Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 21 Jan 2004 17:39:56 +0000
From:      Josef Karthauser <joe@FreeBSD.org>
To:        freebsd-current@freebsd.org
Cc:        Robert Watson <rwatson@freebsd.org>
Subject:   Policy for a user that can't write any files (apart from in /tmp).
Message-ID:  <20040121173956.GH68003@genius.tao.org.uk>

next in thread | raw e-mail | index | archive | help

--uc35eWnScqDcQrv5
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable

Is it possible now-a-days with MAC, etc, to set a per user policy such
that the user doesn't have permissions to write to the file system?
I've got a remote user that's logging in to make backup, and it would be
really cool to prevent them from modifying anything with out futzing
with file permissions and groups.

Joe
--=20
Josef Karthauser (joe@tao.org.uk)	       http://www.josef-k.net/
FreeBSD (cvs meister, admin and hacker)     http://www.uk.FreeBSD.org/
Physics Particle Theory (student)   http://www.pact.cpes.sussex.ac.uk/
=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D An eclectic mix of fact an=
d theory. =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D

--uc35eWnScqDcQrv5
Content-Type: application/pgp-signature
Content-Disposition: inline

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.3 (FreeBSD)

iEYEARECAAYFAkAOuWsACgkQXVIcjOaxUBYYIACdE8mTsT4hWug5wT3FN02kVo/X
2yQAn20dQop1Xjy2JEkfddgDeAQA/8rS
=/PK1
-----END PGP SIGNATURE-----

--uc35eWnScqDcQrv5--



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20040121173956.GH68003>