Advertisement
Promo

Desktop platforms Toolkit

Story: Red Hat readies Enterprise Linux 4

  • Previous comment

Posted by: Anonymous (Tuesday 18 January 2005, 9:14 PM)

  • Reply

> SELinux cannot provide any protection against flawed
> software that is running as a root user, according to
> information on Red Hat's Web site.

should probably be:

| RHEL4's default SELinux policy provides complete
| protection for network-facing applications that
| could be running as a root user.
|
| RHEL4's default SELinux policy does not provide any
| protection against arbitrary flawed software that is
| running as a root user, according to information on Red
| Hat's Web site.

Russell Coker, http://www.linuxjournal.com/article/7955 :

> The "targeted" policy which is in Fedora Core 3 and will
> be in Red Hat Enterprise Linux 4 solves this. It restricts
> only the daemons that are at most danger (network
> facing daemons initially but as we progress we will add
> other daemons to the list). This stops quite a number of
> attack vectors while having no restrictions on users
> who login to the system. Of course this means that
> targeted policy doesn't prevent a local user from
> attacking the system, but that is a trade-off that the
> administrator can make for ease of use.

  • Previous comment

  • Reply to this comment
  • Return to story
  • Report this as offensive


Full Talkback thread

Video icon

Video

Win a Creative Zen X-Fi2 player and accessories

Win a Creative Zen X-Fi2 player and accessories

What is ZDNet UK's usual tagline?

Competition closes - 14 Jan 2010

Desktop Management Benchmarking

Test Your Desktop Management Systems

How good are your company's desktop management solutions? How do they compare with those of your peers?

Take two minutes to complete our new Desktop Management and Energy Consumption benchmark, and find out what issues your business needs to focus on.


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters