From owner-freebsd-security Wed Oct 10 9:30:38 2001 Delivered-To: freebsd-security@freebsd.org Received: from mail-relay1.yahoo.com (mail-relay1.yahoo.com [216.145.48.34]) by hub.freebsd.org (Postfix) with ESMTP id 8184837B40A for ; Wed, 10 Oct 2001 09:30:32 -0700 (PDT) Received: from DougBarton.net (db-cvad-2-tmp.yahoo.com [216.145.48.243]) by mail-relay1.yahoo.com (Postfix) with ESMTP id 056EB8B5E7; Wed, 10 Oct 2001 09:30:32 -0700 (PDT) Message-ID: <3BC477B2.53262305@DougBarton.net> Date: Wed, 10 Oct 2001 09:30:42 -0700 From: Doug Barton Organization: Triborough Bridge & Tunnel Authority X-Mailer: Mozilla 4.78 [en] (X11; U; Linux 2.4.2 i386) X-Accept-Language: en MIME-Version: 1.0 To: Rob Simmons Cc: freebsd-security@FreeBSD.ORG Subject: Re: ftp configuration files References: <20011010101019.F73080-100000@mail.wlcg.com> Content-Type: text/plain; charset=us-ascii Content-Transfer-Encoding: 7bit Sender: owner-freebsd-security@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.org Rob Simmons wrote: > > -----BEGIN PGP SIGNED MESSAGE----- > Hash: RIPEMD160 > > Instead of having the two ftp config files, ftpchroot and ftpusers, maybe > this could be incorporated into fields in the passwd file, or turned into > options in login.conf. This way you would be able to look at all this > information at once. It would be easier to make sure that all the users > that need to be listed in ftpusers get restricted properly. The same > would go for ftpchroot. > > Is this something that has been thought about before? Is there a reason > not to do something like this? Historical reasons, not breaking compatability with password file standards, and violation of the unix idea of combining smaller building blocks to create larger tools. -- "We will not tire, we will not falter, and we will not fail." - George W. Bush, President of the United States September 20, 2001 Do YOU Yahoo!? To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-security" in the body of the message