Designing a Secure Linux SystemDesigning a Secure Linux System
The Threat Bruce Schneier’s blog post about the Mariposa Botnet has an interesting discussion in the comments about how to make a secure system [1]. Note that the threat is[...]
The Threat Bruce Schneier’s blog post about the Mariposa Botnet has an interesting discussion in the comments about how to make a secure system [1]. Note that the threat is[...]
The Opera-Mini Dispute I have just read an interesting article about the Opera browser [1]. The article is very critical of Opera-Mini on the iPhone for many reasons – most[...]
I have returned from the US and my SE Linux Play Machine [1] is online again. It was unfortunate that I forgot to pack one of my Play machine shirts,[...]
I’m about to leave for San Francisco, so my SE Linux Play Machine is turned off and will remain off until after I return. Related posts: Lenny Play Machine Online[...]
I have just filed Debian bug report #556644 against the version of openssh-server in Debian/Unstable (Squeeze). Â It has a patch that moves the code to set the SE Linux context[...]
Update: Thanks to Sven Joachim and Andrew Pollock for informing me about /etc/init.d/mountoverflowtmp which exists to mount a tmpfs named overflow if /tmp is full at boot time. It appears[...]
Jetstar has announced some new changes to the way they manage their IT infrastructure [1]. Some parts of it are obvious things that people have been doing (or wanting to[...]
The CK12 project is developing free (CC by SA) textbooks for the K-12 market (with a current focus on the early years of high school) [1]. Their primary aim seems[...]
I predict that over the course of the next 10 years there will be more security problems discovered in Sendmail than in Postfix and Qmail combined. I predict that the[...]
For a long time the use of HTTP cookies [1] for tracking the web browsing habits of users has been well known. But I am not aware of any good[...]