Skip to content

opensnitch{,-ui,ebpf}: is very brokenย #419093

@LordGrimmauld

Description

@LordGrimmauld

Currently, opensnitch is very broken in various ways.
Fixing it is non-trivial, and needs a bit more tracking than just a PR. And, ideally, documentation about what is broken and the fixes in progress.

Broken:

  • opensnitch-ebpf kernel module is missing passthru tests
  • opensnitch-ebpf kernel module maintainers are not the same as for opensnitch
  • opensnitch nixos module has inconsistent maintainer list
  • opensnitch nixos VM test does not check the backend actually being used is the same as defined in config, meaning even when proc fallback takes effect the test passes
  • opensnitch nixos VM test does not check for successful ebpf module loading
  • opensnitch nixos VM test does not check for presence of audit rules
  • opensnitch-ui does not correctly display information on 4 digit version string: opensnitch: 4 digit version breaks opensnitch-ui connectionย #418773
  • opensnitchd systemd service is missing audit package in its $PATH when monitoring method is audit
  • audit monitoring method relies on audisp-af_unix plugin in auditd

There might be more problems, these are the problems i have identified so far.

cc @onny

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions