Skip site navigation (1)Skip section navigation (2)
Date:      Sat, 26 Nov 2022 12:17:23 -0700
From:      Warner Losh <imp@bsdimp.com>
To:        FreeBSD-STABLE Mailing List <freebsd-stable@freebsd.org>
Subject:   Re: savecore: operation not permitted
Message-ID:  <CANCZdfpBaUr7qeZGSO9Hm5WuqK21wAsC1=63tVCgcUhmziibqg@mail.gmail.com>
In-Reply-To: <Y4JYp7YDmsYZybab@sysmon.zyxst.net>
References:  <Y4JYp7YDmsYZybab@sysmon.zyxst.net>

next in thread | previous in thread | raw e-mail | index | archive | help
--0000000000002da9d305ee647e18
Content-Type: text/plain; charset="UTF-8"

On Sat, Nov 26, 2022, 11:19 AM void <void@f-m.fm> wrote:

> On 13-stable (n253148), am seeing in the console at startup
>
> savecore[1415]: /dev/ada0s1b: Operation not permitted
> Writing crash summary to /var/crash/core.txt.3.
>
> It's enabled in rc.conf:
>
> # sysrc savecore_enable
> savecore_enable: YES
>
> # dumpon -l
> ada0s1b
>
> What's broken?
>


What's your secure level? Can you run the command by hand after boot?
(Usually on modern systems you don't swap right away and have time for a
test like that).

Trying to see if this is prohibited by secure level or other MAC, vs sone
snafu that leads to /var/crash not being writable.

All this assumes this isn't inside a jail...

Warner

> tia,
> --
>
>

--0000000000002da9d305ee647e18
Content-Type: text/html; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable

<div dir=3D"auto"><div><br><br><div class=3D"gmail_quote"><div dir=3D"ltr" =
class=3D"gmail_attr">On Sat, Nov 26, 2022, 11:19 AM void &lt;<a href=3D"mai=
lto:void@f-m.fm">void@f-m.fm</a>&gt; wrote:<br></div><blockquote class=3D"g=
mail_quote" style=3D"margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-l=
eft:1ex">On 13-stable (n253148), am seeing in the console at startup<br>
<br>
savecore[1415]: /dev/ada0s1b: Operation not permitted<br>
Writing crash summary to /var/crash/core.txt.3.<br>
<br>
It&#39;s enabled in rc.conf:<br>
<br>
# sysrc savecore_enable<br>
savecore_enable: YES<br>
<br>
# dumpon -l<br>
ada0s1b<br>
<br>
What&#39;s broken?<br></blockquote></div></div><div dir=3D"auto"><br></div>=
<div dir=3D"auto"><br></div><div dir=3D"auto">What&#39;s your secure level?=
 Can you run the command by hand after boot? (Usually on modern systems you=
 don&#39;t swap right away and have time for a test like that).</div><div d=
ir=3D"auto"><br></div><div dir=3D"auto">Trying to see if this is prohibited=
 by secure level or other MAC, vs sone snafu that leads to /var/crash not b=
eing writable.</div><div dir=3D"auto"><br></div><div dir=3D"auto">All this =
assumes this isn&#39;t inside a jail...</div><div dir=3D"auto"><br></div><d=
iv dir=3D"auto">Warner</div><div dir=3D"auto"><div class=3D"gmail_quote"><b=
lockquote class=3D"gmail_quote" style=3D"margin:0 0 0 .8ex;border-left:1px =
#ccc solid;padding-left:1ex">
tia,<br>
-- <br>
<br>
</blockquote></div></div></div>

--0000000000002da9d305ee647e18--



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?CANCZdfpBaUr7qeZGSO9Hm5WuqK21wAsC1=63tVCgcUhmziibqg>