Php why must your apps suck so?

Ignacio Vazquez-Abrams ivazqueznet at gmail.com
Wed Oct 31 22:24:39 UTC 2007


On Wed, 2007-10-31 at 08:05 -0700, Karsten Wade wrote:
> On Wed, 2007-10-24 at 15:38 -0700, Toshio Kuratomi wrote:
> > > 
> > It looks like the combination of SELinux and mod_security will cover the 
> >    range of exploits as long as we have policy that covers all the 
> > approaches in both SELinux and mod_security. 
> 
> One thing Fedora has is expertise in writing SELinux policy.  A working
> SELinux policy would be a good contribution to an upstream.

SELinux can't help with XSS attacks.

-- 
Ignacio Vazquez-Abrams <ivazqueznet at gmail.com>

PLEASE don't CC me; I'm already subscribed
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part
URL: <http://listman.redhat.com/archives/fedora-infrastructure-list/attachments/20071031/eb5bbe4b/attachment.sig>


More information about the Fedora-infrastructure-list mailing list