[Join] or [Login] to make requests and vote. Accounts are free and we will respect the little personal information you give us, not pass it to others or send you unsolicited mail.

Requests home

Browse all requests

Safer Web serving[safer-web]

We should put some or all services in a box, so that they can't harm others.

We could use chroot jails, but we should think carefully about how easy they'll be to break, using automated exploiting code that runs amok.

Personally, I lean towards running code we've examined or tested in some serious way, and not using any packages which have a sloppy security history (especially oh-my-god cock-ups, and the recurrence of old, serious flaws).

Virtualisation is another possibility, but I feel it may be more effort, and less use than just using proper, separate boxes.

Status: open
Adding a user[user-add]

Some scaffolding like web-create would be good for users, so we can automatically set up a mail user, a primary group, a home directory and so forth. The bog-standard useradd is insufficient.

Perhaps also things like picking a shell, &c.

25 comments
Status: open