader.conf will be properly protected (or rather, that if you don't protect loader.conf properly, you should expect unfortunate results).

Robert
Received on Thu Sep 30 2010 - 16:49:09 UTC

This archive was generated by hypermail 2.4.0 : Wed May 19 2021 - 11:40:07 UTC