low ports, and root

Kezdőlap
Csatolmányok:
Üzenet email-ben
+ (text/plain)
Üzenet törlése
Válasz az üzenetre
Szerző: Liberty Young
Dátum:  
Tárgy: low ports, and root
On Sat, 2003-11-22 at 17:02, Entelin wrote:
> Is their a way, or plans (that anyone knows of) to have access control
> on low ports? I think it would be great to be able to specify which
> ports would be allowed for which users and so fourth rather than just
> having all low port be bindable only by root. This would make it easier
> to run many servers as users rather than root. Rather than all of the
> many ways people have come up with to help increase security in such
> situations, chroot, drop root after bind, etc etc.


Please read Kernel Traffic # 236, item #5: Kernel Port-Availability
Security Suggestion
http://kt.zork.net/kernel-traffic/kt20031026_236.html

A good discussion by the professionals already discussed this.