Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 10 Dec 1998 02:00:25 -0800
From:      "Jordan K. Hubbard" <jkh@zippy.cdrom.com>
To:        Jay Tribick <netadmin@fastnet.co.uk>
Cc:        Mark Newton <newton@camtech.com.au>, FREEBSD-SECURITY@FreeBSD.ORG
Subject:   Re: append-only devices for logging 
Message-ID:  <30042.913284025@zippy.cdrom.com>
In-Reply-To: Your message of "Thu, 10 Dec 1998 09:17:39 GMT." <Pine.BSF.4.05.9812100906050.9677-100000@bofh.fast.net.uk> 

next in thread | previous in thread | raw e-mail | index | archive | help
> True but if they have root then they can quite easily alter /etc/rc.local

Anyone setting their securelevel to 2 and *meaning* it will have also
chflag'd many of the files in / (including this one) to be effectively
read-only. There's no point in locking all your doors and leaving a
window open, after all, and anyone clueful enough to run at such a
high secure level should also be clueful enough to know where all the
obvious doors and windows (like this one) are. :-)

- Jordan

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?30042.913284025>