Re: controlling/monitoring clients

Warren Togami <[email protected]>
Newsgroups gmane.linux.terminal-server.devel
Message-ID <[email protected]>
Robert Arkiletian wrote:
> I thought this list is a better venue for this discussion.
> 
> The security problem with having x11vnc launch in the chroot is that
> the encrypted password file would also have to be in the chroot.
> Since the chroot is nfs exported this is a very weak security model.
> Hence, I wonder if it would be possible to launch x11vnc (as root) on
> the client as a local app where the password file would reside in the
> main OS filesystem, where it can be protected.

"Protected" is really relative.  It is still trivially easy for a user 
logged into the system to get at that password file.

Warren

-------------------------------------------------------------------------
This SF.Net email is sponsored by the Moblin Your Move Developer's challenge
Build the coolest Linux based applications with Moblin SDK & win great prizes
Grand prize is a trip for two to an Open Source event anywhere in the world
http://moblin-contest.org/redirect.php?banner_id=100&url=/
_____________________________________________________________________
Ltsp-developer mailing list.   To un-subscribe, or change prefs, goto:
      https://lists.sourceforge.net/lists/listinfo/ltsp-developer
For additional LTSP help,   try #ltsp channel on irc.freenode.net
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.