Skip to content

Failures running mtail with systemd hardening options #175

@NightTsarina

Description

@NightTsarina

Hi!

While preparing a new version of the Debian package for mtail I tried adopting the hardening options included in the service file shipped with mtail. Sadly, this results in immediate failure due to SIG_SYS (invalid system call), with no hint as to what caused it.

I have experienced similar issues while trying to add hardening to other services, and I have never been able to debug it properly. For starters, it seems impossible to get strace to run from a service unit.

So for the time being, I will not be adding these options to the Debian package, but it would be good to do so in the future.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions