Re: Sandboxing

看板FB_security作者時間19年前 (2006/11/09 18:26), 編輯推噓0(000)
留言0則, 0人參與, 最新討論串8/13 (看更多)
On 09/11/06, Luke Crawford <lsc@prgmr.com> wrote: > jail is the best sandbox FreeBSD has; if that's to heavy, simply run it > setuid to another user that doesn't have permission to anything- it's not > as good of a sandbox, but it's lightweight. > Of course there is another problem with this approach: a different UID isn't allowed to connect to :0.0 on the X server under the FreeBSD default security settings for X. MC _______________________________________________ freebsd-security@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-security To unsubscribe, send any mail to "freebsd-security-unsubscribe@freebsd.org"
文章代碼(AID): #15Km9700 (FB_security)
文章代碼(AID): #15Km9700 (FB_security)