View previous topic :: View next topic |
Author |
Message |
[ToXiC] n00b
![n00b n00b](/images/ranks/rank_rect_0.gif)
Joined: 29 Jul 2003 Posts: 46 Location: Fresno, CA
|
Posted: Fri Sep 26, 2003 6:17 am Post subject: Kernel 2.4.22 with Grsecurity |
|
|
When implementing Kernel 2.4.22 with Grsecurity with the option “High” what errors would I find, if any, with Apache 2 or BIND?
Would I encounter any issues with any other applications? If so, what ones?
-[ToXiC] |
|
Back to top |
|
![](templates/gentoo/images/spacer.gif) |
siti Tux's lil' helper
![Tux's lil' helper Tux's lil' helper](/images/ranks/rank_rect_1.gif)
![](images/avatars/756985943f0e6d070cab1.png)
Joined: 05 May 2003 Posts: 118 Location: Canterbury, New Zealand
|
Posted: Fri Sep 26, 2003 10:17 am Post subject: |
|
|
It should work find. I have my security settings set to custom with most things turned on. As this comp is mainly desktop I do get the occasional problem due to pax with compiling some packages (glibc, I needed to use the acl system to stop pax working on /var/tmp/portage). Also problems with programs like wine, java, X+ etc. But these are easily fixed with the chpax util.
So I guess if you are not running X or any emulators etc. Ie this comp is a dedicated server then everything should run fine. But if you see pax killing bind or apache then you could use chpax to stop it. But I think it should work ok. |
|
Back to top |
|
![](templates/gentoo/images/spacer.gif) |
jondkent Apprentice
![Apprentice Apprentice](/images/ranks/rank_rect_2.gif)
![](images/avatars/8304564283ed8ee0d8d52b.jpg)
Joined: 26 Jul 2002 Posts: 289 Location: London
|
Posted: Fri Sep 26, 2003 12:51 pm Post subject: |
|
|
Just as a matter of interest, why are you planning on using the high setting, many things break when you set GR to high? Unless your in a DMZ or something its probably over kill to use high.
My 2 cents
Jon |
|
Back to top |
|
![](templates/gentoo/images/spacer.gif) |
[ToXiC] n00b
![n00b n00b](/images/ranks/rank_rect_0.gif)
Joined: 29 Jul 2003 Posts: 46 Location: Fresno, CA
|
Posted: Fri Sep 26, 2003 1:59 pm Post subject: |
|
|
I am using High because of paranoia. This is machine is to be a server and having every security advantage over anyone (attackers) is important.
Thanks for your input jondkent and siti.
-[ToXiC] |
|
Back to top |
|
![](templates/gentoo/images/spacer.gif) |
|