OpenVZ and (gr)security [message #8583] |
Mon, 27 November 2006 19:34 |
dermax
Messages: 5 Registered: November 2006
|
Junior Member |
|
|
Hi,
I'd really like to use OpenVZ productive, but somehow I miss the features of grsecurity, like the ability to disallow users to see _all_ processes running, it's afaik some /proc setting.
My plan is to virtualize a shell server, and of course it's stupid if every customer sees whats running on the VE - so therefore 'top', 'ps aux' should be restricted that the shell users can only see their own processes.
I always achieved that by using grsecurity, but grsec unfortunately doesn't work in combination with OpenVZ
It would be great if someone has an idea to solve this problem.
Thank you!
[Updated on: Mon, 27 November 2006 19:35] Report message to a moderator
|
|
|
|
|
|