This commit is contained in:
Patrick Schleizer 2024-07-17 10:56:14 -04:00
parent 24cd70a014
commit c8be4ac83c
No known key found for this signature in database
GPG Key ID: CB8D50BB77BB3C48

View File

@ -7,6 +7,7 @@
## /etc/sysctl.d/40_ram-wipe.conf that sets 'kernel.kexec_load_disabled=0'.
## Once systemd-sysctl.service has set 'kernel.kexec_load_disabled=1',
## it cannot be undone without a reboot. This is an upstream Linux security feature.
## Instead, ram-wipe will config-package-dev 'hide' this file.
## Disables kexec, which can be used to replace the running kernel.
## Kexec is useful for live kernel patching without rebooting.