Date: Sun, 7 Jan 2001 09:30:25 -0500 (EST) From: Evan S <kaworu@sektor7.ath.cx> To: Kris Kennaway <kris@FreeBSD.org> Cc: freebsd-security@FreeBSD.org Subject: Re: changing kernsecurelevel Message-ID: <Pine.GSO.4.10.10101070929330.5113-100000@wintermute.sekt7> In-Reply-To: <20010107051309.A2018@citusc.usc.edu>
next in thread | previous in thread | raw e-mail | index | archive | help
Mm, I want secure level to be 2 at times because then I can chflags schg the login.conf file inside the Jail, and limit cpu usage, memory usage, incase anyone fork bombs. That's alright though, I am working on giving a jail its own secure level, and its going pretty well.. Thanks, Evan Sarmiento (kaworu@sektor7.ath.cx) http://sekt7.org/es On Sun, 7 Jan 2001, Kris Kennaway wrote: > On Fri, Jan 05, 2001 at 09:30:22PM -0500, Evan S wrote: > > I know this may seem crazy. But, I _want_ to be able to lower the secure > > level. What part of the soruce would I need to edit in order to fix this? > > > > I have some special circumstances.. I run a public root-access machine. > > In case the point has not been made sufficiently yet: if you have a > public root-access machine, and root can lower securelevel, then you > lose all protection from running at securelevel and might as well just > leave it at -1 from the beginning. > > Kris > To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-security" in the body of the message
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.GSO.4.10.10101070929330.5113-100000>