Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 9 Apr 2002 18:05:40 -0700 (PDT)
From:      Joseph Scott <joseph@randomnetworks.com>
To:        "David O'Brien" <obrien@freebsd.org>
Cc:        Bosko Milekic <bmilekic@freebsd.org>, cvs-committers@freebsd.org, cvs-all@freebsd.org
Subject:   Re: cvs commit: src/bin Makefile src/share/examples/etc make.conf src/usr.bin Makefile
Message-ID:  <Pine.BSF.4.21.0204091802060.39190-100000@pebkac.owp.csus.edu>
In-Reply-To: <20020409172242.A45459@dragon.nuxi.com>

next in thread | previous in thread | raw e-mail | index | archive | help

On Tue, 9 Apr 2002, David O'Brien wrote:

# On Tue, Apr 09, 2002 at 11:25:47AM -0700, Bosko Milekic wrote:
# >     bin                  Makefile 
# >     share/examples/etc   make.conf 
# >     usr.bin              Makefile 
# >   Log:
# >   Introduce NO_RCMNDS flag so as to not compile rsh, rlogin, and rcp on will,
# >   and document in share/examples/etc/make.conf
# 
# This is going too far -- are we soon going to have NO_LS ??
# What is the problem with compiling rsh/rlogin/rcp?  I can not think of
# any good reason.  Are you trying to reduce the number of set UID
# binaries?  Why not add a NO_SUID knob and catch everything?

	That's an interesting idea.  If there was a running list of what's
normally suid then admins could go through and only set suid on programs
of their choice.

	Which of course brings up the question, if NO_SUID is set, should
a port that wants to install a suid program be allowed to?  Or should it
ask if you still want to continue with the install?  Ug, perhaps a IS_SUID
for ports :-/

-Joseph	


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe cvs-all" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.BSF.4.21.0204091802060.39190-100000>