Congfigure SELinux for protecting remote code execution attack via JBoss
Issue
- A JBoss is running under a user account.This JBoss is allowed to read/write/create files (no execute) under the folders of the user account. We want to prevent JBoss from executing a script file which is created by it on-the-fly and also the whole set of Linux commands.
Environment
- Red Hat JBoss Enterprise Application Platform (EAP)
- 6.x
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.