Skip site navigation (1)Skip section navigation (2)
Date:      Sat, 2 Sep 2000 14:58:22 -0500
From:      Dan Nelson <dnelson@emsphone.com>
To:        sthaug@nethelp.no
Cc:        phk@critter.freebsd.dk, n@nectar.com, ume@FreeBSD.ORG, arch@FreeBSD.ORG
Subject:   Re: Request for review: nsswitch
Message-ID:  <20000902145822.B28852@dan.emsphone.com>
In-Reply-To: <62717.967924513@verdi.nethelp.no>; from "sthaug@nethelp.no" on Sat Sep  2 21:55:13 GMT 2000
References:  <41582.967924374@critter> <62717.967924513@verdi.nethelp.no>

next in thread | previous in thread | raw e-mail | index | archive | help
In the last episode (Sep 02), sthaug@nethelp.no said:
> > >As you can see, it is explicitly disabled for setuid programs. It works
> > >for ssh as soon as you make ssh non-setuid (which I think is a good idea
> > >in any case...)
> > 
> > Why would ssh need to be setuid ?
> 
> To be able to emulate rsh by using a port < 1024, I assume. It's
> installed setuid by default in 4.1 - personally I think this is wrong
> and should be changed.

Rather, it's so it can read the host key, which is only readable by
root.

-- 
	Dan Nelson
	dnelson@emsphone.com


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-arch" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20000902145822.B28852>