Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 21 Sep 1997 03:08:39 +0400 (MSD)
From:      =?KOI8-R?B?4c7E0sXKIP7F0s7P1w==?= <ache@nagual.pp.ru>
To:        Eivind Eklund <perhaps@yes.no>
Cc:        hackers@FreeBSD.ORG, brian@awfulhak.org, brian@FreeBSD.ORG
Subject:   Re: ppp restrictions 
Message-ID:  <Pine.BSF.3.96.970921030542.613A-100000@lsd.relcom.eu.net>
In-Reply-To: <199709202102.XAA18140@bitbox.follo.net>

next in thread | previous in thread | raw e-mail | index | archive | help
On Sat, 20 Sep 1997, Eivind Eklund wrote:

> I like the present model.  It allow you to be as strict (or not) as
> you want, but default to a secure value.  "Principle of least

It is not allows to run ppp from "network" group, only from root, so it
not does what I want.

> surprise" indicate that users shouldn't be able to change routes; them
> doing that is more surprising than not being able to run PPP (which is
> easy enough to fix)

Normal users already can't change routes, we talk about "network" group
users which may do this from my point of view.

-- 
Andrey A. Chernov
<ache@null.net>
http://www.nagual.pp.ru/~ache/




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.BSF.3.96.970921030542.613A-100000>