<?xml version="1.0"?>
<?xml-stylesheet type="text/css" href="http://linux-vserver.at/skins/common/feed.css?303"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
		<id>http://linux-vserver.at/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=PeftSoate</id>
		<title>Linux-VServer - User contributions [en]</title>
		<link rel="self" type="application/atom+xml" href="http://linux-vserver.at/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=PeftSoate"/>
		<link rel="alternate" type="text/html" href="http://linux-vserver.at/Special:Contributions/PeftSoate"/>
		<updated>2026-04-09T20:27:47Z</updated>
		<subtitle>User contributions</subtitle>
		<generator>MediaWiki 1.20.2</generator>

	<entry>
		<id>http://linux-vserver.at/Talk:Secure_chroot_Barrier</id>
		<title>Talk:Secure chroot Barrier</title>
		<link rel="alternate" type="text/html" href="http://linux-vserver.at/Talk:Secure_chroot_Barrier"/>
				<updated>2013-06-05T03:05:37Z</updated>
		
		<summary type="html">&lt;p&gt;PeftSoate: /* I like it - replica rolex */ new section&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;# setattr --barrier /vservers&lt;br /&gt;
# showattr /vservers&lt;br /&gt;
*NOTE: when setting xattrs on reiserfs, please not that the filesystem has to be mounted explicitly with 'attrs' option, i.e.: mount /dev/reiserfsdev /vservers -oattrs to get the barrier survive after umount/reboot.&lt;br /&gt;
&lt;br /&gt;
Seems insufficient. You need to set --barrier for every existing and NEW directory except those below /vservers/. as the suggested command protects only against chdir ..&lt;br /&gt;
&lt;br /&gt;
Why? The fchdir.&lt;br /&gt;
&lt;br /&gt;
Am I right?&lt;br /&gt;
&lt;br /&gt;
once you gain root inside the scure chroot:&lt;br /&gt;
&lt;br /&gt;
may you gain access to the device node?&lt;br /&gt;
&lt;br /&gt;
i/o ports not restricted?&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
# Accoring to http://oldwiki.linux-vserver.org/Step-by-Step+Guide+2.6: &amp;quot;On Linux 2.6 this isn't really necessary, since another mechanism is used to lock in the guests anyway&amp;quot; - maybe someone could elaborate on this and put it in the article, please&lt;br /&gt;
&lt;br /&gt;
== I like it - replica rolex ==&lt;br /&gt;
&lt;br /&gt;
http://www.4shared.com/office/Vyqcuq2o/rolex_sea_dweller_replica.html&lt;br /&gt;
http://www.divshare.com/download/24180036-346&lt;br /&gt;
http://en.calameo.com/read/00248389233c3cef73745&lt;br /&gt;
http://depositfiles.com/files/hset3pq9e&lt;br /&gt;
http://www.authorstream.com/Presentation/barrybhall648-1839710-replica-rolex-cellini/&lt;/div&gt;</summary>
		<author><name>PeftSoate</name></author>	</entry>

	</feed>