UidSEC LSM
This module extends the standard UN*X "resource protection" model adding
some features useful for untrusted multiuser systems 

Current features
  * Deny usage of dmesg to unprivileged users 
  * Hide processes of "other users" to unprivileged users (example: sam
    can only see his processes during a 'top' or a 'ps aux') 
  * Deny access to /sys and /config to unprivileged users 
  * Protect usage of bind() syscall using UidBIND 
  * Assign a group that can use dmesg and see all system processes


Download url: http://projects.unbit.it/uidsec/

Patch against 2.6.22 will follow in the next few days

Thanks for testing it

-- 
Roberto De Ioris
http://unbit.it
JID: [EMAIL PROTECTED]

-
To unsubscribe from this list: send the line "unsubscribe 
linux-security-module" in
the body of a message to [EMAIL PROTECTED]
More majordomo info at  http://vger.kernel.org/majordomo-info.html

Reply via email to