From edf40f2ebd444880fd54f9d9bf3cba7c61ec35c5 Mon Sep 17 00:00:00 2001 From: raja-grewal Date: Wed, 6 Aug 2025 02:36:41 +0000 Subject: [PATCH 1/3] Upgrade sysctls on kernel panics --- etc/sysctl.d/40_debug-misc.conf | 6 ++---- 1 file changed, 2 insertions(+), 4 deletions(-) diff --git a/etc/sysctl.d/40_debug-misc.conf b/etc/sysctl.d/40_debug-misc.conf index af2d7a3..e76f881 100644 --- a/etc/sysctl.d/40_debug-misc.conf +++ b/etc/sysctl.d/40_debug-misc.conf @@ -7,10 +7,8 @@ #### description #kernel.panic=0 -kernel.panic_on_oops=0 -kernel.panic_on_warn=0 -#kernel.oops_limit=0 -#kernel.warn_limit=0 +kernel.oops_limit=0 +kernel.warn_limit=0 kernel.sysrq=1 From d14f1cedf134673d5ce485c95506fe8b610ee83c Mon Sep 17 00:00:00 2001 From: raja-grewal Date: Sun, 17 Aug 2025 06:42:29 +0000 Subject: [PATCH 2/3] Remove `sysctl kernel.panic=-1` --- etc/sysctl.d/40_debug-misc.conf | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/etc/sysctl.d/40_debug-misc.conf b/etc/sysctl.d/40_debug-misc.conf index e76f881..9ed214c 100644 --- a/etc/sysctl.d/40_debug-misc.conf +++ b/etc/sysctl.d/40_debug-misc.conf @@ -6,7 +6,7 @@ #### category debugging #### description -#kernel.panic=0 +kernel.panic=0 kernel.oops_limit=0 kernel.warn_limit=0 From 558c18596e7e01b1c7b29f869555f94f1914ced1 Mon Sep 17 00:00:00 2001 From: raja-grewal Date: Tue, 19 Aug 2025 11:09:27 +1000 Subject: [PATCH 3/3] Reorder settings to be consistent with `secuirty-misc` --- etc/sysctl.d/40_debug-misc.conf | 15 +++++++++------ 1 file changed, 9 insertions(+), 6 deletions(-) diff --git a/etc/sysctl.d/40_debug-misc.conf b/etc/sysctl.d/40_debug-misc.conf index 9ed214c..47ca3c7 100644 --- a/etc/sysctl.d/40_debug-misc.conf +++ b/etc/sysctl.d/40_debug-misc.conf @@ -6,18 +6,21 @@ #### category debugging #### description -kernel.panic=0 +kernel.kptr_restrict=0 + +kernel.sysrq=1 + kernel.oops_limit=0 kernel.warn_limit=0 -kernel.sysrq=1 +kernel.panic=0 + +kernel.yama.ptrace_scope=0 + +kernel.core_pattern=core fs.suid_dumpable=1 #fs.suid_dumpable=2 #fs.suid_dumpable=3 -kernel.yama.ptrace_scope=0 -kernel.kptr_restrict=0 -kernel.core_pattern=core - #### meta end