On Tue, 2008-07-29 at 13:05 +0200, Dirk H. Schulz wrote: > is it possible to restrict the rights of a user to only do few, defined > actions, e.g. only look up cpu and memory usage, but not walk around in the > file system, not see any other hardware details, run any binaries/scripts? > I know several different techniques to achieve parts of this (like > chrooting him), but is there one technique to get it all? SELinux. -- Ignacio Vazquez-Abrams <ivazqueznet at gmail.com> PLEASE don't CC me; I'm already subscribed -------------- next part -------------- A non-text attachment was scrubbed... Name: signature.asc Type: application/pgp-signature Size: 189 bytes Desc: This is a digitally signed message part URL: <http://lists.centos.org/pipermail/centos/attachments/20080729/13dfe441/attachment-0005.sig>