O
O
Oleg Burca2014-04-16 13:40:54
linux
Oleg Burca, 2014-04-16 13:40:54

What are the analogues of Suhosin?

Hello.
There is a hosting server. Until recently, the OS was Debian 6 x64 and PHP 5.3 with the Suhosin patch installed.
Now I updated the hardware, for one and the system.
Installed Debian 7 x64 OS and PHP 5.4 which doesn't support Suhosin (project seems to be dead).
This leads to several questions:
1. Do we need such security systems at all?
2. How effective are they and how much do they load the system?
3. Are you familiar with Suhosin analogues?
4. Maybe it's better to use some security solutions at the kernel level (AppArmor, SElinux, Grsec, etc)?
If yes, which one to choose?

Answer the question

In order to leave comments, you need to log in

2 answer(s)
A
Alexey Sundukov, 2014-04-16
@alekciy

1) At the PHP level, no.
2) They make work difficult. In principle, performance is not affected.
3) Yes. But they do not make sense, see item 1.
4) It is better to use the mechanisms provided by the OS. Tritely correctly set the rights to files, use php-fpm and run from a given user, and so on.

S
Sergey, 2014-04-16
Protko @Fesor

https://pierre-schmitz.com/php-5-4-1-in-suhosin-out/

Didn't find what you were looking for?

Ask your question

Ask a Question

731 491 924 answers to any question