[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [cobalt-developers] Limiting Shell Access
- Subject: Re: [cobalt-developers] Limiting Shell Access
- From: Jeff Lasman <jblists@xxxxxxxxxxxxx>
- Date: Wed Dec 19 10:23:08 2001
- Organization: nobaloney.net
- List-id: Discussion Forum for developers on Sun Cobalt Networks products <cobalt-developers.list.cobalt.com>
Paul Rosenthal wrote:
> Jeff Lasman wrote:
> > I've been told it can be done with FreeBSD, and in fact I'm studying
> > that now, but you can't run FreeBSD on the RaQ (at least not without
> > completely destroying the gui <wry grin>.
>
> Thanks for the info. I know FTP works because it is a separate program that
> enforces the access limitations itself.
>
> I don't fancy changing all the permissions on each directory etc, so will
> stick to the policy of ensuring that no sensitive data is stored in areas
> that may be accessed.
>
> However, if you do make any progress, please let me know.
FreeBSD uses something called a "jail", and I'm still studying <smile>.
I think it's implemented in the kernel, and I believe that freeBSD is
the only BSD that offers it, so I imagine it might be quite hard to
implement in a Linux-based system such as the RaQ.
Jeff
--
Jeff Lasman <jblists@xxxxxxxxxxxxx>
Linux and Cobalt/Sun/RaQ Consulting
nobaloney.net
P. O. Box 52672, Riverside, CA 92517
voice: (909) 778-9980 * fax: (702) 548-9484