mirror of
https://github.com/Kicksecure/security-misc.git
synced 2025-11-25 15:47:25 -05:00
Update docs relating to panic on OOM
This commit is contained in:
parent
0aa0b67df6
commit
a3830db09e
2 changed files with 7 additions and 5 deletions
|
|
@ -204,13 +204,14 @@ kernel.perf_event_paranoid=3
|
|||
## Note that this must be used with kernel.panic=-1 for it to be function as intended.
|
||||
## This prevents security features such as the screen locker, kloak, and emerg-shutdown from being arbitrarily terminated.
|
||||
## Enabling these two together creates a risk of userspace-based denial-of-service attacks that maliciously fill memory.
|
||||
## This opinionated default forces immediate system reboot rather than placing any reliance on the oom_killer.
|
||||
## This forces immediate system reboot rather than placing any reliance on the oom_killer.
|
||||
## Known to cause extreme user experience problems with certain applications as the Tor Browser.
|
||||
## Enabling by default requires improved upstream handling of user space OOM better accounting for desktop users.
|
||||
##
|
||||
## https://en.wikipedia.org/wiki/Out_of_memory
|
||||
## https://forums.whonix.org/t/screen-locker-in-security-can-we-disable-these-at-least-4-backdoors/8128/14
|
||||
## https://github.com/KSPP/kspp.github.io/issues/9
|
||||
## https://github.com/Kicksecure/security-misc/issues/324
|
||||
## Needs more work.
|
||||
##
|
||||
#vm.panic_on_oom=2
|
||||
|
||||
|
|
|
|||
Loading…
Add table
Add a link
Reference in a new issue