public inbox for gentoo-hardened@lists.gentoo.org
 help / color / mirror / Atom feed
* [gentoo-hardened] What's been done so far?
@ 2003-03-18  8:03 Matt Rickard
  2003-03-18 17:21 ` Sven Vermeulen
  0 siblings, 1 reply; 7+ messages in thread
From: Matt Rickard @ 2003-03-18  8:03 UTC (permalink / raw
  To: gentoo-hardened

Just saw this list in the weekly newsletter, and I'm curious as to what
has been done (or what is being planned) so far?

I've implemented ProPolice in Gentoo
<http://frogger974.homelinux.org/gentoo_propolice.html> and I've created
a chrooted apache script (not yet in ebuild form... will be there when I
get time).  

I see that the newletter mentions an SELinux kernel in this hardened
Gentoo.  SELinux is something that I've had a bit of a look at, but
haven't actually used yet.  Currently I'm using a GRSec patched kernel. 
I'm curious as to what the rest of you feel regarding using either GRSec
or SELinux?  They both seem similar in their goals and their features.

I really like the chroot restrictions GRSec offers -- does SELinux provide
similar functionality?  Chrooted daemons plus these restrictions provides
for very secure services.

Just trying to get a feel for where this project is headed.  Any input is
appreciated.

-Matt

--
gentoo-hardened@gentoo.org mailing list


^ permalink raw reply	[flat|nested] 7+ messages in thread

end of thread, other threads:[~2003-03-18 18:04 UTC | newest]

Thread overview: 7+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2003-03-18  8:03 [gentoo-hardened] What's been done so far? Matt Rickard
2003-03-18 17:21 ` Sven Vermeulen
2003-03-18 17:44   ` nick anderson
2003-03-18 17:53     ` Sven Vermeulen
2003-03-18 17:59       ` nick anderson
2003-03-18 18:04         ` Sven Vermeulen
2003-03-18 18:03       ` Joachim Blaabjerg

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox