Subject: Re: Non executable mappings and compatibility options bugs
To: None <tech-kern@NetBSD.org, tech-security@NetBSD.org>
From: Jonathan Stone <jonathan@dsg.stanford.edu>
List: tech-security
Date: 06/22/2004 17:11:07
... Its clear there is no widespread consensus what the default
should prefer (security vs loss of previously-working binary emulation).
So, why dont we  make the default behaviour sysctl'able?

Let the default be the secure option, and each time the non-executable
test trips on a non-NetBSD emul, log a kernel warning which names the
sysctl knob needed to enable fully-backwards-compatible mode.