[ale] Jails on Linux HOWTO.

Michael B. Trausch mike at trausch.us
Thu Mar 19 21:53:45 EDT 2009


On Thu, 19 Mar 2009 16:09:15 -0400
Bob Toxen <transam at VerySecureLinux.com> wrote:

> Don't forget that root can break out of a chroot jail easily,
> especially if there is command (shell) access.

That's one reason that a BSD-like jail facility would be very nice to
have on a Linux system.

I really have to wonder why there doesn't appear to be such a thing in
the mainline kernel (and with widespread userland support).  I rather
like FreeBSD jails and would love to use something like them as a
lightweight VM (even lighter than UML).

	--- Mike

-- 
My sigfile ran away and is on hiatus.
http://www.trausch.us/
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 197 bytes
Desc: not available
Url : http://mail.ale.org/pipermail/ale/attachments/20090319/7dbc40c8/attachment.bin 


More information about the Ale mailing list