From owner-freebsd-stable@FreeBSD.ORG Mon Jan 23 17:29:47 2006 Return-Path: X-Original-To: freebsd-stable@freebsd.org Delivered-To: freebsd-stable@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id B1C6C16A41F for ; Mon, 23 Jan 2006 17:29:47 +0000 (GMT) (envelope-from joseph.koshy@gmail.com) Received: from xproxy.gmail.com (xproxy.gmail.com [66.249.82.200]) by mx1.FreeBSD.org (Postfix) with ESMTP id B4EAC43D5E for ; Mon, 23 Jan 2006 17:29:45 +0000 (GMT) (envelope-from joseph.koshy@gmail.com) Received: by xproxy.gmail.com with SMTP id s9so714970wxc for ; Mon, 23 Jan 2006 09:29:44 -0800 (PST) DomainKey-Signature: a=rsa-sha1; q=dns; c=nofws; s=beta; d=gmail.com; h=received:message-id:date:from:to:subject:cc:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:references; b=p/fjE2bU4/6g9QRfD68QJFQ4B7w9a90z/+ywHdsLFtre5FIzN4VlYtAvsoF30PTMyfXx+3kc9xFtVpBZmLxuwyoD5HRHuHfE1lojwRnm7cr+rnv4VBVaxXpEY30zoeRl32Oyy2Jhs96kc3/Vx+M07WPlb4pyMgweVYODWN5iefY= Received: by 10.70.117.3 with SMTP id p3mr6369826wxc; Mon, 23 Jan 2006 09:29:44 -0800 (PST) Received: by 10.70.105.2 with HTTP; Mon, 23 Jan 2006 09:29:44 -0800 (PST) Message-ID: <84dead720601230929y7c94567csadfbed1fa38d1c09@mail.gmail.com> Date: Mon, 23 Jan 2006 22:59:44 +0530 From: Joseph Koshy To: Roger Grosswiler In-Reply-To: <1138034563.2766.6.camel@niobe> MIME-Version: 1.0 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: quoted-printable Content-Disposition: inline References: <1138034563.2766.6.camel@niobe> Cc: freebsd-stable@freebsd.org Subject: Re: how to harden freebsd? X-BeenThere: freebsd-stable@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: Production branch of FreeBSD source code List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 23 Jan 2006 17:29:47 -0000 > i think about jailing some "processes" on a new > freebsd-system. Is there also another way, to harden freebsd > e.g. like selinux? Start here: Mandatory Access Control http://www.freebsd.org/doc/en_US.ISO8859-1/books/handbook/mac.html -- FreeBSD Volunteer, http://people.freebsd.org/~jkoshy