Language Selection

English French German Italian Portuguese Spanish

User Mode Linux: Maximizing performance, jailing attackers

Filed under
Interviews

User Mode Linux (UML)has ideal security features for controlling and jailing hackers once they've taken the sweetened bait of a 'honeypot,' says User Mode Linuxauthor and project architect Jeff Dike. UML can log all terminal traffic to the host in a way that's invisible and impossible to interfere with from inside the UML unlike Xen and VMware.

Take a tour of UML with Dike as he offers best practices, explains how to boot from an empty jail, talks about jailing attackers and more.

What are some unique issues of server consolidation with User Mode Linux?

Jeff Dike: From my point of view, server consolidation doesn't differ greatly from any other virtualization workload. So, the advantages of UML apply here the same as in other areas.

One aspect of server consolidation that may distinguish it from other virtualization workloads is that the host administrator may not trust the UML administrators. In this case, the UML administrators won't have shell access on the host, and the host administrator will need to decide how they will be allowed to access their UMLs.

The easy solution is to allow only network access. But this will increase the support burden when UML owners make their UMLs inaccessible by misconfiguring their networks. In this case, allowing the equivalent of logging in on a hardwired terminal would be nice, so that the UML admins still have access to their UMLs and can fix the network themselves.

So how should host administrators determine access criteria for UML?

Full Story.

More in Tux Machines

Samsung Galaxy S6 or HTC One M9: Which Android flagship did you pre-order today?

Early this morning, the new HTC One M9 and Samsung Galaxy S6 became available for pre-order. As a mobile phone fanatic, it was very difficult for me to choose one over the other. I was able to use each of these smartphones a few weeks ago in Spain and if you look at my initial comparison it sounds like the Samsung Galaxy S6 and S6 Edge gained much more than the HTC One M9 over the respective previous generation devices. Read more

THE RISE OF ANDROID: How a flailing startup became the world's biggest computing platform

Today, Android powers about 85% of all smartphones globally, while the iPhone accounts for only 11%. It’s making a push into wristwatches, cars, and TVs. It’s not hard to envision a time when Android will be in every single device from stove and thermostats to toothbrushes. To grab 85% of the smartphone market, Rubin had to beat the two most valuable, and profitable, technology companies of their era: Microsoft and Apple. He had to fight entrenched wireless carriers. He had to get phone makers to buy into its radical vision. Read more

Zentyal announces Zentyal Server 4.1

Zentyal Development Team is proud to announce Zentyal Server 4.1, a new release of the Zentyal Server with native Microsoft® Exchange protocol implementation and Active Directory interoperability. Read more

OpenStack Kilo Now at Feature Freeze

We're now in the stretch run for the OpenStack Kilo platform release. Read more Also: Red Hat's Bet on OpenStack, OpenShift Shows Progress