Gentoo Logo
Gentoo Spaceship




Note: Due to technical difficulties, the Archives are currently not up to date. GMANE provides an alternative service for most mailing lists.
c.f. bug 424647
List Archive: gentoo-hardened
Navigation:
Lists: gentoo-hardened: < Prev By Thread Next > < Prev By Date Next >
Headers:
To: gentoo-hardened@g.o
From: petre rodan <kaiowas@g.o>
Subject: Re: Will perl or php scripts run in enforcing mode in the hardened gentoo environment "out of the box?"
Date: Tue, 12 Apr 2005 09:58:28 +0300
I did reply to your question a few hours back :/

Jon Howard wrote:
> Hello,
>   I have a Gentoo SE system up and running as per the handbook(X86),
> but I cannot get apache to execute cgi's in enforcing mode(the test ones
> that come with apache).  The scripts do work in permissive.   Before I
> got started in examing the apache.te file, I was wondering if I might
> have an apache configuration issue.  I guess the first question that I
> have is whether perl or php scripts run in enforcing mode in the
> hardened gentoo environment "out of the box?"  I installed the perl and
> php mods for apache, and changed the startup to include the -D option
> for these, but in studying the SE model, I was afraid that some other
> method for executing scripts might be in play.   I removed the mods from
> the -D statup option, but I am still getting the same results.  So, will
> it or won't it is my question.

won't is the short answer. the long answer has been in your inbox when you wrote to the list.
the short conclusion is that some cgi scripts need a kitchen sink to be allowed. it's up to the user to allow it or not.

> Thanks,
> Jon Howard


-- 
petre rodan
<kaiowas@g.o>
Developer,
Hardened Gentoo Linux
Attachment:
signature.asc (OpenPGP digital signature)
Replies:
Re: Will perl or php scripts run in enforcing mode in the hardened gentoo environment "out of the box?"
-- Joshua Brindle
References:
Will perl or php scripts run in enforcing mode in the hardened gentoo environment "out of the box?"
-- Jon Howard
Navigation:
Lists: gentoo-hardened: < Prev By Thread Next > < Prev By Date Next >
Previous by thread:
Will perl or php scripts run in enforcing mode in the hardened gentoo environment "out of the box?"
Next by thread:
Re: Will perl or php scripts run in enforcing mode in the hardened gentoo environment "out of the box?"
Previous by date:
Hardened-Dev-Sources (2.6.11) Netfilter issue
Next by date:
Re: Will perl or php scripts run in enforcing mode in the hardened gentoo environment "out of the box?"


Updated Jun 17, 2009

Summary: Archive of the gentoo-hardened mailing list.

Donate to support our development efforts.

Copyright 2001-2013 Gentoo Foundation, Inc. Questions, Comments? Contact us.