[rsbac] 2 problems with 1.3.7

Amon Ott ao at rsbac.org
Tue Feb 26 08:48:52 CET 2008


On Friday 22 February 2008 17:59, Arnaud Patard wrote:
> kang <kang at rsbac.org> writes:
> Hi,
>
> > 1)
> > About your issue #1 this is "normal" for some filesystem which do
> > not initialize properly, and the inheritance is broken. However
> > this does flood the syslog for every access (NFS access here) and
> > we might need to
>
> you can try limiting the flood with printk_ratelimit() if it's not
> already done :)

All RSBAC messages to syslog are rate limited, if you enabled it in 
RSBAC kernel config. The default values might be a bit high, you can 
change them in kernel config, or adjust the real values at boot and 
runtime.

E.g. to set the limit at 20/s:
echo "debug syslog_rate 20" > /proc/rsbac_info/debug

Or use kernel parameter
rsbac_syslog_rate=20

Amon.
-- 
http://www.rsbac.org - GnuPG: 2048g/5DEAAA30 2002-10-22


More information about the rsbac mailing list