From owner-freebsd-hackers Sat Dec 24 14:20:38 1994 Return-Path: hackers-owner Received: (from root@localhost) by freefall.cdrom.com (8.6.9/8.6.6) id OAA03122 for hackers-outgoing; Sat, 24 Dec 1994 14:20:38 -0800 Received: from irz301.inf.tu-dresden.de (irz301.inf.tu-dresden.de [141.76.1.11]) by freefall.cdrom.com (8.6.9/8.6.6) with SMTP id WAA03116 for ; Sat, 24 Dec 1994 22:20:31 GMT Received: from sax.sax.de by irz301.inf.tu-dresden.de with SMTP (5.67b+/DEC-Ultrix/4.3) id AA21239; Sat, 24 Dec 1994 23:21:10 +0100 Received: by sax.sax.de (8.6.9/8.6.9) with UUCP id XAA04847 for hackers%freebsd.org@sax.de; Sat, 24 Dec 1994 23:27:09 +0100 Received: by bonnie.tcd-dresden.de (8.6.8/8.6.6) id XAA19929; Sat, 24 Dec 1994 23:05:58 +0100 From: j@uriah.sax.de (J Wunsch) Message-Id: <199412242205.XAA19929@bonnie.tcd-dresden.de> Subject: Re: Owner of system directories To: hackers@freebsd.org (FreeBSD hackers) Date: Sat, 24 Dec 1994 23:05:57 +0100 (MET) In-Reply-To: <199412222141.WAA11874@keltia.frmug.fr.net> from "Ollivier Robert" at Dec 22, 94 10:41:34 pm X-Phone: +49-351-8141 137 Reply-To: joerg_wunsch@uriah.sax.de X-Mailer: ELM [version 2.4 PL23] Mime-Version: 1.0 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: 8bit Content-Length: 850 Sender: hackers-owner@freebsd.org Precedence: bulk As Ollivier Robert wrote: | | In extenso, every program should belong to root too... What do you people | think about it ? I personally do not like it. I'm a friend of ``uucp'', ``news'', ``bin'' etc. file ownership and a fine-grain group policy, and usually all the above accounts on my machines do have passwords, so i don't have to run as super-user for too long. I think the `root'-only files' problem is only specific for NFS servers supplying security-relevant files to an audience which is larger than e.g. a local (sub-)net. I don't believe this would cover the majority of the systems in use. Just my personal HO. -- cheers, J"org work: --- no longer --- private: joerg_wunsch@uriah.sax.de Never trust an operating system you don't have sources for. ;-)