[H-GEN] append-only on Solaris?

Martin Pool mbp at linuxcare.com.au
Tue May 16 01:23:34 EDT 2000


[ Humbug *General* list - semi-serious discussions about Humbug and ]
[ Unix-related topics.  Please observe the list's charter.          ]

On 16 May 2000, Robert Brockway wrote:

> :> Does anyone know of an equivalent on Solaris to
> :> 
> :>   $ chattr +a /var/log/apache/access
> 
> : Not unless you write one yourself. I've searched the source for 2.6 and there 
> : isn't such a beastie therein.
> 
> Chattr uses a feature of the filesystem so code would need to be added to
> ufs.  Of course under Solaris a module would do this fine i'm sure :)
> Rob

It's harder than that.  Append-only is not nearly as useful without
securelevels, and the code to do that has to permeate the whole kernel --
at least the whole thing would have to be checked for ways to subvert
them.

-- 
Martin Pool, Linuxcare, Inc.
+61 2 6262 8990
mbp at linuxcare.com, http://www.linuxcare.com/
Linuxcare. Support for the revolution.


--
* This is list (humbug) general handled by majordomo at lists.humbug.org.au .
* Postings to this list are only accepted from subscribed addresses of
* lists 'general' or 'general-post'.



More information about the General mailing list