On Wed, 2004-07-14 at 15:13 -0700, Florin Andrei wrote: > On Thu, 2004-07-08 at 08:14, Pekka Pietikainen wrote: > > > Having a (strict) SELinux policy for it might be a good thing btw. :-) > > Actually, that's something that security-minded people have long been > dreaming of: capture all traffic on the network interface(s), perhaps > even in promisc mode, but somehow at the same time not running the > sniffer itself as root, but as a user with much lower privileges. For tcpdump, it already exists in the form of netutils.te.
Attachment:
signature.asc
Description: This is a digitally signed message part