LinuxQuestions.org
Welcome to the most active Linux Forum on the web.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 04-19-2005, 08:43 AM   #1
ddaas
Member
 
Registered: Oct 2004
Location: Romania
Distribution: Ubuntu server, FreeBsd
Posts: 474

Rep: Reputation: 30
SELinux - common facts


What do you think about SELinux?
Does it really mean a big increase in term of security?
I would like to upgrade from rhel3 to rhel4 and I don't know if SELinux represents a big deal concerning security or it only creates the sensation of security. What do you think?


ddaas
 
Old 04-19-2005, 03:11 PM   #2
Capt_Caveman
Senior Member
 
Registered: Mar 2003
Distribution: Fedora
Posts: 3,658

Rep: Reputation: 69
The default SELinux config in Fedora (and AFAIK in RHL4) is really only a partial implementation of the original SELinux architecture. Currently only a certain number of daemons are using SELinux with a "targeted security policy". Overtime I imagine we'll see a more system-wide implementation. Right now it act as a nice additional layer of security, but I would certainly still advise hardening your system with measures outside of SELinux (I don't ever see it as a total replacement). It will be interesting to see if the LSM module and the kernel hooks themselves become targets in the next step of the "arms race". Along those lines, I'd recommend reading the brief commentary on LSM at the grsecurity site for an alternate perspective.
 
Old 04-20-2005, 04:32 AM   #3
ddaas
Member
 
Registered: Oct 2004
Location: Romania
Distribution: Ubuntu server, FreeBsd
Posts: 474

Original Poster
Rep: Reputation: 30
I've read about LSM at grsecurity and they don't consider it good.
What do you think? Are they right?
Which do you think is better grsecurity or selinux?


I was a litle bit impressed about
Quote:
Demo Systems
One of the best ways to observe the high level of security possible by using SELinux is to visit one of the SELinux demonstration systems provided for public use. Using an SSH client, you can remotely log into a demonstration system as the root user and try to hack your way to escalated privileges. Most likely, you'll completely fail.

One such system is the demonstration system hosted by Gentoo's Hardened Project, described at http://selinux.dev.gentoo.org. Another demonstration system, a Fedora Core system administered by Russell Coker, is described at http://www.coker.com.au/selinux/play.html. Finally, a demonstration system running Debian is described at http://selinux.simplyaquatics.com.
you could log in as root and try to crack the SELinux based Server. That's nice
If no one did it untill now that means that SELinux is real good. But as you say:
Quote:
It will be interesting to see if the LSM module and the kernel hooks themselves become targets in the next step of the "arms race".
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
BOGUS.common.04y -> /home/common/Mailbox jayakrishnan Linux - Networking 0 11-19-2005 04:48 AM
NewsForge: The Facts Behind the "Get the Facts" Ad Campaign XavierP Linux - News 1 07-03-2005 11:20 AM
Get the facts! Windows vs. Linux EThitop General 22 05-12-2004 07:40 PM
Facts on Windows and Linux UltimaGuy General 13 01-08-2004 03:57 PM
Little known facts about the internet #1 davee General 10 08-09-2003 05:00 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 10:34 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration