Mailinglist Archive: opensuse-security (685 mails)

< Previous Next >
Re:[suse-security] SuSEfirewall2 and LIDS
>My server hosts only Squid and is a firewall router....
>Shall I upgrade my kernel?
>

Think, it should by possible to compromise squid and so it seems to
be a good idea to increase security measures 4 case of intrusion.

By the way - try to put squid in a chroot-jail and bind the service
only against your internal interface. You my want to cascade
squid with ijb (http://www.junkbusters.com/ijb.html) so squid
will only accept localhost and you've a further layer.

Michael Appeldorn





< Previous Next >
This Thread
  • No further messages