On in https://bugs.debian/810920, Yves-Alexis Perez wrote: > Didn't test yet, but if sysctl are applied in initrd, yes that makes sense. > Unfortunately there's not much I can do here.
Maybe this needs to be reassigned to systemd or dracut or something if it's not a bug in grsec itself? How should one-time-settings work in sysctl? what if systemd's sysctl checked to see if the desired value was already set, and left it at that without producing a failure? --dkg