From owner-freebsd-security Thu Mar 22 17: 1:17 2001 Delivered-To: freebsd-security@freebsd.org Received: from smtp02.teb1.iconnet.net (smtp02.teb1.iconnet.net [209.3.218.43]) by hub.freebsd.org (Postfix) with ESMTP id D154737B71F for ; Thu, 22 Mar 2001 17:01:14 -0800 (PST) (envelope-from babkin@bellatlantic.net) Received: from bellatlantic.net (client-151-198-135-105.nnj.dialup.bellatlantic.net [151.198.135.105]) by smtp02.teb1.iconnet.net (8.9.1/8.9.1) with ESMTP id TAA04049; Thu, 22 Mar 2001 19:57:36 -0500 (EST) Message-ID: <3ABA9F7F.53F8980A@bellatlantic.net> Date: Thu, 22 Mar 2001 19:57:35 -0500 From: Sergey Babkin X-Mailer: Mozilla 4.7 [en] (X11; U; FreeBSD 4.0-19990626-CURRENT i386) X-Accept-Language: en, ru MIME-Version: 1.0 To: Max Khon Cc: Brett Glass , security@FreeBSD.ORG Subject: Re: about common group & user ID space (PR kern/14584) References: Content-Type: text/plain; charset=us-ascii Content-Transfer-Encoding: 7bit Sender: owner-freebsd-security@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.org Max Khon wrote: > > hi, there! > > On Wed, 21 Mar 2001, Sergey Babkin wrote: > > > > >> > on (a) the number of groups of which a user can be a member and (b) the > > > > > > > >For this there is some macro (can't remember the name) which > > > >can be defined in the kernel config file as an option with > > > >a higher value. Setting it higher means higher system overhead > > > >but since the memory size has increased significantly over > > > >the last few years, I think that a higher default value makes > > > >sense. > > > > > > I do too. Could you submit this as a patch? > > > > I've looked at it and found that it's already made into a sysctl > > variable kern.ngroups. > > it is read-only however (at least on my 4.2-STABLE system) It's NGROUPS_MAX defined in in sys/limits.h. I've thought that it's surrounded by #ifdef NGROUPS_MAX but looks like in reality it is not. -SB To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-security" in the body of the message