enable learning without stopping RBAC
Posted: Fri Mar 14, 2008 3:26 pm
does it possible? Now I got
- Code: Select all
voron grsec # gradm -R
Password:
Warning: You have enabled some form of learning on the subject for /usr/sbin/vsftpd in role voron. You have not used -L on the command line however. If you wish to use learning on this subject, use the -L argument to gradm. Otherwise, remove the learning flag on this subject.
There were 1 holes found in your RBAC configuration. These must be fixed before the RBAC system will be allowed to be enabled.
voron grsec # gradm -S
The RBAC system is currently enabled.
voron grsec # gradm -R -L /var/gradm3.log
gradm 2.1.11
grsecurity administration program
Usage: gradm [option] ...
Examples:
gradm -P
gradm -F -L /etc/grsec/learning.logs -O /etc/grsec/policy
Options:
..............................
- Code: Select all
gradm -D;gradm -E -L /var/gradm.log