Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

From the linked article, "If you're not using systemd, the vanilla Linux kernel does not enable these protections by default"

... which just seems a bit discriminatory.



Torvalds did weigh in on it. It's disabled by default because it apparently breaks some legacy stuff.

https://github.com/torvalds/linux/commit/561ec64ae67ef25cac8...


.. which apparently now won't work under systemd either!

IMO, he was wrong on this; it should have been enabled by default, and then the people who need that exceptionally rare legacy stuff can disable it with the same techniques (/proc, initrd) that he is currently suggesting to enable it.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: