Hello ;)
I compiled a new 2.4.18 kernel together with high security option enabled under grsecurity, everything was succesful until I enabled the ACL. Now everything causes segfault :/ What should be the problem ? :)
proc.acl:
/usr/sbin/sshd {
+CAP_NET_BIND_SERVICE
/dev/tty row
/ rwx
/var/log/lastlog rwo
/dev/ptmx xrow
/etc/shadow ro
/dev/pts row
}
/usr/bin/ssh {
/ rwx
+CAP_NET_BIND_SERVICE
}
/bin/su {
/ rwx
/etc/shadow ro
}
/bin/login {
/ rwx
/etc/shadow ro
/var/log/lastlog rwo
}
/etc/rc.d/init.d/halt vk {
/ rwx
+CAP_SYS_ADMIN
+CAP_SYS_RAWIO
+CAP_NET_ADMIN
}
/etc/rc.d/rc vk {
/ rwx
+CAP_SYS_ADMIN
+CAP_NET_ADMIN
}
/usr/lib/postfix/master {
/ rwx
+CAP_NET_BIND_SERVICE
}
/usr/bin/passwd {
/ rwx
/etc/shadow rwo
}
file.acl:
/ rwx
/etc/rc.d rx
/etc/passwd r
/etc/shadow r
/var/log/wtmp rw
/var/log rw
/var/log/httpd wr
/tmp rw
/etc/grsec hr
/boot r
/lib rx
/usr rx
/usr/src rwx
/etc/lilo.conf r
/bin rx
/sbin rx