Great Circle Associates Firewalls
(December 1996)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: Linux as a Firewall Platform
From: Ambrose Li <news-misc @ byron . net4 . io . org>
Organization: Ming Pao Daily News (Canada)
Date: Thu, 19 Dec 1996 14:56:25 GMT
To: firewalls @ greatcircle . com
Distribution: local
References: <9612181902 . AA17303 @ sonic . nmti . com . nmti . com> <m0vaYAN-0004ixC @ lina>
Reply-to: Ambrose Li <acli @ www . mingpaoxpress . com>

In article <m0vaYAN-0004ixC @
 lina>, Bernd Eckenfels <lists @
 lina .
 inka .
 de> wrote:
>
>No not yet. This is partially because it won't be necessary with Mandatory
>Acess control and Posix Priveleges. Ted was working on that. But it is
>fairly easy to protect raw devices writes, module loading and other stuff by
>a bit of securelevel. AFAIK you can make the raw devices immutable...

Are you talking about 2.1 or 2.0? In 2.0 if you try to chattr a raw
device you get some strange behavior happening on the device and then
get an error.

--
Ambrose Li. acli @
 mingpaoxpress .
 com .
  Ming Pao Newspapers (Canada) Ltd., EDP
department. 1355 Huntingwood Drive, Scarborough, Ontario, M1S 3J1, Canada.
Voice +1 416 321 0088 x272 Fax +1 416 321 9663.
                                                My favourite OS has yet no


References:
Indexed By Date Previous: Re: Syn Attack
From: "Caldwell, Matt COLASC" <caldwm @ msgate . ColumbiaSC . NCR . COM>
Next: Re: RADIUS PARAMETERS
From: William Bulley <web @ merit . edu>
Indexed By Thread Previous: Re: Linux as a Firewall Platform
From: lists @ lina . inka . de (Bernd Eckenfels)
Next: Re: Linux as a Firewall Platform
From: Nick Simicich <njs @ scifi . squawk . com>

Google
 
Search Internet Search www.greatcircle.com