Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 14 Jul 2002 12:38:57 -0400 (EDT)
From:      Robert Watson <rwatson@FreeBSD.org>
To:        David Malone <dwmalone@maths.tcd.ie>
Cc:        Luigi Rizzo <luigi@FreeBSD.org>, Giorgos Keramidas <keramida@FreeBSD.org>, cvs-committers@FreeBSD.org, cvs-all@FreeBSD.org
Subject:   Re: cvs commit: src/usr.bin/talk display.c talk.1 talk.c
Message-ID:  <Pine.NEB.3.96L.1020714123750.25880F-100000@fledge.watson.org>
In-Reply-To: <Pine.NEB.3.96L.1020714123154.25880D-100000@fledge.watson.org>

next in thread | previous in thread | raw e-mail | index | archive | help


On Sun, 14 Jul 2002, Robert Watson wrote:

> On Sun, 14 Jul 2002, David Malone wrote:
> 
> > On Sun, Jul 14, 2002 at 08:25:43AM -0700, Luigi Rizzo wrote:
> > > > Damn.  Now I can't use ps/who to find out who's talking to whom!
> > > 
> > > but you can still see that they are using "talk".
> > 
> > You can still figure out who is talking to who with netstat and fstat
> > I'd guess? 
> 
> The see_other_uids sysctl limits netstat information also.  Haven't
> looked at fstat -- once it uses sysctl, it should be easy to implement. 

FWIW, a quick glance shows that fstat still uses kmem, so the limits
aren't enforced on fstat.  We have a contract with DES that includes
moving fstat to using sysctl, and at that point the policy can be enforced
in-kernel in a mandatory manner.  We need this for the MAC work anyway.

Robert N M Watson             FreeBSD Core Team, TrustedBSD Projects
robert@fledge.watson.org      Network Associates Laboratories


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe cvs-all" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.NEB.3.96L.1020714123750.25880F-100000>