OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
[suse-security] Security enhancements with Chrooted Apache?

From: Kai Pfeiffer (pfeiffer.kaigmx.net)
Date: Tue Feb 15 2005 - 05:19:11 CST


Hello list,

I compiled Apache 2.xx with PHP5 from the sources into a chroot environment.
The only executables in this chroot-cage is bash and the apache-daemon. Only
the necessary libs are in the cage.

The hole chroot-tree is on an iso-image and only the partitiones needed for
var and tmp mounted noexec.

I want to know if there are any worries about this configuration. e.g. could
anybody escape out of this cage, if he cracked apache?

Thanx

Kai

--
Check the headers for your unsubscription address
For additional commands, e-mail: suse-security-helpsuse.com
Security-related bug reports go to securitysuse.de, not here