Gentoo Archives: gentoo-user

From: Dan Farrell <dan@×××××××××.cx>
To: gentoo-user@l.g.o
Subject: Re: [gentoo-user] Managing my kernel
Date: Tue, 15 May 2007 19:55:18
Message-Id: 20070515144925.5e6d0d56@pascal.spore.ath.cx
In Reply to: Re: [gentoo-user] Managing my kernel by Etaoin Shrdlu
1 On Tue, 15 May 2007 09:21:17 +0200
2 Etaoin Shrdlu <shrdlu@×××××××××××××.org> wrote:
3
4 > On Tuesday 15 May 2007 03:57, Dan Farrell wrote:
5 >
6 > > On Tue, 15 May 2007 12:33:22 +1200
7 > >
8 > > Mark Kirkwood <markir@××××××××××××.nz> wrote:
9 > > > 1/ builds the known needed things into the kernel
10 > > > 2/ disables loadable modules completely
11 >
12 > > But Why? What's the benefit?
13 >
14 > Well, disabling loadable modules is generally considered to be good
15 > for the purpose of hardening your system. For example, some rootkits
16 > use LKMs, and removing loadable modules support might help to prevent
17 > such attacks.
18
19 Interesting, thanks. I'd never heard of LKM rootkits, although the
20 concept is I suppose a good one, as far as defeating security goes. I
21 must say I'm not going to start worrying about it, but point taken
22 --
23 gentoo-user@g.o mailing list

Replies

Subject Author
Re: [gentoo-user] Managing my kernel "Boyd Stephen Smith Jr." <bss03@××××××××××.net>