summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
-rw-r--r--factory-default/sys-apps/baselayout/etc/sysctl.conf4
1 files changed, 4 insertions, 0 deletions
diff --git a/factory-default/sys-apps/baselayout/etc/sysctl.conf b/factory-default/sys-apps/baselayout/etc/sysctl.conf
index 5eba904b..9e2e1466 100644
--- a/factory-default/sys-apps/baselayout/etc/sysctl.conf
+++ b/factory-default/sys-apps/baselayout/etc/sysctl.conf
@@ -21,6 +21,10 @@ kernel.panic = 5
# randomization.
kernel.randomize_va_space = 2
+# kernel pointers printed using the %pK format specifier will be replaced
+# with 0's unless the user has CAP_SYSLOG
+kernel.kptr_restrict = 1
+
# Uses a "never overcommit" policy that attempts to prevent any overcommit
# of memory
vm.overcommit_memory = 2