System cracked, a story

Scott Prive scottprive at earthlink.net
Mon May 26 13:02:30 EDT 2003


----- Original Message ----- 
From: "Rich Braun" <richb at pioneer.ci.net>
To: <discuss at blu.org>
Sent: Monday, May 26, 2003 12:46 PM
Subject: Re: System cracked, a story
[snip]
> There is an architectural issue about Linux that I've long wondered about.
> Why hasn't the security model been DRASTICALLY enhanced so as to narrow
the
> scope of what each application can do?  For example, a sendmail program
> doesn't really need root

You can chroot-jail everything... I imagine there are tools or modified
Linux distributions to assist.

Doesn't OpenBSD chroot everything, so almost nothing runs as a root user? I
know very little about OpenBSD but I seem to recall reading this.





More information about the Discuss mailing list