From owner-freebsd-questions Tue Feb 24 10:58:00 1998 Return-Path: Received: (from majordom@localhost) by hub.freebsd.org (8.8.8/8.8.8) id KAA16247 for freebsd-questions-outgoing; Tue, 24 Feb 1998 10:58:00 -0800 (PST) (envelope-from owner-freebsd-questions@FreeBSD.ORG) Received: from dmz.shikahr.com.inter.net (qSWniJz71Rorab8k/Yu2YVxZwUmS3nww@dmz.shikahr.com.inter.net [38.153.225.2]) by hub.freebsd.org (8.8.8/8.8.8) with SMTP id KAA16224 for ; Tue, 24 Feb 1998 10:57:48 -0800 (PST) (envelope-from fbsd@shikahr.com.inter.net) Received: from tuvela.shikahr.com.inter.net [192.168.0.1] by dmz.shikahr.com.inter.net with smtp id 0y7PQJ-00009q-00; Tue, 24 Feb 1998 12:49:47 -0600 Received: from (tuvela) [127.0.0.1] by tuvela.shikahr.com.inter.net with esmtp id 0y7PQJ-000551-00; Tue, 24 Feb 1998 12:49:47 -0600 To: freebsd-questions@FreeBSD.ORG Subject: Phrack 52 kernel hardening Date: Tue, 24 Feb 1998 12:49:47 -0600 From: Randall Raemon Message-Id: Sender: owner-freebsd-questions@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.ORG The recent issue of Phrack has two articles on hardening Linux kernels, mentioning things like changing permissions on /proc, having a trusted execution path, making stack code difficult to execute (buffer overruns), and distributing some root facilities out to specific group-id's. Has anybody looked into these for use in FreeBSD? -- Randall Raemon fbsd@shikahr.com.inter.net To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-questions" in the body of the message