Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 28 Jun 2013 09:55:00 +0000 (UTC)
From:      Dag-Erling Smørgrav <des@FreeBSD.org>
To:        src-committers@freebsd.org, svn-src-all@freebsd.org, svn-src-stable@freebsd.org, svn-src-stable-9@freebsd.org
Subject:   svn commit: r252339 - stable/9/crypto/openssh
Message-ID:  <201306280955.r5S9t0kc002976@svn.freebsd.org>

next in thread | raw e-mail | index | archive | help
Author: des
Date: Fri Jun 28 09:55:00 2013
New Revision: 252339
URL: http://svnweb.freebsd.org/changeset/base/252339

Log:
  Insta-MFH (r252338): update docs to reflect correct default privsep setting

Modified:
  stable/9/crypto/openssh/sshd_config
  stable/9/crypto/openssh/sshd_config.5
Directory Properties:
  stable/9/crypto/openssh/   (props changed)

Modified: stable/9/crypto/openssh/sshd_config
==============================================================================
--- stable/9/crypto/openssh/sshd_config	Fri Jun 28 09:41:59 2013	(r252338)
+++ stable/9/crypto/openssh/sshd_config	Fri Jun 28 09:55:00 2013	(r252339)
@@ -105,7 +105,7 @@
 #PrintLastLog yes
 #TCPKeepAlive yes
 #UseLogin no
-#UsePrivilegeSeparation sandbox
+#UsePrivilegeSeparation yes
 #PermitUserEnvironment no
 #Compression delayed
 #ClientAliveInterval 0

Modified: stable/9/crypto/openssh/sshd_config.5
==============================================================================
--- stable/9/crypto/openssh/sshd_config.5	Fri Jun 28 09:41:59 2013	(r252338)
+++ stable/9/crypto/openssh/sshd_config.5	Fri Jun 28 09:55:00 2013	(r252339)
@@ -1169,7 +1169,7 @@ the privilege of the authenticated user.
 The goal of privilege separation is to prevent privilege
 escalation by containing any corruption within the unprivileged processes.
 The default is
-.Dq sandbox .
+.Dq yes .
 If
 .Cm UsePrivilegeSeparation
 is set to



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?201306280955.r5S9t0kc002976>