1 |
On Tue, 15 May 2007 09:21:17 +0200 |
2 |
Etaoin Shrdlu <shrdlu@×××××××××××××.org> wrote: |
3 |
|
4 |
> On Tuesday 15 May 2007 03:57, Dan Farrell wrote: |
5 |
> |
6 |
> > On Tue, 15 May 2007 12:33:22 +1200 |
7 |
> > |
8 |
> > Mark Kirkwood <markir@××××××××××××.nz> wrote: |
9 |
> > > 1/ builds the known needed things into the kernel |
10 |
> > > 2/ disables loadable modules completely |
11 |
> |
12 |
> > But Why? What's the benefit? |
13 |
> |
14 |
> Well, disabling loadable modules is generally considered to be good |
15 |
> for the purpose of hardening your system. For example, some rootkits |
16 |
> use LKMs, and removing loadable modules support might help to prevent |
17 |
> such attacks. |
18 |
|
19 |
Interesting, thanks. I'd never heard of LKM rootkits, although the |
20 |
concept is I suppose a good one, as far as defeating security goes. I |
21 |
must say I'm not going to start worrying about it, but point taken |
22 |
-- |
23 |
gentoo-user@g.o mailing list |