This shows you the differences between two versions of the page.
Both sides previous revision Previous revision Next revision | Previous revision | ||
команда_chroot [2020/07/21 11:37] val [Тестирование изоляции процессов] |
команда_chroot [2024/04/26 09:46] (current) val [Debian/Ubuntu] |
||
---|---|---|---|
Line 31: | Line 31: | ||
cp /bin/cat /var/www/bin/ | cp /bin/cat /var/www/bin/ | ||
cp /usr/bin/file /var/www/usr/bin/ | cp /usr/bin/file /var/www/usr/bin/ | ||
+ | cp /usr/bin/date /var/www/usr/bin/ | ||
cp /usr/share/misc/magic.mgc /var/www/usr/share/misc/ | cp /usr/share/misc/magic.mgc /var/www/usr/share/misc/ | ||
Line 44: | Line 45: | ||
cp /lib/x86_64-linux-gnu/libc.so.* /var/www/lib/x86_64-linux-gnu/ | cp /lib/x86_64-linux-gnu/libc.so.* /var/www/lib/x86_64-linux-gnu/ | ||
cp /lib/x86_64-linux-gnu/libz.so.* /var/www/lib/x86_64-linux-gnu/ | cp /lib/x86_64-linux-gnu/libz.so.* /var/www/lib/x86_64-linux-gnu/ | ||
+ | #debian11_12 cp /lib/x86_64-linux-gnu/libbz2.so.* /var/www/lib/x86_64-linux-gnu/ | ||
+ | #debian12 cp /lib/x86_64-linux-gnu/liblz* /var/www/lib/x86_64-linux-gnu/ | ||
cp /usr/lib/x86_64-linux-gnu/libmagic.so.* /var/www/usr/lib/x86_64-linux-gnu/ | cp /usr/lib/x86_64-linux-gnu/libmagic.so.* /var/www/usr/lib/x86_64-linux-gnu/ | ||
</code><code> | </code><code> | ||
Line 69: | Line 72: | ||
<code> | <code> | ||
# chroot /var/www/ /bin/bash | # chroot /var/www/ /bin/bash | ||
+ | или | ||
+ | # unshare -R /var/www /bin/bash | ||
# echo * | # echo * | ||
Line 95: | Line 100: | ||
... | ... | ||
base=/ | base=/ | ||
+ | log=/webd.log | ||
... | ... | ||
</code> | </code> | ||
+ | ===== Поиск всех процессов в chroot ===== | ||
+ | |||
+ | * [[https://support.cpanel.net/hc/en-us/articles/1500012454701-How-To-Find-The-List-Of-All-The-Chroot-ed-Processes-On-The-System|How To Find The List Of All The Chroot-ed Processes On The System?]] | ||
+ | |||
+ | <code> | ||
+ | for file in `find /proc/ -type l -name "root" -print 2> /dev/null | grep -Eiv /task/ 2> /dev/null`; do PID=`ls -d $file 2> /dev/null| awk -F "/" '{print $3}'` && printf "%s = %s = %s\n" "$PID" `ps -p "$PID" 2> /dev/null | tail -n1 | awk '{print $4}'` `readlink $file 2> /dev/null` | grep -Eiv "(= /$|^\s*=\s*$|^.*?=\s*$)";done | ||
+ | </code> | ||