From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from spaceymail-a6.g.dreamhost.com (lax-green-bigip-5.dreamhost.com [208.113.200.5]) by speech.braille.uwo.ca (Postfix) with ESMTP id 426DD10A75 for ; Fri, 19 Sep 2008 17:28:23 -0400 (EDT) Received: from tdsportable (97-118-22-50.hlrn.qwest.net [97.118.22.50]) by spaceymail-a6.g.dreamhost.com (Postfix) with ESMTP id 3D912CA7D0 for ; Fri, 19 Sep 2008 14:28:29 -0700 (PDT) Message-ID: <000901c91a9e$9d232190$4200a8c0@tdsportable> From: "Tyler Littlefield" To: "Speakup is a screen review system for Linux." References: <000801c919bd$e9540200$4200a8c0@tdsportable> <60EC16C3E6284C1F88ED52622355D343@ZEUS> Subject: Re: making secure limitations for non-root users Date: Fri, 19 Sep 2008 15:28:08 -0600 MIME-Version: 1.0 Content-Type: text/plain; format=flowed; charset="iso-8859-1"; reply-type=original Content-Transfer-Encoding: 7bit X-Priority: 3 X-MSMail-Priority: Normal X-Mailer: Microsoft Outlook Express 6.00.2900.3138 X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2900.3198 X-BeenThere: speakup@braille.uwo.ca X-Mailman-Version: 2.1.11 Precedence: list Reply-To: "Speakup is a screen review system for Linux." List-Id: "Speakup is a screen review system for Linux." List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 19 Sep 2008 21:28:23 -0000 hello, the service is going to be a mud based service, there are many muds out there, and people might install patches, etc. Thanks, _|_|_|_|_| _| _|_|_|_| _| _|_|_| _| _|_|_| _| _| _| _|_|_| _| _| _| _| _| _| _| _| _| _|_|_|_| _|_|_| Visit TDS for quality software and website production http://tysdomain.com msn: tyler@tysdomain.com aim: st8amnd2005 skype: st8amnd127 ----- Original Message ----- From: "Tom Moore" To: "'Speakup is a screen review system for Linux.'" Sent: Friday, September 19, 2008 3:14 PM Subject: RE: making secure limitations for non-root users >I don't quite remember the name of a kernel patch that has some things in >it > that will allow you to tighten down your system far better than the normal > kernel when it comes to limiting users. > > First off, you shouldn't allow users to run server type processes unless > you > have too. You should run them, then grant the user access to read log > files > from the processes and such. This is so that you know all services / > processes that are running on your machine. > > Tom > > -----Original Message----- > From: speakup-bounces@braille.uwo.ca > [mailto:speakup-bounces@braille.uwo.ca] > On Behalf Of Tyler Littlefield > Sent: Thursday, September 18, 2008 2:40 PM > To: Speakup is a screen review system for Linux. > Subject: making secure limitations for non-root users > > Hello, > I've got a quick couple of questions: > First, I'd like to allow users to connect and host a mud on my system. > I would, however like to limit them in disk space (I can figure that one > out), in port usage (not sure how to do this one, would like to limit what > ports they can open), programs they can run, and also what they can view > on > the system. > Any ideas? > > > Thanks, > _|_|_|_|_| _| _|_|_|_| > _| _|_|_| _| _|_|_| > _| _| _| _|_|_| _| > _| _| _| _| _| > _| _| _| _|_|_|_| _|_|_| > Visit TDS for quality software and website production > http://tysdomain.com > msn: tyler@tysdomain.com > aim: st8amnd2005 > skype: st8amnd127 > _______________________________________________ > Speakup mailing list > Speakup@braille.uwo.ca > http://speech.braille.uwo.ca/mailman/listinfo/speakup > > _______________________________________________ > Speakup mailing list > Speakup@braille.uwo.ca > http://speech.braille.uwo.ca/mailman/listinfo/speakup > > __________ NOD32 3457 (20080919) Information __________ > > This message was checked by NOD32 antivirus system. > http://www.eset.com > >