LinuxQuestions.org
Review your favorite Linux distribution.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 09-13-2006, 12:03 PM   #1
exnt
LQ Newbie
 
Registered: Jul 2006
Posts: 3

Rep: Reputation: 0
Controling which processes can run


Hi All,

First post so be gentle

I am looking for a piece of code that will allow me to allow/deny run priviledges for processes.
Basically I have a bunch of machines that do specific tasks and I ONLY want these certain processes to run. When a process request CPU time I would like to filter it against a allow/deny list first. Once I have a known good list on a box I want to deny any other processes from running.

hope this makes sense.

cheers,
exnt
 
Old 09-13-2006, 01:07 PM   #2
unSpawn
Moderator
 
Registered: May 2001
Posts: 29,415
Blog Entries: 55

Rep: Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600
Hello and welcome to LQ, hope you like it here.

I am looking for a piece of code that will allow me to allow/deny run priviledges for processes.
Processes are launched by users. Do you have or expect the boxen to have users that will (try and) launch stuff you don't want to run? If for instance you would have a box whose purpose is shellserver you could add the GRSecurity kernel patch. It can forbid users to launch apps outside the $PATH, deny any socket interaction (client *and* server), etc, etc. My http://www.linuxquestions.org/linux/...larm_for_Linux contains more hints like Systrace.

Any questions: just ask.
 
Old 09-13-2006, 01:52 PM   #3
exnt
LQ Newbie
 
Registered: Jul 2006
Posts: 3

Original Poster
Rep: Reputation: 0
Thanks very much, I will look into the GRSecurity kernel patch.

The machines I am concerned about do not allow user to log on. They are mainly WEB and/or MAIL servers. I already know which prosesses SHOULD be running/allowed to run; I want to know if anything ELSE runs or tries to run, so I can investigate.

exnt
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Run 4-processes concurrently using fork() ugp Programming 1 02-26-2006 08:49 AM
How do I limit the amount of processes a user can run? houler Slackware 26 04-04-2005 08:02 PM
2 kdestart processes run @ login cbradlea Mandriva 14 03-11-2005 06:10 PM
How do I create an user to run processes (ONLY)? eantoranz Linux - Security 4 01-04-2005 07:03 PM
How to get it known all processes run under Linux (kernel 2.4.20-8) ukrainet Linux - Newbie 2 12-01-2004 06:13 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 10:01 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration