|
security_task_lookup plus bsdjail patches: msg#00003linux.kernel.lsm
Attached are a BSD Jail patch without the network device hooks :(, but using the new security_task_lookup hook to hide /proc/<pid> as much as possible. The network ioctl abuse was also removed, leaving a jail user with only `cat /proc/$$/attr/current` to list the valid IP addresses. Hopefully this will be going to LKML next. Comments much appreciated. thanks, -serge
|
|
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| Previous by Date: | Re: Mediating send_sigurg: 00003, Stephen Smalley |
|---|---|
| Next by Date: | RE:So this is the new way of dating! guess: 00003, Prys E. Immoralities |
| Previous by Thread: | Linux Real Dates with Real Wivesi: 00003, Sulkier J. Emily |
| Next by Thread: | Re: security_task_lookup plus bsdjail patches: 00003, Thomas Bleher |
| Indexes: | [Date] [Thread] [Top] [All Lists] |
| News | FAQ | advertise |