LinuxQuestions.org
Review your favorite Linux distribution.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 02-18-2023, 04:38 AM   #16
zeebra
Senior Member
 
Registered: Dec 2011
Distribution: Slackware
Posts: 1,832

Original Poster
Blog Entries: 17

Rep: Reputation: 638Reputation: 638Reputation: 638Reputation: 638Reputation: 638Reputation: 638

Quote:
Originally Posted by rnturn View Post
Maybe, with some work, this could be a blog post on LQ?
Hmm, I did post some related things a while back as a blog post:
https://www.linuxquestions.org/quest...to-self-38348/

And recently I added a part 2:
https://www.linuxquestions.org/quest...riences-38894/

If it is of any interest.
 
Old 02-18-2023, 04:44 AM   #17
zeebra
Senior Member
 
Registered: Dec 2011
Distribution: Slackware
Posts: 1,832

Original Poster
Blog Entries: 17

Rep: Reputation: 638Reputation: 638Reputation: 638Reputation: 638Reputation: 638Reputation: 638
Quote:
Originally Posted by devafree View Post
I decided to go with Tomoyo 2.6.x LSM, and later play with what I said above.

Thanks!
Nice!

I'm just about ready to experiment with SELinux on Slackware 15.0 and document the process and perhaps write some howto about it eventually. But it's a big commitment of effort and time, so I still have to brave up a little.

I'm as you guess using Tomoyo 2.6 meanwhile, and I will continue to use it. But I'm hoping the previous poster is wrong in saying the LSM are not stackable, because that is contrary to the information from Tomoyo website which states since 2.6, specifically Tomoyo is stackable. Plus there is information online suggesting in the future other major LSM will be stackable as well. Perhaps based on the works of Tomoyo making it stackable with other major LSM's?

Last edited by zeebra; 02-18-2023 at 04:54 AM.
 
Old 02-18-2023, 04:53 AM   #18
zeebra
Senior Member
 
Registered: Dec 2011
Distribution: Slackware
Posts: 1,832

Original Poster
Blog Entries: 17

Rep: Reputation: 638Reputation: 638Reputation: 638Reputation: 638Reputation: 638Reputation: 638
Quote:
Originally Posted by devafree View Post
Why I am interested in a kernel space Mandatory Access Control (MAC) Linux Security Module like Tomoyo:-
  1. Enforce security policies.
  2. Follow least privilege rule for as many system processes as possible.
  3. It is a requirement in data security certification with external audits.
  4. In my case, we want to get formally compliant with PCI DSS (Payment Card Industry Data Security Standard) and as a part of that, we adopted other standards internally, such as CIS' benchmarks (Center for Internet Security). CIS provided a security benchmark for Slackware 10.4, which is now archived. The current document we follow is CIS_Distribution_Independent_Linux_Benchmark_v1.1.0-2019, which mandates an approved mainline LSM enforcement.
  5. I want to use Slackware 15 in Linode.


Thanks!
I think also for alot of people, two late sections in the Tomoyo manual might be particularly interesting:
Reinforced authentication (SSH):
https://tomoyo.osdn.jp/2.6/chapter-12.html.en
Securing Apache with mod_tomoyo module:
https://tomoyo.osdn.jp/2.6/chapter-13.html.en

Either as use case examples or specific often used scenarios where it might be particularly interesting to a wide range of users. Meaning for example that you might use Tomoyo for ONLY such a thing, and nothing else, or whatever preference one might have.
 
Old 02-24-2023, 11:45 PM   #19
Trihexagonal
Member
 
Registered: Jul 2017
Posts: 362
Blog Entries: 1

Rep: Reputation: 334Reputation: 334Reputation: 334Reputation: 334
I was going to post about this several months ago but decided not to, having had limited posting privileges here for some time.

But here ya go, from the Kali Linux 2022.4 box I'm using now:

Code:
[    0.187456] LSM: Security Framework initializing
[    0.187474] Yama: disabled by default; enable with sysctl kernel.yama.*
[    0.187524] AppArmor: AppArmor initialized
[    0.187527] TOMOYO Linux initialized
 
2 members found this post helpful.
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
(OpEd) Why you should not use sshd (directly), and what you should use sundialsvcs Linux - Security 3 09-11-2016 04:33 AM
Tomoyo Linux? Novatian Linux - Newbie 2 02-01-2012 09:14 AM
Tomoyo in Squeeze - where do I start? Chriswaterguy Debian 2 08-10-2011 05:26 PM
Tomoyo on Slackware? Josh000 Slackware 3 02-26-2011 04:26 AM
TOMOYO Linux - anyone know of good book / guide / howto? spoovy Linux - Security 2 10-19-2010 05:11 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 05:04 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration