Am 15.08.2016 um 08:07 schrieb Michael Biebl:
> Control: found -1 231-2
> 
> Am 15.08.2016 um 00:17 schrieb Rick Thomas:
>> Sorry, it’s not fixed in 231-2…  Please see attached boot log.
> 
> Yeah, the revert was incomplete.
> The service files in systemd use
> MemoryDenyWriteExecute=yes
> which is implemented using seccomp.

RestrictRealtime=yes uses seccomp as well. Fortunately it's not used in
the service files (yet).

So we have to check at least for
MemoryDenyWriteExecute
RestrictRealtime
SystemCallFilter


Rick, if you comment out MemoryDenyWriteExecute=yes in your service
files in /lib/systemd/system, is the problem gone?

Regards,
Michael


-- 
Why is it that all of the instruments seeking intelligent life in the
universe are pointed away from Earth?

Attachment: signature.asc
Description: OpenPGP digital signature

Reply via email to