With CageFS:
- Users only have access to safe files.
- Users cannot see other users and have no way to detect the presence of other users or user names on the server.
- Users cannot see server configuration files, like Apache config files.
- Users have a limited view of their own processing file system, and cannot see other users' processes.
This innovative technology operates on the following principles:
- Only allow safe binaries to be available to users.
- Remove each user's access to ALL SUID scripts.
- Limit each customer's access to the /proc filesystem.
- Prevent symbolic link attacks.
Even with this extensive security, a user's environment is fully functional, and users do not feel restricted in any way. CageFS is completely transparent to the end user, yet impregnable to a hacker.
Monday, April 20, 2020
Powered by WHMCompleteSolution