From 8afbbd41f4aeee2461354eb3cf763507bfe63806 Mon Sep 17 00:00:00 2001 From: Ben Smithurst Date: Thu, 7 Dec 2000 21:09:22 +0000 Subject: [PATCH] Explicitly document the fact that securelevel > 0 means that kernel modules may not be (un)loaded. PR: 23350 Submitted by: Gordon Tetlow --- sbin/init/init.8 | 6 +++++- 1 file changed, 5 insertions(+), 1 deletion(-) diff --git a/sbin/init/init.8 b/sbin/init/init.8 index 5a1831da401..7aa927194a3 100644 --- a/sbin/init/init.8 +++ b/sbin/init/init.8 @@ -109,7 +109,10 @@ disks for mounted filesystems, .Pa /dev/mem , and .Pa /dev/kmem -may not be opened for writing. +may not be opened for writing; +kernel modules (see +.Xr kld 4 ) +may not be loaded or unloaded. .It Ic 2 Highly secure mode \- same as secure mode, plus disks may not be opened for writing (except by @@ -367,6 +370,7 @@ system shutdown commands .Xr sh 1 , .Xr dummynet 4 , .Xr ipfirewall 4 , +.Xr kld 4 , .Xr ttys 5 , .Xr crash 8 , .Xr getty 8 ,