Re: [vserver] port restrictions

About this list Date view Thread view Subject view Author view Attachment view

From: Paul Sladen (vserver_at_paul.sladen.org)
Date: Thu Aug 01 2002 - 04:07:56 EDT


On 1 Aug 2002, klavs klavsen wrote:
>
> These measures would greatly enhance the vserver security, as a hacker
> who got hold of root in your vserver would not be able to install a
> common root kit for instance.

You *have* root in a vserver. Isn't that the whole point?

If you're after a slightly more restrictive setup, you maybe more interested
in FreeVSD which works by having a pseudo-root user `admin' and therefore
having to proxy anything that does need extra/root permissions, which may
give you the abstract you seem to be after.

  http://www.freevsd.org/

..and buy a CD or something from Darren and the gang at Idaya to say thanks.

        -Paul

-- 
Nottingham, GB

About this list Date view Thread view Subject view Author view Attachment view

This archive was generated by hypermail 2.1.4 : Mon Aug 19 2002 - 12:01:01 EDT