Re: a newbie with the kernel--a few questions

From: Jesper Juhl
Date: Sat Jun 17 2006 - 07:06:10 EST


On 16/06/06, Alistair John Strachan <s0348365@xxxxxxxxxxxx> wrote:
> At 09:12 PM 6/15/2006 -0600, you wrote:
> >OK, I am pretty good with c. My goal here is... Well, when a user types
> > who, I don't want it to work, unless its root. (easy to change) but I
> > want some security like that in the kernel. Also, I want to limit it to
> > when the user types ps, they can't get everyone's processes, but jsut
> > there own, unless of course, they are root.
> >Thanks,

Might also be worth looking at patches like GrSecurity which make general
policy changes (such as these) and are well tested and robust.


Isn't this already doable with SELinux ?

--
Jesper Juhl <jesper.juhl@xxxxxxxxx>
Don't top-post http://www.catb.org/~esr/jargon/html/T/top-post.html
Plain text mails only, please http://www.expita.com/nomime.html
-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/