Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 18 Jun 1999 10:30:49 -0500 (CDT)
From:      Frank Tobin <ftobin@bigfoot.com>
To:        Chris Shenton <cshenton@uucom.com>
Cc:        freebsd-security@FreeBSD.ORG
Subject:   Re: securelevel descr
Message-ID:  <Pine.BSF.4.10.9906181029560.56847-100000@srh0710.urh.uiuc.edu>
In-Reply-To: <lfn1xxfsgl.fsf@Samizdat.uucom.com>

next in thread | previous in thread | raw e-mail | index | archive | help
Chris Shenton, at 11:18 on 18 Jun 1999, wrote:

> But if inetd can start daemons on priv ports, then a cracker can just
> modify inetd.conf to start (say) "nc" on the telnet port. Or am I
> missing something? 

chflags simmutable inetd.conf;  Need I say more? :)

chflags is a real wonder drug, IMO.

-- 
Frank Tobin			"To learn what is good and what is to be
http://www.bigfoot.com/~ftobin	 valued, those truths which cannot be
				 shaken or changed." Myst: The Book of Atrus
FreeBSD: The Power To Serve

PGPenvelope = GPG and PGP5 + Pine             PGP:  4F86 3BBB A816 6F0A 340F
http://www.bigfoot.com/~ftobin/resources.html       6003 56FF D10A 260C 4FA3



To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.BSF.4.10.9906181029560.56847-100000>