Skip to content

Conversation

@raja-grewal
Copy link
Contributor

This draft pull request reverts the the upgraded sysctl settings in Kicksecure/security-misc#313.

The changes provide equivalent functionality in disabling kernel panics on both oopses and warning.

Note:
Should ONLY be considered after upgrading to Debian 13 (trixie). Changes have been submitted early to facilitate quicker feedback and review which would ideally enable more swift merging.

Changes

Redundant sysctl settings are removed: kernel.panic_on_oops=0 and kernel.panic_on_warn=0

Upgraded sysctl settings are enabled: kernel.oops_limit=0 and kernel.warn_limit=0

Mandatory Checklist

  • Legal agreements accepted. By contributing to this organisation, you acknowledge you have read, understood, and agree to be bound by these these agreements:

Terms of Service, Privacy Policy, Cookie Policy, E-Sign Consent, DMCA, Imprint

Optional Checklist

The following items are optional but might be requested in certain cases.

  • I have tested it locally
  • I have reviewed and updated any documentation if relevant
  • I am providing new code and test(s) for it

@ArrayBolt3
Copy link
Contributor

In the event we do enable sysctl kernel.panic=-1 by default as suggested at Kicksecure/security-misc#313 (comment), we should be disabling that here too.

@raja-grewal raja-grewal marked this pull request as ready for review August 16, 2025 03:19
Copy link
Contributor

@ArrayBolt3 ArrayBolt3 left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Looks good, thank you!

@raja-grewal
Copy link
Contributor Author

@adrelanos could you please merge the last commit so this PR can be closed. Thank you.

@adrelanos adrelanos merged commit f555a1e into Kicksecure:master Aug 25, 2025
@adrelanos
Copy link
Member

Thank you!

@raja-grewal raja-grewal deleted the panic_update branch August 26, 2025 01:05
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants