Add documentation on sysctl kernel.panic_on_oops=1

This commit is contained in:
Raja Grewal 2024-07-25 10:26:23 +10:00
parent 1b6161c2dc
commit 3926b91dcf
No known key found for this signature in database
GPG key ID: 92CA473C156B64C4
2 changed files with 14 additions and 0 deletions

View file

@ -41,6 +41,9 @@ space, user space, core dumps, and swap space.
- Restrict kernel profiling and the performance events system to `CAP_PERFMON`.
- Force the kernel to panic on "oopses" that can potentially indicate and thwart
certain kernel exploitation attempts.
- Randomize the addresses (ASLR) for mmap base, stack, VDSO pages, and heap.
- Disable asynchronous I/O as `io_uring` has been the source