Dailydave mailing list archives

RE: build an appliance without a shell


From: "Pete Herzog" <lists () isecom org>
Date: Thu, 4 Mar 2004 16:16:59 +0100

Ken,

We had to do something similar for the Hacker Highschool project where
we needed to make an appliance to accept authentication connections
over SSH which allowed access to the purposely hackable systems behind
it.  I bounced the ideas off the guys from @ MediaService and using
Authpf in OpenBSD with an empty shell that provides no functionality
at all outside of closing it ends access.  We looked through the
possibilities of hacking it and what it could mean for us on a risk
standpoint.  What this means is that for us, shell is justified as
opposed to the cost of a solution to not have it. I suggest you
consider the same.

Sincerely,
-pete.

Pete Herzog, Managing Director
Institute for Security and Open Methodologies
www.isecom.org - www.osstmm.org
www.hackerhighschool.org - www.isestorm.org

-----Original Message-----
From: dailydave-bounces () lists immunitysec com
[mailto:dailydave-bounces () lists immunitysec com]On Behalf Of
ken_i_m () fatair net
Sent: Thursday, March 04, 2004 16:04 PM
To: dailydave () lists immunitysec com
Subject: [Dailydave] build an appliance without a shell


On Thu, Mar 04, 2004 at 02:29:41AM -0800, arlen
(arlen () hushmail com) wrote:
asked the S.E. about shells - does it have one? Is there
any way of getting
a full interactive shell on this thing?

I was just handed a task yesterday to build a single
function "toaster"
to be hung outside the firewall on its own public IP.  I
have thought
about building various appliance in the past so it is not a
new idea.
Building an OS from the ground up using a linux kernel is not a big
deal either.  But after reading the thread from which I
took the above
quote I am left with "shell == bad" therefore no shell.  ???
--
Ken Dyke
"Bits at the speed of light"
_______________________________________________
Dailydave mailing list
Dailydave () lists immunitysec com
http://www.immunitysec.com/mailman/listinfo/dailydave




_______________________________________________
Dailydave mailing list
Dailydave () lists immunitysec com
http://www.immunitysec.com/mailman/listinfo/dailydave


Current thread: