On 08/29/2010 11:42 AM, Nataraj wrote:
I think running apache in a chroot environment might be one of the most effective protections. I used to do that in the past, but I found it too much work to maintain. Now there are things like mod_chroot and perhaps other tools, but I have no experience with them and don't know if they make it easier.
It'd benefit security if /proc weren't available in the chroot, but it usually is.