> I am not sure that it is a good idea to mess around sys_connect() or any > one want to put such restriction on their computer. I don't see amy > problem for the people who just use applications on their computers > though. Any suggestion? Most systems do this by role based security. You might want to have a look at the LSM patch and the NSA security module, as well perhaps at the RSBAC security project. The LSM and NSA modules can I suspect not only deal with connect based cases but a lot more - To unsubscribe from this list: send the line "unsubscribe linux-kernel" in the body of a message to majordomo _at_ vger.kernel.org More majordomo info at http://vger.kernel.org/majordomo-info.html Please read the FAQ at http://www.tux.org/lkml/
References:
- Unauthorized connection blocking withing socketSenhua Tao <stao _at_ nbnet.nb.ca>
- Prev by Date: [PATCH][RFC] unchecked request_region's in drivers/net
- Next by Date: Re: [2.4.17/18pre] VM and swap - it's really unusable
- Previous by thread: Unauthorized connection blocking withing socket
- Next by thread: Re: Unauthorized connection blocking withing socket
- Indexes:[Main][Thread]