Hi,

I was thinking if it would be a good idea to zeroize all memory resources on 
system reset and
madvise dontneed them afterwards. This would avoid system reset attacks in case 
the attacker
has only access to the console of a vServer but not on the physical host and it 
would shrink
RSS size of the vServer siginificantly.

BR,
Peter

--

Mit freundlichen Grüßen

Peter Lieven

...........................................................

  KAMP Netzwerkdienste GmbH
  Vestische Str. 89-91 | 46117 Oberhausen
  Tel: +49 (0) 208.89 402-50 | Fax: +49 (0) 208.89 402-40
  p...@kamp.de | http://www.kamp.de

  Geschäftsführer: Heiner Lante | Michael Lante
  Amtsgericht Duisburg | HRB Nr. 12154
  USt-Id-Nr.: DE 120607556

...........................................................


Reply via email to