[grsec] Usernames (and presumably group names)

John Logsdon j.logsdon at quantex-research.com
Thu Aug 4 11:19:45 EDT 2005


I have a user adm.jl which is perfectly legal for Unix but grsec does not
allow it.  Whether it is in a role or domain, gradm -E returns a message:

User adm on line 102 of /etc/grsec/policy does not exist.
The RBAC system will not be allowed to be enabled until this error is
fixed.

I presume this is also true for groupnames although I haven't tested that.

Is there a quick way around this?  I have tried changing it to "-" and "_"
but the same occurs.  I need a separator of some description in the
username - is there another one that does not cause grsec to cough?

TIA

John

John Logsdon                               "Try to make things as simple
Quantex Research Ltd, Manchester UK         as possible but not simpler"
j.logsdon at quantex-research.com              a.einstein at relativity.org
+44(0)161 445 4951/G:+44(0)7717758675       www.quantex-research.com




More information about the grsecurity mailing list