Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 16 Apr 1999 11:51:16 +0100
From:      Josef Karthauser <joe@pavilion.net>
To:        Amancio Hasty <hasty@rah.star-gate.com>
Cc:        Joe Shevland <J_Shevland@TurnAround.com.au>, Nate Williams <nate@mt.sri.com>, questions@FreeBSD.ORG
Subject:   Re: Apache, Java servlet engine, and Java.
Message-ID:  <19990416115116.B16301@pavilion.net>
In-Reply-To: <19990413163016.A7050@pavilion.net>; from Josef Karthauser on Tue, Apr 13, 1999 at 04:30:16PM %2B0100
References:  <19990412185202.Q88985@pavilion.net> <199904121759.KAA35857@rah.star-gate.com> <19990413163016.A7050@pavilion.net>

next in thread | previous in thread | raw e-mail | index | archive | help
On Tue, Apr 13, 1999 at 04:30:16PM +0100, Josef Karthauser wrote:
> 
> Has anyone any experience of running java servlets in a chrooted/secured
> environment?  I've got a customer who's got a script and wants to be able
> to modify it themselves - it fills me with dread just thinking about
> the security implications :(
> 

If anyone's interested - we've managed to get a chrooted environment setup for our
customer.  It's fairly easy to manage - although a slight hackery is required
because the java command is a shell script, and we didn't want 'sh' available
in the chroot.

If anyone's interested I could detail how we did it - but please don't ask
for the sake of it unless you'd like to take some work off my hands so that
I've got the time to do it :)  (sound familiar to anyone? :)

Joe
-- 
Josef Karthauser	FreeBSD: How many times have you booted today?
Technical Manager	Viagra for your server (http://www.uk.freebsd.org)
Pavilion Internet plc.  [joe@pavilion.net, joe@uk.freebsd.org, joe@tao.org.uk]


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?19990416115116.B16301>