All of lore.kernel.org
 help / color / mirror / Atom feed
* Restrict to a fixed Internet domain in a sandbox
@ 2014-01-09 16:37 Victor Porton
  2014-01-09 16:59 ` Victor Porton
  2014-01-09 19:25 ` Stephen Smalley
  0 siblings, 2 replies; 20+ messages in thread
From: Victor Porton @ 2014-01-09 16:37 UTC (permalink / raw)
  To: selinux

I remind that sandbox is implemented in Fedora using SELinux.

It would be useful to restrict sandboxed application to connect only to one, programmatically specified Internet domain (just like Java and JavaScript security).

It seems it is impossible with current SELinux.

Could you add necessary features? Please!

-- 
Victor Porton - http://portonvictor.org

^ permalink raw reply	[flat|nested] 20+ messages in thread

end of thread, other threads:[~2014-01-10 18:53 UTC | newest]

Thread overview: 20+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2014-01-09 16:37 Restrict to a fixed Internet domain in a sandbox Victor Porton
2014-01-09 16:59 ` Victor Porton
2014-01-09 17:03   ` William Roberts
2014-01-09 17:19     ` Victor Porton
2014-01-09 17:34       ` William Roberts
2014-01-09 18:28         ` Victor Porton
2014-01-09 18:59   ` Victor Porton
2014-01-09 19:18     ` Victor Porton
2014-01-09 19:22       ` Victor Porton
2014-01-09 19:25 ` Stephen Smalley
2014-01-09 19:31   ` Victor Porton
2014-01-09 19:34     ` Stephen Smalley
2014-01-09 19:44       ` Victor Porton
2014-01-09 19:58       ` Victor Porton
2014-01-09 20:06         ` Stephen Smalley
2014-01-09 20:14           ` Victor Porton
2014-01-09 20:21             ` Stephen Smalley
2014-01-10 18:41       ` Victor Porton
2014-01-10 18:47         ` Stephen Smalley
2014-01-10 18:53           ` Victor Porton

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.