Skip to Content.
Sympa Menu

cacert-sysadm - Re: [Cacert-sysadm] Objections to a possible setup

cacert-sysadm AT lists.cacert.org

Subject: CAcert System Admins discussion list

List archive

Re: [Cacert-sysadm] Objections to a possible setup


Chronological Thread 
  • From: Philipp Gühring <pg AT futureware.at>
  • To: cacert-sysadm AT lists.cacert.org
  • Cc: Sam Johnston <samj AT samj.net>, Mendel Mobach <cacert AT leercoden.nl>
  • Subject: Re: [Cacert-sysadm] Objections to a possible setup
  • Date: Thu, 02 Apr 2009 00:43:44 +0200

Hi,

> The advantage of vservers compared to most other virtualisation
> technology I have seen so far is that it automatically limits the
> syscalls to those that are actually needed for server services. (e.g.
> services don't need to reconfigure the network)
> AppArmor goes even further, and we should take a look at it to
> additionally protect our services with it. (But AppArmor isn't a
> virtualisation technology)

I recently heard about SoftGrid, which possibly also virtualises and
limits the applications, but SoftGrid is primarily for user GUI
applications, not for services. (And it's Win32 only, as far as I think)

Best regards,
Philipp




Archive powered by MHonArc 2.6.16.

Top of Page