On Wed, Jul 5, 2017 at 12:18 PM, Willy Tarreau <w...@1wt.eu> wrote:
>
> But only if the sysctl is set. It can simply be recommended to set it
> if any program fails. We've done this for many years with other ones
> like min_mmap_addr or tcp_ecn.

Ok, fair enough. I don't hate the approach, and maybe it's simpler
overall, and would help find other potential problem spots.

*Hopefully* it was just that Rust thing and the nasty Java exec-shield
workaround, but yeah, those might just be the first ones that have
been found so far.

                  Linus

Reply via email to