On Wed, Jul 15, 2009 at 9:21 AM, Anton Karpov<toxah...@gmail.com> wrote: > According to Provos's blog, > http://www.provos.org/index.php?/archives/34-Evading-System-Sandbox-Containme nt.html > > "The initial prototype of Systrace as described in the paper avoided this > problem by using a look-aside buffer in the kernel. This imposes a slight > performance penalty but I hope that this obvious solution is going to be > included in the OpenBSD and NetBSD kernel soon." > > But we have no idea about was this solution included into OpenBSD sources > tree or not...
Anyone got any thoughts on how hard implimenting said look aside buffer would be? Id love to do it myself but Ive not spent much time poking around in oBSD kernel land. >> They were not identified there. B They were documented in the manual page >> right from the start. Forgot to check there sorry, had a lazy moment. -- "Opportunity is most often missed by people because it is dressed in overalls and looks like work." Thomas Alva Edison Inventor of 1093 patents, including: The light bulb, phonogram and motion pictures.