#3309 BLOC Update.: Security: restrict filesystem and network access through bitfrost

Zarro Boogs per Child bugtracker at laptop.org
Thu Nov 15 19:12:48 EST 2007


#3309: Security: restrict filesystem and network access through bitfrost
-----------------------+----------------------------------------------------
  Reporter:  kimquirk  |       Owner:  mstone  
      Type:  task      |      Status:  new     
  Priority:  blocker   |   Milestone:  Update.1
 Component:  security  |     Version:          
Resolution:            |    Keywords:          
  Verified:  0         |  
-----------------------+----------------------------------------------------

Comment(by mstone):

 Good: all activities but the Journal, Terminal, Log, and Analyze have a
 decent chunk of file-system isolation.

 Bad: No network isolation at all.

 Needs Work: We've fixed up the Telepathy/Rainbow interaction that was
 preventing data-sharing from working, but this work-around will need to be
 revisited as we start to harden the system.

 Future: We have a few more integration bugs to fix and then it will be
 time to move on to new features - access checks in the datastore, per-
 activity privileges and resource limits, per-activity firewall rules, and
 others.

-- 
Ticket URL: <http://dev.laptop.org/ticket/3309#comment:3>
One Laptop Per Child <http://dev.laptop.org>
OLPC bug tracking system



More information about the Bugs mailing list