From owner-freebsd-hackers Wed May 24 20:13: 0 2000 Delivered-To: freebsd-hackers@freebsd.org Received: from quack.kfu.com (quack.kfu.com [170.1.70.2]) by hub.freebsd.org (Postfix) with ESMTP id B7F4937B7D7 for ; Wed, 24 May 2000 20:12:54 -0700 (PDT) (envelope-from nsayer@quack.kfu.com) Received: from icarus.kfu.com (icarus.kfu.com [170.1.70.37]) by quack.kfu.com (8.9.2/8.9.3) with ESMTP id UAA89130; Wed, 24 May 2000 20:12:53 -0700 (PDT) (envelope-from nsayer@quack.kfu.com) Received: from quack.kfu.com by icarus.kfu.com with ESMTP (8.9.3//ident-1.0) id UAA12129; Wed, 24 May 2000 20:12:52 -0700 (PDT) Message-ID: <392C9A33.1050EE03@quack.kfu.com> Date: Wed, 24 May 2000 20:12:51 -0700 From: Nick Sayer X-Mailer: Mozilla 4.72 [en] (X11; U; Linux 2.2.12 i386) X-Accept-Language: en MIME-Version: 1.0 To: Matthew Dillon , freebsd-hackers@freebsd.org Subject: Re: Needed: suid library calls (was Re: cvs commit: src/crypto/openssh sshd_config) References: <20000524090528.ECF641CE1@overcee.netplex.com.au> <20000524022840.C79861@freebsd.org> <200005241446.KAA60257@khavrinen.lcs.mit.edu> <20000524075921.A53829@freebsd.org> <200005241709.NAA60822@khavrinen.lcs.mit.edu> <20000524105558.A3407@freebsd.org> <200005241853.OAA61188@khavrinen.lcs.mit.edu> <392C3E40.E0D8974D@vangelderen.org> <392C60F1.91EDC30D@sftw.com> <200005250211.TAA78261@apollo.backplane.com> Content-Type: text/plain; charset=us-ascii Content-Transfer-Encoding: 7bit Sender: owner-freebsd-hackers@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.ORG Matthew Dillon wrote: [lost attribution. Nick wrote this] > : > :What we _really_ need is some mechanism to recognize the difference > :between a user program and a system library, with an eye towards > :granting privileges to trusted libraries without letting those privileges > :leak past the library in question. > > Oh god, its MULTICS! Run! Run! Run for the hills! See? Final proof that those who don't know history are bound to repeat it. :-) To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-hackers" in the body of the message