Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [thread-next>] [day] [month] [year] [list]
Date: Sun, 12 Aug 2012 21:54:35 +0400
From: Vasily Kulikov <>
Subject: protected_{symlinks,hardlinks,fifos}


The patch implementing protected_{symlinks,hardlinks} was backported from the
upstream kernel.  Almost the same way protected_fifos was implemented (ala
HARDEN_FIFO).  They work well.

The question here is -- what defaults should be for OpenVZ containers:
on, off, or inherit CT0's value?

My opinion is default on, the same with CT0 (which runs Owl).


Powered by blists - more mailing lists

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.