[TOOL] RSBAC - Rule Set Based Access Control

From: SecuriTeam (support_at_securiteam.com)
Date: 05/25/05

  • Next message: SecuriTeam: "[TOOL] CVTSA Management Tools"
    To: list@securiteam.com
    Date: 25 May 2005 11:33:23 +0200
    
    

    The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com
    - - promotion

    The SecuriTeam alerts list - Free, Accurate, Independent.

    Get your security news from a reliable source.
    http://www.securiteam.com/mailinglist.html

    - - - - - - - - -

      RSBAC - Rule Set Based Access Control
    ------------------------------------------------------------------------

    SUMMARY

    DETAILS

    RSBAC is a flexible, powerful and fast (low overhead) open source access
    control framework for current Linux kernels, which has been in stable
    production use since January 2000 (version 1.0.9a). All development is
    independent of governments and big companies, and no existing access
    control code has been reused.

    Practically, it allows full fine grained control over objects (files,
    processes, users, devices, etc), memory execution prevention (PaX, NX),
    real time integrated virus detection, and much more.

    Key Features:
     * Free Open Source (GPL) Linux kernel security extension
     * Independent of governments and big companies
     * Several well-known and new security models, e.g. MAC, ACL and RC
     * On-access virus scanning with Dazuko interface
     * Detailed control over individual user and program network accesses
     * Fully access controlled kernel level user management
     * Any combination of security models possible
     * Easily extensible: write your own model for runtime registration
     * Support for latest kernels
     * Stable for production use

    ADDITIONAL INFORMATION

    The information has been provided by <mailto:ao@rsbac.org> Amon Ott.
    To keep updated with the tool visit the project's homepage at:
    <http://www.rsbac.org/> http://www.rsbac.org/

    ========================================

    This bulletin is sent to members of the SecuriTeam mailing list.
    To unsubscribe from the list, send mail with an empty subject line and body to: list-unsubscribe@securiteam.com
    In order to subscribe to the mailing list, simply forward this email to: list-subscribe@securiteam.com

    ====================
    ====================

    DISCLAIMER:
    The information in this bulletin is provided "AS IS" without warranty of any kind.
    In no event shall we be liable for any damages whatsoever including direct, indirect, incidental, consequential, loss of business profits or special damages.


  • Next message: SecuriTeam: "[TOOL] CVTSA Management Tools"

    Relevant Pages

    • [NEWS] HelixPlayer Based Players Format String
      ... Get your security news from a reliable source. ... media player for Linux, Solaris (versions for other operating systems are ... between 0x0822** - 0x082f** and with control of one pointer at a time ... $ An open security advisory #13 - RealPlayer and Helix Player Remote ...
      (Securiteam)
    • Re: why microsoft choose mfc rather than wtl?
      ... to lower security settings, etc. ... For a client to get ... the particular AX control is never accessed, shown, or downloaded. ... unethical to deliver an automobile to customers because it is possible ...
      (microsoft.public.vc.mfc)
    • Re: Linux security
      ... that is in Windows NT-based systems out of the box. ... Why do you want that fine level of control? ... level of control over security?" ... a file system is a different beast altogether. ...
      (Ubuntu)
    • Re: Homeland security suggests Real ID (and now it gets worse!)
      ... Torture Bracelet To Control Dissenting Americans? ... Homeland Security, weapons company express desire to use "Security Bracelet" in law enforcement, crowd control ... Why the terrorists wouldn't just remove the bracelet as soon as they boarded the plane isn't explained, but the perceived fallibility of the device isn't the issue - the heart of the matter is the fact that the Department of Homeland Security has publicly expressed an interest and is seeking funding to utilize the device against the "criminal element". ...
      (alt.support.chronic-pain)
    • RE: [Full-disclosure] RE: [ISN] How To Save The Internet
      ... The point might be better made here that we have many security models ... a box owner may assign so that their access permissions are granted ... the current legal morass over intellectual property is of social value ... Nor is there much up-front discussion for consumers of what they can control, ...
      (Full-Disclosure)