Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 25 Mar 2004 09:21:14 -0800 (PST)
From:      Julian Elischer <julian@elischer.org>
To:        "Jacques A. Vidrine" <nectar@FreeBSD.org>
Cc:        freebsd-arch@freebsd.org
Subject:   Re: SUIDDIR -> security.bsd.suiddir_enable.
Message-ID:  <Pine.BSF.4.21.0403250919260.70687-100000@InterJet.elischer.org>
In-Reply-To: <20040325144553.GA61830@madman.celabo.org>

next in thread | previous in thread | raw e-mail | index | archive | help


On Thu, 25 Mar 2004, Jacques A. Vidrine wrote:

> On Thu, Mar 25, 2004 at 12:51:20AM +0100, Pawel Jakub Dawidek wrote:
> > Any objection on such exchange?
> 
> I prefer it to remain a non-default compile-time option to discourage
> use.

The suiddir option only really makes sense (and is only really secure)
for partitions  that are exported via SAMBA etc. 
A shell user can make too much of a nuisance of themselves with it..

We added it for a Samba-based fileserver box product.

> -- 
> Jacques Vidrine / nectar@celabo.org / jvidrine@verio.net / nectar@freebsd.org
> _______________________________________________
> freebsd-arch@freebsd.org mailing list
> http://lists.freebsd.org/mailman/listinfo/freebsd-arch
> To unsubscribe, send any mail to "freebsd-arch-unsubscribe@freebsd.org"
> 



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.BSF.4.21.0403250919260.70687-100000>