On Fri, Aug 27, 2010 at 04:56:31PM -0700, Kees Cook wrote:
> The NX-emulation should only exist for the 32 bit case, and should not be
> visible under any other situation. This removes the exec-shield parameter
> when not running on 32-bit x86, standardizes the x86_report_nx strings,
> and sets a min/max proc handler for the exec_shield parameter.
I think we should just kill the sysctl and the boot parameter completely,
and make it unconditional.
If we want a switch to disable it, we can overload disable_nx
Dave
_______________________________________________
kernel mailing list
[email protected]
https://admin.fedoraproject.org/mailman/listinfo/kernel