On TechRepublic: Five super-secret features in Windows 7
BNET Business Network:
BNET
TechRepublic
ZDNet
TalkBack 9 of 54:
Next »
« Previous
Redundancy IS security.
Standard Linux depends on the classic root model.
Linux is secure, but security isn't really a "yes" or "no" quality. There are different levels of security, just like Fort Knox is more secure than the vault at your local bank.

With computers, you want to add additional layers of security so that if one fails (due to a bug, mistake in configuration, or other security hole) you have more to fall back on.

A properly configured Linux system with patched software is secure. To make it more secure you add a firewall with IPtables. To make it even more secure you put rules in /etc/hosts.allow. You can add a fourth level of security with a hardware firewall, etc. To make it even more secure you limit the access points (lock physical access, turn off secure shell daemons, etc.).

With traditional Linux, root has absolute power. If someone defeats all of your layers of security, and obtains root, he "owns" your box. SELinux was designed to add an additional level of security by selectively limiting the powers of root.

Is it redundant? Yes. That's why it makes things more secure. And "more secure" is what they want, because they are going for a security level (4) rather than a "yes or no" security rating.
Posted by: mobrien_12@...   Posted on: 10/20/04 You are currently: a Guest | Members login | Terms of Use

Alert moderator to an offensive message

Subscribe to this discussion via Email or RSS

So Bit..  Jeff Spicoli | 10/20/04
They are not using Trustworthy Computing?  theo_durcan | 10/20/04
Because Trusted Computing is untrustworthy.  Root User | 10/20/04
hit the nail on the head  V Sanders | 10/21/04
Now THAT's an oxy-moron :-))))'s  kensys | 10/21/04
Won't be long  htotten | 10/20/04
Dept of Redundancy Department  ejhonda | 10/20/04
Security depends on the threat.  Root User | 10/20/04
Redundancy IS security.  mobrien_12@... | 10/20/04
Secure Linux = Oxymoron (NT)  Loverock Davidson | 10/20/04
Loverock = straight up moron  Jeff Spicoli | 10/20/04
Translation: Loverock just escaped from the hospital. (NT)  Vily Clay | 10/20/04
secure linux  FilledOut | 10/20/04
You must be joking.  mobrien_12@... | 10/20/04
No  Linux User 147560 | 10/20/04
keep it in house  htotten | 10/20/04
Precisely  mobrien_12@... | 10/20/04
They answer to the same boss in the  Linux User 147560 | 10/20/04
RTFS  htotten | 10/20/04
Yes and that  Linux User 147560 | 10/20/04
okay, walk in and ask for it  FilledOut | 10/20/04
Source availability  Yagotta B. Kidding | 10/20/04
SELinux  Roger Ramjet | 10/21/04
We'll Special K  FilledOut | 10/22/04
Many OSs (Windows, Solaris, HP-UX) on EAL 4 list  asky | 10/20/04
... and maybe, some day Linux  Anton Philidor | 10/20/04
Are you saying  Linux User 147560 | 10/20/04
EAL4  htotten | 10/20/04
A true advantage to knowing Linux.  Anton Philidor | 10/20/04
almost the same can be said for your beloved MS  Monkey_MCSE | 10/20/04
Using imagination  Anton Philidor | 10/20/04
Not much different  Linux User 147560 | 10/20/04
not to mention that SuSe Linux is already at level 3.  Monkey_MCSE | 10/20/04
i wouldn't say employee  Monkey_MCSE | 10/20/04
Early next year  Yagotta B. Kidding | 10/20/04
With all the resources being pumped into Linux by major governments ...  George Mitchell | 10/20/04
Exactly what does it take to get this rating?  mobrien_12@... | 10/20/04
Hopefully the buyers know  asky | 10/20/04
looks like government are trying to get away from  V Sanders | 10/21/04
If you noticed...  rapson | 10/21/04
are you saying  V Sanders | 10/21/04
Nope  rapson | 10/21/04
lol  V Sanders | 10/21/04
Hmmm  rapson | 10/21/04
you are right, gee silly me  V Sanders | 10/21/04
Why not Solaris x86?  Roger Ramjet | 10/21/04
good question  geekmule | 10/21/04
The usual crowd, the usual rants.  Linux_Developer | 10/21/04
Filled?  rapson | 10/21/04
here you are defending ms again  V Sanders | 10/21/04
Defending?  rapson | 10/21/04
It?s easier to say that somebody is bad than to show your good (NT)  Vily Clay | 10/21/04
Thanks for a very ?valuable? comment. Anything else? (NT)  Vily Clay | 10/21/04
"Minds can move mountains, but not closed minds  kensys | 10/21/04

What do you think?

SponsoredWhite Papers, Webcasts, and Downloads

advertisement
advertisement
Click Here

Meet Doc