Hello Barry.
BB> My server was hacked and trashed, so if you emailed me, thanks but
BB> as yet I haven't got email up (it effected email and web services
BB> for both here and work so my boss is pissed at me as well!) it's
BB> taken 5 days to get a new linux install done and IP forwarding to
BB> this computer running again, no web services as yet and there will
BB> probably be no FTP server running from now on.
Though I don't run Linux, I see where some folks increase the security of
various critical servers (like DNS, SMTP, etc.) by some moderately complex
process of running them "in jail".
As I understand it, users are set up that own the various processes and
their files and are give fake root directories with the chroot command, or
some variation thereof. An intruder cannot get past the fake root into the
actual system, or so I'm told.
Have you considered something like this?
Best regards,
Marc
--- timEd/2 1.10.y2k+
* Origin: Sursum Corda! BBS New Orleans 1-504-897-6006 USR33k6 (1:396/45)
SEEN-BY: 633/267 270
@PATH: 396/45 106/2000 633/267
|