Not logged in
Log in now
Create an account
Subscribe to LWN
Recent Features
LWN.net Weekly Edition for February 9, 2012
XBMC 11 "Eden"
LWN.net Weekly Edition for February 2, 2012
A tempest in a toybox
LWN.net Weekly Edition for January 26, 2012
Systrace has already been ported to Linux. I don't know how upto date it is though.
Systrace on linux insecure?
Posted May 7, 2004 17:58 UTC (Fri) by happynut (subscriber, #4117) [Link]
I used to use systrace, but it was recently booted out of Gentoo:
http://bugs.gentoo.org/show_bug.cgi?id=45961
There is a described root vulnerability in the 2.4 kernel, and several more claimed:
http://seclists.org/lists/fulldisclosure/2004/Mar/1363.html
Its too bad, because systrace was much more understandable (to me) than selinux; its not as comprehensive, but it lets you easily "lock down" services on a host.
Copyright © 2012, Eklektix, Inc. Comments and public postings are copyrighted by their creators. Linux is a registered trademark of Linus Torvalds