4 ms·
Could the os restrict a range of ports to a non-root user? That would cover your concerns, wouldn't it?
by benob 4y ago
Could the os restrict a range of ports to a non-root user?
That would cover your concerns, wouldn't it?
- INTPenis 4y agoThey did, it's called 1025-65535. This is literally ancient tech. There are more modern (and perhaps more granular) ways to do it today with cgroups and nftables I'm sure. I myself am an avid SElinux user and I know for sure you can restrict ports to user roles there.
- BossingAround 4y agoWhat resources did you use to get into SELinux? I am an SELinux user, but it's more like "I can debug it and make it work without turning it off".
- INTPenis 4y agoI have the book SElinux by example which is still very relevant. But these days I'd say you can get all the same info online[1]. 1. https://github.com/SELinuxProject/selinux-notebook https://github.com/SELinuxProject/selinux-notebook