You are not logged in.

#1 2009-08-03 18:24:18

brian
Member
Registered: 2009-08-03
Posts: 16

TOMOYO 1.x mandatory access control

I made some AUR packages related to TOMOYO 1.x, a patch providing mandatory access control:
http://aur.archlinux.org/packages.php?ID=28943  kernel26-tomoyo
http://aur.archlinux.org/packages.php?ID=28980  ccs-tools

The idea is just to tell the kernel what an application is allowed to do: what files it is allowed to read, where it is allowed to write, what network addresses it can connect to, etc.

If you need to run server software that you don't trust, or worry about being hacked through client side holes like the recent flash plugin problem, you might find this stuff useful.

Please try the packages out and help me find mistakes in the PKGBUILDs, etc. Thanks.

Offline

#2 2009-08-03 23:18:38

brian
Member
Registered: 2009-08-03
Posts: 16

Re: TOMOYO 1.x mandatory access control

I forgot to say that kernel26-tomoyo is just the stock Arch kernel26 kernel with the TOMOYO patch applied and minimal config changes.

Offline

Board footer

Powered by FluxBB