OpenVZ Forum


Home » General » Support » Pureftpd and Linux capabilties
Re: Pureftpd and Linux capabilties [message #44214 is a reply to message #44205] Fri, 25 November 2011 08:24 Go to previous messageGo to previous message
dev is currently offline  dev
Messages: 1693
Registered: September 2005
Location: Moscow
Senior Member

Quote:
Would those capabilities turned on for the container help affect in any way the node, in case the container gets rooted ? In other words, can those extra added capabilities for the container represent a security hole ( for the container and/or node )?


These capabilities represent a security hole for a container, not for the whole node.

Quote:

I'm thinking that even without running OpenVZ, on a normal [ for example ] Ubuntu installation those capabilities are required by the ftp server and people don't panic that much about it.


Well, people typically never panic when they do not know much about it Laughing

I will ask kir@, maybe he will contact pureftpd and get it fixed.


http://static.openvz.org/userbars/openvz-developer.png
 
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Previous Topic: OpenVZ and Fedora 16
Next Topic: passwd for ssh (OpenVZ)
Goto Forum:
  


Current Time: Wed Jul 10 04:26:55 GMT 2024

Total time taken to generate the page: 0.02480 seconds