[prev in list] [next in list] [prev in thread] [next in thread] 

List:       firewall-wizards
Subject:    Re: [fw-wiz] VM system for firewall use
From:       ArkanoiD <ark () eltex ! net>
Date:       2004-10-12 10:15:36
Message-ID: 20041012141536.A15416 () eltex ! net
[Download RAW message or body]

nuqneH,

Do you think Xen/TrustedBSD combo is viable solution or there is no good
reason to build such a monster?

On Mon, Oct 11, 2004 at 04:31:41PM -0400, Paul D. Robertson wrote:
> 
> RSBAC, SE Linux, or TrustedBSD if it's far enough along.  MAC compartments
> are really nice for things like this, but jails aren't all that bad, the
> jail should result in a different process address space if you're using a
> different ID, shouldn't it- unless you're worried about the same kernel
> address space-  if so, UML has to be run on a kernel with SKAS enabled to
> negate that.

_______________________________________________
firewall-wizards mailing list
firewall-wizards@honor.icsalabs.com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards
[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic