On Sat, 08 Aug 2009 15:28:10 -0400 Michael Orlitzky <mich...@orlitzky.com> wrote:
> Yiannis wrote: > > Hello, > > > > I am running hardened gentoo with the toolchain provided by the > > xake-toolchain overlay. I am looking for a way to use virtualization > > with my current config. I am aware of linux-vserver project which > > has grsecurity integration, but as far as I remember does not play > > well with rbac. Anyone that has a similar working config? > > I'm using KVM here under a similar setup with few issues. > Occasionally the modules that ship with KVM will get out of sync with > the ones provided by the hardened kernel, but that hasn't caused me > any trouble in a while. And you can always use the modules that ship > with KVM. Can you plz elaborate on your setup? Is host & guest os both using grsec+pax? Are you using the xake-toolchain? Any drawbacks? This seems (to me) that is the most secure solution, and maybe I should consider upgrading my pc.