View previous topic :: View next topic |
Author |
Message |
tengu n00b
Joined: 19 Nov 2007 Posts: 10 Location: switzerland
|
Posted: Mon Nov 19, 2007 3:04 pm Post subject: [grsec & PaX] - Howto? |
|
|
Hello!
As I can't post in "Networking & Security" [don't ask why.. I don't know], I'm posting here, as grsec and pax touch kernel things too ^^.
I'd like to configure two laptops for firewalling and users application :
laptop 1 : firewalling
Problems : I'd like to set up some security as it's for firewalling purpose, such as overflow limits and so on. But... well.. i'm a nob for those things. I've changed profile to hardened, installed hardened-sources [stables], installed paxctl, gradm... yeah, fine. but I don't absolutely know how to set it up. I found some doc here : http://www.gentoo.org/proj/en/hardened/grsecurity.xml but seems chpax is deprecated [and it doesn't have any initscript as written in this doc].
-> Question : can someone give me either howto, or examples ?
laptop2 : users application
I'd like to authorize only screen, scp and irssi on this laptop. I set up profile hardened, with hardened-soruces [stable]... but in fact, how can I limit users' access to programmes ? How can I prevent usres to go anywhere in my tree? I'd like to block them in their home.. or something like that.
-> Question : can someone give me either howto or examples ?
Thanks in advance!
And sorry for posting in this part, but as I said... I just can't post in the good one.. So if a moderator could send this one in Networking & Security, and check why I can't post in this part... thanks
See you ! |
|
Back to top |
|
|
linuxtuxhellsinki l33t
Joined: 15 Nov 2004 Posts: 700 Location: Hellsinki
|
Posted: Mon Nov 19, 2007 3:25 pm Post subject: Re: [grsec & PaX] - Howto? |
|
|
tengu wrote: | Hello!
As I can't post in "Networking & Security" [don't ask why.. I don't know], I'm posting here, as grsec and pax touch kernel things too ^^.
-> Question : can someone give me either howto, or examples ?
|
You'd check if you've some messages in your box (like if you're accidentally banned from Netw.&Sec.) or send message to moderator.
And here are few links to documentation.
http://www.gentoo.org/proj/en/hardened/pax-quickstart.xml
http://www.gentoo.org/proj/en/hardened/grsecurity.xml _________________ 1st use 'Search' & lastly add [Solved] to
the subject of your first post in the thread. |
|
Back to top |
|
|
tengu n00b
Joined: 19 Nov 2007 Posts: 10 Location: switzerland
|
Posted: Mon Nov 19, 2007 3:58 pm Post subject: |
|
|
Hello!
thanks for second links, as first one was already known [and it's outdated in fact, as chpax isn't used anymore on recent gentoo systems...]
I'll send a message to moderators for my problem. I don't thing I'm already banned from this forum, as it's my first time posting on it :->. But it's not really the purpose of my post
If you have some other links... please share them
See you! |
|
Back to top |
|
|
|
|
You cannot post new topics in this forum You cannot reply to topics in this forum You cannot edit your posts in this forum You cannot delete your posts in this forum You cannot vote in polls in this forum
|
|