summary refs log tree commit diff
path: root/nixos/modules/security
diff options
context:
space:
mode:
authorJoachim Fasting <joachifm@fastmail.fm>2016-08-01 15:56:09 +0200
committerJoachim Fasting <joachifm@fastmail.fm>2016-08-01 16:27:14 +0200
commitd1572d06fe13302263e451e91ec6777ecd66e50e (patch)
tree70ca3843d5e7815386ad3f2c5410cf957a45f2fd /nixos/modules/security
parent5d11dac8bb8f10b797467e913d6ebb9ea1eccd29 (diff)
downloadnixlib-d1572d06fe13302263e451e91ec6777ecd66e50e.tar
nixlib-d1572d06fe13302263e451e91ec6777ecd66e50e.tar.gz
nixlib-d1572d06fe13302263e451e91ec6777ecd66e50e.tar.bz2
nixlib-d1572d06fe13302263e451e91ec6777ecd66e50e.tar.lz
nixlib-d1572d06fe13302263e451e91ec6777ecd66e50e.tar.xz
nixlib-d1572d06fe13302263e451e91ec6777ecd66e50e.tar.zst
nixlib-d1572d06fe13302263e451e91ec6777ecd66e50e.zip
grsecurity module: correct internal note
Diffstat (limited to 'nixos/modules/security')
-rw-r--r--nixos/modules/security/grsecurity.nix2
1 files changed, 1 insertions, 1 deletions
diff --git a/nixos/modules/security/grsecurity.nix b/nixos/modules/security/grsecurity.nix
index 4b9a11cf6dc8..6b4dbe8e11f8 100644
--- a/nixos/modules/security/grsecurity.nix
+++ b/nixos/modules/security/grsecurity.nix
@@ -97,7 +97,7 @@ in
 
     # Configure system tunables
     boot.kernel.sysctl = {
-      # Removed under grsecurity
+      # Read-only under grsecurity
       "kernel.kptr_restrict" = mkForce null;
     } // optionalAttrs config.nix.useSandbox {
       # chroot(2) restrictions that conflict with sandboxed Nix builds