Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 11 Oct 2024 03:18:23 +0000
From:      bugzilla-noreply@freebsd.org
To:        bugs@FreeBSD.org
Subject:   [Bug 281995] IDS errors after upgrading from 14.0 to 14.1-RELEASE amd64
Message-ID:  <bug-281995-227-VZCb2e7idf@https.bugs.freebsd.org/bugzilla/>
In-Reply-To: <bug-281995-227@https.bugs.freebsd.org/bugzilla/>
References:  <bug-281995-227@https.bugs.freebsd.org/bugzilla/>

next in thread | previous in thread | raw e-mail | index | archive | help
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D281995

--- Comment #3 from Jiacong Fang <zldrobit@gmail.com> ---
When upgrading from a fresh 14.1-RELEASE install to 14.1-RELEASE-p5, the IDS
check passed. After changing permissions using 'chmod -x /boot/kernel/*
/usr/lib/debug/boot/kernel/*', IDS works as expected in the aforementioned
FreeBSD (updated from 14.0-RELEASE).=20

My best guess is the permissions of '/boot/kernel/*' and
'/usr/lib/debug/boot/kernel/*' differ between 14.0-RELEASE and 14.1-RELEASE.
The 'freebsd-update' tool does not apply permission changes, thus the IDS c=
heck
failed. If the permissions is set correctly, the SHA256 hash check also pas=
ses.

PS: Change the perm of '/var/db/etcupdate/current/root' from 0755 -> 0750

--=20
You are receiving this mail because:
You are the assignee for the bug.=



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?bug-281995-227-VZCb2e7idf>