lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Message-ID: <16271.61762.882254.350972@mail.linux-delhi.org> From: raju at linux-delhi.org (Raj Mathur) Subject: Application level firewall >>>>> "Jason" == Jason Freidman <jason.full-disclosure@...pnski.com> writes: Jason> Is there any sort of application level firewall for linux? Jason> Something like Zone alarm where you can trust an Jason> application? I think that openBSD has something that Jason> allows you to choose which system calls a program can run. firestarter.sourceforge.net? Jason> The idea would be to restrict a bind call and connect call Jason> using kernel modules unless the program is in a config Jason> file. It would make it easier (i would think) to lockdown Jason> a computer for outgoing connections as well as add a new Jason> layer of security. -- Raj Mathur raju@...dalaya.org http://kandalaya.org/ GPG: 78D4 FC67 367F 40E2 0DD5 0FEF C968 D0EF CC68 D17F It is the mind that moves