Re: [Security] [PATCH RFC] Restrictions on module loading

From: Eugene Teo
Date: Tue Nov 09 2010 - 00:43:09 EST


On Mon, Nov 8, 2010 at 9:23 AM, Dan Rosenberg <drosenberg@xxxxxxxxxxxxx> wrote:
[...]
> The below patch replaces the existing "modules_disable" sysctl with a
> finer-grained "modules_restrict" sysctl.  By default, this is set at 0,

I suggest that we either keep the existing "modules_disable" sysctl
variable and build on top of it, or use another sysctl variable.

Thanks, Eugene
--
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/