Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 6 Oct 1996 18:51:46 +0200 (MET DST)
From:      J Wunsch <j@uriah.heep.sax.de>
To:        freebsd-current@FreeBSD.org (FreeBSD-current users)
Subject:   Re: secure level diffs to kern_mib.c, LINT
Message-ID:  <199610061651.SAA08758@uriah.heep.sax.de>
In-Reply-To: <199610061527.BAA30921@godzilla.zeta.org.au> from Bruce Evans at "Oct 7, 96 01:27:28 am"

next in thread | previous in thread | raw e-mail | index | archive | help
As Bruce Evans wrote:

> >The SCSI control devices should deny their service if securelevel is
> >``secure enough''.
> 
> They already deny service if they are opened at securelevel 2, since
> they are disk devices, and disk devices can't be opened for writing at
> securelevel 2, and they require write permission for all ioctls.

Not all SCSI control devices are disk devices.  However, all of them
are able to cause the same degree of damage to a SCSI bus (basically),
so all of them must fall under the same restrictions.

-- 
cheers, J"org

joerg_wunsch@uriah.heep.sax.de -- http://www.sax.de/~joerg/ -- NIC: JW11-RIPE
Never trust an operating system you don't have sources for. ;-)



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?199610061651.SAA08758>