Critical Linux security API is still a kludge

by on October 22, 2006 · 0 comments· Last updated October 22, 2006

Think again... do you need the anti virus software for Linux?

THE TALK lately has centred about Vista's security APIs, but Linux certainly needs improvements in this area, because AV vendors still rely on an external kernel module to implement "real time" file scanning.

Resident virus scanners need to intercept file access and allow or deny read operations on executable files only after a file's safety has been determined. On the Linux world, a German company dubbed "Avira GmbH" designed an API to allow "on-access" virus scanning, which based on a kernel module allows to intercept file access calls and passing control to a third party application, in this case the anti-virus scanner. According to the project's web page, "Dazuko has been released as Free Software in order to allow users to compile the device driver for their own custom kernels". The problem is that it's not a part of the current Linux kernel, so users must either rely on the Linux distributor's willingness to ship pre-built binaries of the loadable kernel modules, or more often than not, having to compile such modules themselves.

Read more at theinquirer...



You should follow me on twitter here or grab rss feed to keep track of new changes.

Featured Articles:

{ 0 comments… add one now }

Leave a Comment

You can use these HTML tags and attributes for your code and commands: <strong> <em> <ol> <li> <u> <ul> <blockquote> <pre> <a href="" title="">
What is 10 + 11 ?
Please leave these two fields as-is:
Solve the simple math so we know that you are a human and not a bot.



Previous post:

Next post: