| lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
|
Open Source and information security mailing list archives
| ||
|
Message-ID: <16271.61762.882254.350972@mail.linux-delhi.org>
From: raju at linux-delhi.org (Raj Mathur)
Subject: Application level firewall
>>>>> "Jason" == Jason Freidman <jason.full-disclosure@...pnski.com> writes:
Jason> Is there any sort of application level firewall for linux?
Jason> Something like Zone alarm where you can trust an
Jason> application? I think that openBSD has something that
Jason> allows you to choose which system calls a program can run.
firestarter.sourceforge.net?
Jason> The idea would be to restrict a bind call and connect call
Jason> using kernel modules unless the program is in a config
Jason> file. It would make it easier (i would think) to lockdown
Jason> a computer for outgoing connections as well as add a new
Jason> layer of security.
--
Raj Mathur raju@...dalaya.org http://kandalaya.org/
GPG: 78D4 FC67 367F 40E2 0DD5 0FEF C968 D0EF CC68 D17F
It is the mind that moves