From owner-freebsd-security@FreeBSD.ORG Thu Nov 9 08:17:35 2006 Return-Path: X-Original-To: freebsd-security@freebsd.org Delivered-To: freebsd-security@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 64B6A16A403 for ; Thu, 9 Nov 2006 08:17:35 +0000 (UTC) (envelope-from artifact.one@googlemail.com) Received: from nz-out-0102.google.com (nz-out-0102.google.com [64.233.162.197]) by mx1.FreeBSD.org (Postfix) with ESMTP id CF05043D60 for ; Thu, 9 Nov 2006 08:17:34 +0000 (GMT) (envelope-from artifact.one@googlemail.com) Received: by nz-out-0102.google.com with SMTP id i11so80608nzh for ; Thu, 09 Nov 2006 00:17:34 -0800 (PST) DomainKey-Signature: a=rsa-sha1; q=dns; c=nofws; s=beta; d=googlemail.com; h=received:message-id:date:from:to:subject:cc:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:references; b=kTigXWngosdqcQIG8f7wXj8NLQf6MBSAx9eopKWYhqK668ViVKSGLhO3+pU1qLzGhn05Sm+n30H9kc1sq6bGb25qYilzRQr27EcllNS5NlBva6iOS9ZPs9rlAL5R/Eh78pNfFMv1ZoFwMX/serDebjTg96K13cbDCENOKMB2nhA= Received: by 10.64.151.17 with SMTP id y17mr745485qbd.1163060253989; Thu, 09 Nov 2006 00:17:33 -0800 (PST) Received: by 10.65.237.20 with HTTP; Thu, 9 Nov 2006 00:17:33 -0800 (PST) Message-ID: <8e96a0b90611090017x5375ed18jf3748c685ce8d2a6@mail.gmail.com> Date: Thu, 9 Nov 2006 08:17:33 +0000 From: "mal content" To: "Luke Crawford" In-Reply-To: MIME-Version: 1.0 Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit Content-Disposition: inline References: <8e96a0b90611080439n558022edj79febf458494ef6e@mail.gmail.com> <8e96a0b90611080441t2b486637ya10acd5a1dd77690@mail.gmail.com> <44irhq6ngd.fsf@be-well.ilk.org> <20061108142306.GA64711@owl.midgard.homeip.net> <8e96a0b90611082359jbc85b37kad6109a0aa87598@mail.gmail.com> Cc: Lowell Gilbert , freebsd-security@freebsd.org Subject: Re: Sandboxing X-BeenThere: freebsd-security@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Security issues \[members-only posting\]" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 09 Nov 2006 08:17:35 -0000 On 09/11/06, Luke Crawford wrote: > > > On Thu, 9 Nov 2006, mal content wrote: > > > Nobody sandboxes on FreeBSD? > > > man jail(8) > A full jail is quite extreme, don't you think? Besides, it'd be tricky to allow a jailed program to write to ~/.mozilla and /tmp. MC