WatchGuard (www.watchguard.com) makes a product (which is an lkm itself)
called ServerLock which prevents this sort of thing (touching the kernel
at all in a potentially-hazardous way, really) as well as placing
additional restrictions on filesystem write accesses. I've used it a
bit and it seems to be pretty decent, althought it does not co-exist
with Veritas filesystem at all without causing *Major* problems.
Hal Flynn wrote:
> So, my question is, what are you doing to prevent the loading of kernel
--
/*
*
* Matt Harris - Senior UNIX Systems Engineer
* Smithsonian Institution, OCIO
*
*/
Received on Mon Mar 10 14:17:52 2003
This archive was generated by hypermail 2.1.8
: Wed Aug 23 2006 - 14:01:37 EDT
|