DTrace is password security's nightmare

Do you have a question? Post it now! No Registration Necessary.  Now with pictures!

Oracle should design their UNIX kernel to be configurable: only when
running in "debug" mode, then to allow dtrace and truss to be usable,
and when in "normal" mode, both functions should be disabled. And a
reboot is needed to change the mode. And give a syscall interface for
application be able to check kernel mode. That could make the Solaris
much usable and secure.
And they should only add dtrace to Linux when that change has done!

WZIS Software -- a UNIX job automation and security solution provider.

http://www.wziss.com /

Site Timeline