LIDS Information/Question

From: Garrett Ellis (garrett.ellis@analexphoenix.com)
Date: 09/21/01


Message-ID: <3BAA8B57.D0F7039A@analexphoenix.com>
Date: Thu, 20 Sep 2001 17:35:35 -0700
From: Garrett Ellis <garrett.ellis@analexphoenix.com>
To: Focus IDS <focus-ids@securityfocus.com>
Subject: LIDS Information/Question


Is anyone experienced with the L.I.D.S. system? I've just applied
version 1.0.14 to kernel 2.4.9 and it seems to be alright. I've found
one questionable "vulnerability" being that you can display "hidden"
files with the shell's command completion. As well if you have the
directory /etc/lids hidden (by default), and you type 'cd /etc/lids/..',
your bash prompt will reflect that you are in the directory /etc/lids/..
rather than /etc.

So far that's all I've found but I'm playing with symlink tricks and
other ideas to see if I can bypass it. If any of you feel like sharing
your experiences with LIDS, please let me know. I'm evaluating this to
be put into production on our machines here and would love to hear what
anyone else thinks about it.

Thanks,
Garrett Ellis



Relevant Pages

  • Re: Module or built in to the kernel ?
    ... keys. ... Here are the my experiences to share with you and future ... I selected each and every option built into kernel. ...
    (comp.os.linux.misc)
  • Re: Module or built in to the kernel ?
    ... keys. ... Here are the my experiences to share with you and future ... I selected each and every option built into kernel. ...
    (comp.os.linux.misc)
  • Re: 2.6.9-mm1
    ... ey, i'd like to see it in the kernel too, i have seen people have ... alot other stuff, so it sure has alot activity, however, not a single ... atleast as marked EXPERIMENTAL, i would rather place my data on reiser4, ... according to my experiences ...
    (Linux-Kernel)
  • input/output-errors?
    ... I just wanted to ask if anyone else experiences this or has infos about ... During the last days some of my machines simply break down. ... Any known bugs in the kernel that might affect these? ...
    (comp.os.linux.security)
  • Re: Development tree, PLEASE?
    ... Though I'm not a kernel developer let me allow to comment this based on ... my experiences as well. ... > with all of the embedded developers, nearly all kernel module developers, ... > everything is changing as if it were an odd numbered dev tree. ...
    (Linux-Kernel)