[vbox-dev] hardening feature

Sérgio Basto sergio at serjux.com
Wed Nov 12 01:18:22 GMT 2014


On Ter, 2014-11-11 at 12:50 +0100, Felix morack wrote: 
> Like so many people i am still running 4.12 due to the "hardening"
> issues. 

what people ? 

> yes, i reported a bunch of them back when we first started, and yes i
> have since tested all versions up to 4.18. 

where  ? 

> We are now nearing a point where i cant deploy 4.12 anymore due to
> formal security regulations, so i have to get serious about this now.
> 
> I am therefore looking for a detailed, technical description of this
> new 'feature' and why devs think it is necessary.
> 
> Yes, i have the code, but a high level reasoning would be very
> helpful, especially what has changed with version 4.12. Specifically i
> am looking for documentation "between" the source code and the manual.
> Does such a documentation exist in public? Any technical discussion of
> it perhaps?
> 
> Background is that i am think about deploying my own custom build with
> hardening disabled. 

I remember I have to enable h ardening feature on kernel modes (.ko) at
some point and hardening feature should be enabled , for security
reasons . 
But I'd like to know what "hardening feature issues" do we have .

Thanks,

> Which is pretty insane, but there is no chance in hell anything post
> 4.12 ends up even in proximity to systems whose stability i am
> responsible for.
> 
> 
> tb
> 
> 
> p.s. does vmware have such a feature? How do they handle it?
> 
> 
> _______________________________________________
> vbox-dev mailing list
> vbox-dev at virtualbox.org
> https://www.virtualbox.org/mailman/listinfo/vbox-dev

-- 
Sérgio M. B.





More information about the vbox-dev mailing list