About this list Date view Thread view Subject view Author view Attachment view

From: Chris Wright (chris_at_wirex.com)
Date: Wed 31 Oct 2001 - 21:05:00 GMT


* Jacques Gelinas (jack_at_solucorp.qc.ca) wrote:
> On Fri, 26 Oct 2001 00:07:46 -0500, Chris Wright wrote
> > * Kyle Hayes (khayes_at_quicknet.net) wrote:
> > > It is increasingly possible to do things to the kernel and to the system as a
> > > whole through proc interfaces. How can that be controlled?
> >
> > /proc is a filesystem. since lsm easily controls all access to files
> > (and filesystems) this is how you control it. and i'd think it should
> > behave like vserver's sysctl interface.
>
> Does it offers way to limit visibility of files ?

yes.

-chris


About this list Date view Thread view Subject view Author view Attachment view
[Next/Previous Months] [Main vserver Project Homepage] [Howto Subscribe/Unsubscribe] [Paul Sladen's vserver stuff]
Generated on Wed 06 Nov 2002 - 07:03:38 GMT by hypermail 2.1.3