Skip site navigation (1)Skip section navigation (2)
Date:      Sat, 09 Jul 2011 15:39:07 -0700
From:      Doug Barton <dougb@FreeBSD.org>
To:        freebsd-hackers@freebsd.org
Subject:   Re: Capsicum project: Ideas needed
Message-ID:  <4E18D88B.4060805@FreeBSD.org>
In-Reply-To: <4E186B89.8080003@FreeBSD.org>
References:  <4E167C94.70300@kibab.com> <iv6ss5$1h5$1@dough.gmane.org> <4E186B89.8080003@FreeBSD.org>

next in thread | previous in thread | raw e-mail | index | archive | help
On 07/09/2011 07:54, Gabor Kovesdan wrote:
> Anyway, consider sendmail and BIND. I think these are important enough
> to get some more protection.

What additional protection could capsicum offer beyond chroot'ing?
(That's not a snark, I don't quite understand all the moving parts here.)


Doug

-- 

	Nothin' ever doesn't change, but nothin' changes much.
			-- OK Go

	Breadth of IT experience, and depth of knowledge in the DNS.
	Yours for the right price.  :)  http://SupersetSolutions.com/




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?4E18D88B.4060805>