Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 28 Jul 1997 17:14:38 -0400 (EDT)
From:      "Matthew N. Dodd" <winter@jurai.net>
To:        Vincent Poy <vince@mail.MCESTATE.COM>
Cc:        security@FreeBSD.ORG
Subject:   Re: security hole in FreeBSD
Message-ID:  <Pine.BSF.3.95q.970728171235.25254D-100000@sasami.jurai.net>
In-Reply-To: <Pine.BSF.3.95.970728122545.3844j-100000@mail.MCESTATE.COM>

next in thread | previous in thread | raw e-mail | index | archive | help
On Mon, 28 Jul 1997, Vincent Poy wrote:
> 	I'll do that as soon as the machine comes back up.  I heard that
> suid programs can be a problem too but which ones are required to be suid?

As a general rule I set all suid/sgid system executeables schg and run
with securelevel set to 1 or 2.

Getting rid of any unecessary suid/sgid programs would be good too.

/* 
   Matthew N. Dodd		| A memory retaining a love you had for life	
   winter@jurai.net		| As cruel as it seems nothing ever seems to
   http://www.jurai.net/~winter | go right - FLA M 3.1:53	
*/




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.BSF.3.95q.970728171235.25254D-100000>