Date: Wed, 20 Mar 1996 09:48:30 +0100 (MET) From: "Christoph P. Kukulies" <kuku@gilberto.physik.rwth-aachen.de> To: dgy@rtd.com (Don Yuniskis) Cc: freebsd-ports@freefall.freebsd.org Subject: Re: 2.1R sudo port Message-ID: <199603200848.JAA20071@gilberto.physik.rwth-aachen.de> In-Reply-To: <199603200540.WAA29487@seagull.rtd.com>
next in thread | previous in thread | raw e-mail | index | archive | help
> > Greetings! > > I believe the sudo port distributed with 2.1R should build with > LDFLAGS = -static and OPTIONS = -DENV_EDITOR. Admittedly, the > rationale for these choices is contradictory: > -static prevents security breach by replacement of dynamic > libraries (though difficult) > -ENV_EDITOR to be consistent with vipw(8)'s support of > $EDITOR (though this adds a security issue) And the 8 character password length limit should be fixed. There is a #define for this which only needs to be conditionalized by __FreeBSD__. > Thanx, > don > --Chris Christoph P. U. Kukulies kuku@gil.physik.rwth-aachen.de
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?199603200848.JAA20071>