diff options
author | Emily <vcs@emily.moe> | 2020-04-05 05:28:38 +0100 |
---|---|---|
committer | Emily <vcs@emily.moe> | 2020-04-17 16:13:39 +0100 |
commit | 3d4c8ae901585b3ad9de8a68df6c3ebaa4bde4df (patch) | |
tree | 99760f6f9daa74610171c4b0a72409ac7bd91185 /pkgs/os-specific/linux | |
parent | 7d5352df311dec624fed63d6988f9ac999547769 (diff) | |
download | nixlib-3d4c8ae901585b3ad9de8a68df6c3ebaa4bde4df.tar nixlib-3d4c8ae901585b3ad9de8a68df6c3ebaa4bde4df.tar.gz nixlib-3d4c8ae901585b3ad9de8a68df6c3ebaa4bde4df.tar.bz2 nixlib-3d4c8ae901585b3ad9de8a68df6c3ebaa4bde4df.tar.lz nixlib-3d4c8ae901585b3ad9de8a68df6c3ebaa4bde4df.tar.xz nixlib-3d4c8ae901585b3ad9de8a68df6c3ebaa4bde4df.tar.zst nixlib-3d4c8ae901585b3ad9de8a68df6c3ebaa4bde4df.zip |
linux_*_hardened: don't set VMAP_STACK
This has been on by default upstream for as long as it's been an option.
Diffstat (limited to 'pkgs/os-specific/linux')
-rw-r--r-- | pkgs/os-specific/linux/kernel/hardened-config.nix | 1 |
1 files changed, 0 insertions, 1 deletions
diff --git a/pkgs/os-specific/linux/kernel/hardened-config.nix b/pkgs/os-specific/linux/kernel/hardened-config.nix index 7e6f514e19f5..302170f2f5c3 100644 --- a/pkgs/os-specific/linux/kernel/hardened-config.nix +++ b/pkgs/os-specific/linux/kernel/hardened-config.nix @@ -22,7 +22,6 @@ optionalAttrs (stdenv.hostPlatform.platform.kernelArch == "x86_64") { # Note: this config depends on EXPERT y and so will not take effect, hence # it is left "optional" for now. MODIFY_LDT_SYSCALL = option no; - VMAP_STACK = yes; # Catch kernel stack overflows # Randomize position of kernel and memory. RANDOMIZE_BASE = yes; |