Not logged in
Log in now
Create an account
Subscribe to LWN
Recent Features
LWN.net Weekly Edition for July 2, 2009
RealtimeKit and the audio problem
VFAT patent avoidance and patent workarounds
LWN.net Weekly Edition for June 25, 2009
Apache attacked by a "slow loris"
Systrace has already been ported to Linux. I don't know how upto date it is though.
Systrace on linux insecure?
Posted May 7, 2004 17:58 UTC (Fri) by happynut (subscriber, #4117) [Link]
I used to use systrace, but it was recently booted out of Gentoo:
http://bugs.gentoo.org/show_bug.cgi?id=45961
There is a described root vulnerability in the 2.4 kernel, and several more claimed:
http://seclists.org/lists/fulldisclosure/2004/Mar/1363.html
Its too bad, because systrace was much more understandable (to me) than selinux; its not as comprehensive, but it lets you easily "lock down" services on a host.
Copyright © 2009, Eklektix, Inc. Comments and public postings are copyrighted by their creators. Linux is a registered trademark of Linus Torvalds