Message boards : Questions and problems : Resources regarding BOINC security/sandboxing/etc
Message board moderation
Author | Message |
---|---|
Send message Joined: 25 Jan 13 Posts: 2 ![]() |
Hello all, I'm investigating installing BOINC on potentially hundreds of servers (Linux) at an organization, but am looking for as much detail as possible regarding the security model and sandboxing (both account-based and vm-based) in order to convince admins that it would be safe. I found the following pages, but the second (more detail) says it describes the Macintosh sandboxing design and I'm specifically interested in Linux. http://boinc.berkeley.edu/trac/wiki/SandboxUser http://boinc.berkeley.edu/sandbox.php Additionally, I'd like to know the following information if anyone can help here: 1) How are binaries linked (statically, dynamically)? 2) Does BOINC run the project programs inside a chroot jail? 3) Does BOINC employ any additional security measures, for instance ulimit for resource consumption limits, or SELinux for very granular access control? Also, if you have any general suggestions for making BOINC installations secure beyond what's written in the link below, I'd appreciate it. http://boinc.berkeley.edu/wiki/BOINC_Security Many thanks in advance for any assistance. I don't have a great deal of time to allocate to this project, and I'd like to avoid reading through the BOINC code if possible. Cheers, Raku |
![]() Send message Joined: 29 Aug 05 Posts: 15634 ![]() |
Sorry for that troll that's posting in your thread. He'll just have to learn that when his account is banished, that he's not allowed back with a new one, until after his original account's been freed. Which will now be never. |
![]() Send message Joined: 29 Aug 05 Posts: 15634 ![]() |
I'll repost what the troll wants you to know so urgently: Hello all, |
Send message Joined: 25 Jan 13 Posts: 2 ![]() |
Thank you for your quick response (and apologies for my equally slow one). The information you provided is very helpful. Just a side note, but where did the info you quoted in your previous post come from? I missed all the emails from the troll thanks to your mediation, so no idea about that. |
![]() Send message Joined: 29 Aug 05 Posts: 15634 ![]() |
Emails about events like thread subscriptions and getting PMs works on my account, so I would assume they do on yours. But only when you have actually subscribed to your thread --it's a separate action, you have to do it, you're not automatically subscribed to threads you make yourself-- and you have set to be emailed about it in your forum preferences (top option). I have PMed you about your other question. |
Copyright © 2025 University of California.
Permission is granted to copy, distribute and/or modify this document
under the terms of the GNU Free Documentation License,
Version 1.2 or any later version published by the Free Software Foundation.