[Ipsec-tools-devel] Racoon privsep grsec failure
Brought to you by:
mit_warlord,
netbsd
|
From: Loux <lou...@gm...> - 2011-07-28 07:37:41
|
using racoon as root works but adding :
privsep {
user "racoon";
group "racoon";
}
and running it as root : racoon -dd -F -f /etc/racoon/racoon.conf
give me this failure :
2011-07-27 20:45:38: [A.B.C.D] INFO: received INITIAL-CONTACT
2011-07-27 20:45:38: ERROR: privsep_socket: unauthorized domain (15)
2011-07-27 20:45:38: INFO: racoon privileged process 16115 terminated
and dmesg :
[124174.750049] grsec: From 192.168.0.10: Segmentation fault occurred
at 0000000000000010 in /usr/sbin/racoon[racoon:16140]
uid/euid:2021/2021 gid/egid:2021/2021, parent /sbin/init[init:1]
uid/euid:0/0 gid/egid:0/0
[124174.750165] grsec: bruteforce prevention initiated against uid
2021, banning for 15 minutes
infos :
- racoon user is id 2021
- i'm on gentoo hardened (profile hardened server for kernel)
any clue ?
thanks
Loux
|