★ wanayoo — archive 1999 http://www.linuxsecurity.com/articles/server_security_article-3634.htmlNouvelle recherche | Portail wanayoo
Advertise Here

   
Documentation
Security Sources
Forums
Firewalls
Host Security
Cryptography
Network Security
Intrusion Detection
Organizations/Events
Server Security
Vendors/Products
Projects
General
Privacy
Government
Hacks/Cracks
 
News: Server Security 9/7/2001 11:27

Inside Jail

daemonnews
Posted By: Jen Olson
9/7/2001

Jail chroots an environment and sets certain restrictions on processes which are forked from within. For example, a jailed process cannot affect processes outside of the jail, utilize certain system calls, or inflict any damage on the main computer. Jail is becoming the new security model. People are running potentially vulnerable servers such as Apache, BIND, and sendmail within jails, so that if an attacker gains root within the Jail, it is only an annoyance, and not a devastation. This article focuses on the internals (source code) of Jail and Jail NG. It will also suggest improvements upon the jail code base which are already being worked on. If you are looking for a how-to on setting up a Jail, I suggest you look at my other article in Sys Admin Magazine, May 2001, entitled "Securing FreeBSD using Jail."


Click here to go to this article.
Proposed agency will focus more attention on cybersecurity
Jun 12

Super-Secure Linux, Inch by Inch
Jun 12

Hackers could exploit new RIP data snooping powers
Jun 12

The Solution to Spam - Reverse Filtering
Jun 12

FTC vows to keep closer tabs on privacy breaches
Jun 12

Security holes: The danger within
Jun 12

Secure network spending seen over $46 bln by 2006
Jun 11

Contact Us | Legal Notice | About Our Site
© Guardian Digital, Inc., 2000