Re: Preventing curl | bash

Thomas Mueller <[email protected]>
Newsgroups gmane.linux.redhat.fedora.selinux
Message-ID <[email protected]>

On 10/16/2018 11:15 AM, Sheogorath wrote:
> Hi,
>
> it's mostly a question out of curiosity but maybe useful for some people.
>
> I wonder if there is a way to prevent a direct piping from curl to bash
> using SELinux.
>
> And of course one can download a file and then run bash on it, but a
> simple rule that prevents direct piping would at least give a heads up
> about it.

sounds not like something I would implement. And you don't give much 
context to your situation.

What do you like to prevent? Stop users with root-shells to execut 
arbitary shell scripts obtained by curl?


- Thomas
_______________________________________________
selinux mailing list -- [email protected]
To unsubscribe send an email to [email protected]
Fedora Code of Conduct: https://getfedora.org/code-of-conduct.html
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/[email protected]
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.