Security issues


By default, savecore creates the savecore files with rather open permissions. This allows any knowledgeable user on the system to read and analyze the files. As you'll soon learn, even a user with few skills will be able to glean some information from the files.

Since the vmcore. X file provides the contents of memory at the time of the crash, the data contained in the file may include data that was not intended to be viewed by a wide audience. For example, if, at the time of a panic, someone was manipulating classified data, that data will probably be tucked away somewhere within the vmcore. X file. If security is a concern, the system administrator might want to check and tighten the access rights of the savecore directory and files.

Generally speaking, the system administrator is the person on the system who has access to most, if not all, of the data on the system. This includes the system crash dump files. However, if he is not trained in system crash dump analysis and needs to rely on the skills of another, less trusted person, it would be wise for him to closely monitor the analysis work performed by that person.

Note

If the system administrator is not trustworthy, security is already at great risk.




PANIC. UNIX System Crash Dump Analysis Handbook
PANIC! UNIX System Crash Dump Analysis Handbook (Bk/CD-ROM)
ISBN: 0131493868
EAN: 2147483647
Year: 1994
Pages: 289
Authors: Chris Drake

flylib.com © 2008-2017.
If you may any questions please contact us: flylib@qtcs.net