any one using arkose Sandbox

Discussion in 'all things UNIX' started by mack_guy911, Oct 2, 2012.

Thread Status:
Not open for further replies.
  1. mack_guy911

    mack_guy911 Registered Member

    Joined:
    Mar 21, 2007
    Posts:
    2,677
  2. x942

    x942 Guest

    I've used it before but I couldn't find any whitepapers on it's security so I gave it up. Can anyone vouch for how secure it is? If I have time I may try and audit it with some attacks.
     
  3. Hungry Man

    Hungry Man Registered Member

    Joined:
    May 11, 2011
    Posts:
    9,146
  4. x942

    x942 Guest

    Thanks. Since I know you know linux security really well, would you reccomend using LXC containters or just sticking with good old apparmour?
     
  5. Hungry Man

    Hungry Man Registered Member

    Joined:
    May 11, 2011
    Posts:
    9,146
    LXC containers are like Chroots on steroids. But, like Chroots, they're not meant for security even if they can be easily used for it. Apparmor is made for it, seems safer to me. Containers have advantages but IMO nothing you can't do on your own (you can set up namespaces for applications yourself).

    https://wiki.ubuntu.com/LxcSecurity
     
    Last edited: Oct 6, 2012
  6. LXC is supposed to be fairly secure for limited users, IIRC; but anyone who can gain root access in an LXC container can most likely break out.
     
  7. So is it worth it or not? Security wise I mean.
     
  8. Hungry Man

    Hungry Man Registered Member

    Joined:
    May 11, 2011
    Posts:
    9,146
    I don't think it's worth it yet.
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.