Kernel ASLR does its thing at boot. From then on the kernel address/layout is static. How often do you reboot your BSD/Linux devices?
With this current implementation, one leak of a kernel address to the attacker and they can figure out the rest. "Minimum Viable Product" box checked, hope the improvements continue.