Re: Protecting message files acess even from root

2014-01-31 Thread Mark Blackman
On 31 Jan 2014, at 16:10, Fabio S. Schmidt wrote: > Hello! > Considering that Cyrus stores messages in files, does anyone have any > experience on the protection of access to these files, even for the root > user? > > I researched about SELINUX and found no conclusive documentation. > htt

Re: Protecting message files acess even from root

2014-01-31 Thread Fabio S. Schmidt
Hi Dan ! Thanks for the answer ! I'm trying to prevent local access from a physical administrator. Even if looged as root should be impossible to read the messages on the Cyrus partitions. Other emails stores that I have dealt with also stores the messages in files. Blackman and Goetz, Thanks for

Re: Protecting message files acess even from root

2014-01-31 Thread Patrick Goetz
Yes, this is the answer. If messages need to protected from everyone, including root, then they should be PGP encrypted at the source; with MUA client-side decryption. On 01/31/2014 10:37 AM, Mark Blackman wrote: > > On 31 Jan 2014, at 16:10, Fabio S. Schmidt wrote: > >> Hello! >> Considering

Re: Protecting message files acess even from root

2014-01-31 Thread Dan White
On 01/31/14 14:10 -0200, Fabio S. Schmidt wrote: >Hello! >Considering that Cyrus stores messages in files, does anyone have any >experience on the protection of access to these files, even for the root >user? > >I researched about SELINUX and found no conclusive documentation. Are you attempting t

Protecting message files acess even from root

2014-01-31 Thread Fabio S. Schmidt
Hello! Considering that Cyrus stores messages in files, does anyone have any experience on the protection of access to these files, even for the root user? I researched about SELINUX and found no conclusive documentation. -- My best regards, Fabio Soares Schmidt Linux Professional Institute -