Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 28 Sep 2023 15:10:59 GMT
From:      Mitchell Horne <mhorne@FreeBSD.org>
To:        src-committers@FreeBSD.org, dev-commits-src-all@FreeBSD.org, dev-commits-src-main@FreeBSD.org
Subject:   git: 8d7a48d367ff - main - sysctl(8): Mention more security.bsd knobs; Refer to security(7)
Message-ID:  <202309281510.38SFAxHI048190@gitrepo.freebsd.org>

next in thread | raw e-mail | index | archive | help
The branch main has been updated by mhorne:

URL: https://cgit.FreeBSD.org/src/commit/?id=8d7a48d367ffde2a29419ef943c4099984e3af4d

commit 8d7a48d367ffde2a29419ef943c4099984e3af4d
Author:     Olivier Certner <olce.freebsd@certner.fr>
AuthorDate: 2023-08-17 23:54:49 +0000
Commit:     Mitchell Horne <mhorne@FreeBSD.org>
CommitDate: 2023-09-28 15:05:47 +0000

    sysctl(8): Mention more security.bsd knobs; Refer to security(7)
    
    Reviewed by:            mhorne, pauamma_gundo.com, emaste
    MFC after:              2 weeks
    Sponsored by:           Kumacom SAS
    Differential Revision:  https://reviews.freebsd.org/D41113
---
 sbin/sysctl/sysctl.8 | 9 +++++++--
 1 file changed, 7 insertions(+), 2 deletions(-)

diff --git a/sbin/sysctl/sysctl.8 b/sbin/sysctl/sysctl.8
index 3e995e40131b..ed768510eb6c 100644
--- a/sbin/sysctl/sysctl.8
+++ b/sbin/sysctl/sysctl.8
@@ -27,7 +27,7 @@
 .\"
 .\"	From: @(#)sysctl.8	8.1 (Berkeley) 6/6/93
 .\"
-.Dd December 24, 2022
+.Dd August 18, 2023
 .Dt SYSCTL 8
 .Os
 .Sh NAME
@@ -194,7 +194,9 @@ for more information on which tunables are available and how to set them.
 .Pp
 The string and integer information is summarized below.
 For a detailed description of these variables see
-.Xr sysctl 3 .
+.Xr sysctl 3
+and
+.Xr security 7 .
 .Pp
 The changeable column indicates whether a process with appropriate
 privilege can change the value.
@@ -231,6 +233,8 @@ String and integer values can be set using
 .It "kern.logsigexit	integer	yes"
 .It "security.bsd.suser_enabled	integer	yes"
 .It "security.bsd.see_other_uids	integer	yes"
+.It "security.bsd.see_other_gids	integer	yes"
+.It "security.bsd.see_jail_proc	integer	yes"
 .It "security.bsd.unprivileged_proc_debug	integer	yes"
 .It "security.bsd.unprivileged_read_msgbuf	integer	yes"
 .It "vm.loadavg	struct	no"
@@ -320,6 +324,7 @@ option has been deprecated and is silently ignored.
 .Xr sysctl 3 ,
 .Xr loader.conf 5 ,
 .Xr sysctl.conf 5 ,
+.Xr security 7,
 .Xr loader 8
 .Sh HISTORY
 A



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?202309281510.38SFAxHI048190>