Skip to content

Latest commit

 

History

History
9 lines (7 loc) · 344 Bytes

File metadata and controls

9 lines (7 loc) · 344 Bytes

Least Functionality

The SIMP stunnel service is configured to run within a chroot jail. This ensures that the service cannot see or access files outside of stunnel directory. Should the stunnel service become remotely compromised, the attack cannot be escalated to other parts of the file system.

References: CM-7