Issue, WireGuard on a PaX kernel

saeidscorp saeidscorp at yahoo.com
Mon Apr 24 10:01:42 CEST 2017


Thanks for answering!
Yes, I was using the 4.8 hardened-sources. I tried both upgrading to 4.9 and downgrading to 4.7.Still the kernel panics.
However I copied my .config file from previous 4.8 kernel to these sources' install directories.Can you point me to related issues of Grsecurity patches causing the problem? I couldn't find the search capability in mailing list archives.
Thanks in advance.
-------- Original message --------From: Samuel Holland <samuel at sholland.org> Date: 23/04/2017  23:49  (GMT+03:30) To: saeidscorp <saeidscorp at yahoo.com>, wireguard at lists.zx2c4.com Subject: Re: Issue, WireGuard on a PaX kernel 
Hello,

On 04/23/17 09:53, saeidscorp wrote:
> I've been having troubles using WireGuard on Gentoo hardened/PaX
> kernel. I have set up WireGuard on regular kernels several times, but
> on a PaX kernel it causes the kernel to panic.
>
> All steps of interface addition and configuration using wg tool work
> well, but as soon as the first packet goes through the interface, it
> crashes the whole system.

You didn't mention your kernel version, so I assume you're using the
latest stable hardened-sources. The panic is a known issue for 4.8,
caused by a combination of bugs in the upstream kernel and the
grsecurity patch. You can resolve it by either downgrading to 4.7 or
upgrading to 4.9.

See this thread[0] for more information.

Regards,
Samuel

[0] https://www.mail-archive.com/wireguard@lists.zx2c4.com/msg00385.html
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.zx2c4.com/pipermail/wireguard/attachments/20170424/d9bd85c7/attachment-0001.html>


More information about the WireGuard mailing list