From owner-freebsd-arch@FreeBSD.ORG Wed Mar 24 15:51:22 2004 Return-Path: Delivered-To: freebsd-arch@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 880A016A4CE for ; Wed, 24 Mar 2004 15:51:22 -0800 (PST) Received: from darkness.comp.waw.pl (unknown [195.117.238.236]) by mx1.FreeBSD.org (Postfix) with ESMTP id 3484443D3F for ; Wed, 24 Mar 2004 15:51:22 -0800 (PST) (envelope-from pjd@darkness.comp.waw.pl) Received: by darkness.comp.waw.pl (Postfix, from userid 1009) id 782BAACBCB; Thu, 25 Mar 2004 00:51:20 +0100 (CET) Date: Thu, 25 Mar 2004 00:51:20 +0100 From: Pawel Jakub Dawidek To: freebsd-arch@freebsd.org Message-ID: <20040324235120.GU8930@darkness.comp.waw.pl> Mime-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="nNLEAEjXOhgjywrq" Content-Disposition: inline User-Agent: Mutt/1.4.2i X-PGP-Key-URL: http://people.freebsd.org/~pjd/pjd.asc X-OS: FreeBSD 5.2.1-RC2 i386 Subject: SUIDDIR -> security.bsd.suiddir_enable. X-BeenThere: freebsd-arch@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: Discussion related to FreeBSD architecture List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 24 Mar 2004 23:51:22 -0000 --nNLEAEjXOhgjywrq Content-Type: text/plain; charset=iso-8859-2 Content-Disposition: inline Content-Transfer-Encoding: quoted-printable Hi. Any objection on such exchange? In p4 pjd_suiddir branch I've a code that replace SUIDDIR kernel option with sysctl security.bsd.suiddir_enable sysctl with is turned off by default. SUIDDIR option is not removed, but it means now: turn on suiddir functionality by default. For those without p4 knowledge: http://people.freebsd.org/~pjd/patches/suiddir_enable.patch This stuff was not yet tested, I don't even know if this compiles, this is only a proof-of-concept. I'm not also sure if security.bsd.* is the right place, maybe vfs.* is better? --=20 Pawel Jakub Dawidek http://www.FreeBSD.org pjd@FreeBSD.org http://garage.freebsd.pl FreeBSD committer Am I Evil? Yes, I Am! --nNLEAEjXOhgjywrq Content-Type: application/pgp-signature Content-Disposition: inline -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.4 (FreeBSD) iD8DBQFAYh74ForvXbEpPzQRAkrBAKDCKetDCWI0J4P4EId3zhHHomsTCACfdnrB hCvGpS5+dtiX98CJlOoTScc= =RjDi -----END PGP SIGNATURE----- --nNLEAEjXOhgjywrq--