From owner-freebsd-security Fri Jan 5 20:23:55 2001 From owner-freebsd-security@FreeBSD.ORG Fri Jan 5 20:23:54 2001 Return-Path: Delivered-To: freebsd-security@freebsd.org Received: from bazooka.unixfreak.org (bazooka.unixfreak.org [63.198.170.138]) by hub.freebsd.org (Postfix) with ESMTP id C7C1137B400 for ; Fri, 5 Jan 2001 20:23:53 -0800 (PST) Received: by bazooka.unixfreak.org (Postfix, from userid 1000) id 41A523E02; Fri, 5 Jan 2001 20:23:51 -0800 (PST) Received: from unixfreak.org (localhost [127.0.0.1]) by bazooka.unixfreak.org (Postfix) with ESMTP id 3AE333C10A; Fri, 5 Jan 2001 20:23:51 -0800 (PST) To: Evan S Cc: Erick Mechler , Peter Brezny , freebsd-security@FreeBSD.ORG Subject: Re: changing kernsecurelevel In-Reply-To: Message from Evan S of "Fri, 05 Jan 2001 21:30:22 EST." Date: Fri, 05 Jan 2001 20:23:46 -0800 From: Dima Dorfman Message-Id: <20010106042351.41A523E02@bazooka.unixfreak.org> Sender: owner-freebsd-security@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.org > I know this may seem crazy. But, I _want_ to be able to lower the secure > level. What part of the soruce would I need to edit in order to fix this? Don't refer to it as fixing it, please, but you can use DDB to lower it if you want. I do this sometimes. For example: dima@hornet% sudo sysctl -w kern.securelevel=2 kern.securelevel: -1 -> 2 dima@hornet% Debugger("manual escape to debugger") Stopped at Debugger+0x34: movb $0,in_Debugger.396 db> w securelevel 0xffffffff securelevel 0x2 = 0xffffffff db> c /sbin/sysctl kern.securelevel kern.securelevel: -1 dima@hornet% If you're at a loss at what all of this does, I suggest you use one of the other methods that were presented to you. Dima Dorfman dima@unixfreak.org To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-security" in the body of the message