From owner-freebsd-stable@FreeBSD.ORG Sat May 10 15:45:36 2008 Return-Path: Delivered-To: freebsd-stable@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 8D7961065672 for ; Sat, 10 May 2008 15:45:36 +0000 (UTC) (envelope-from david@catwhisker.org) Received: from bunrab.catwhisker.org (adsl-63-193-123-122.dsl.snfc21.pacbell.net [63.193.123.122]) by mx1.freebsd.org (Postfix) with ESMTP id 0839C8FC15 for ; Sat, 10 May 2008 15:45:36 +0000 (UTC) (envelope-from david@catwhisker.org) Received: from bunrab.catwhisker.org (localhost [127.0.0.1]) by bunrab.catwhisker.org (8.13.3/8.13.3) with ESMTP id m4AFUqXJ082978; Sat, 10 May 2008 08:30:52 -0700 (PDT) (envelope-from david@bunrab.catwhisker.org) Received: (from david@localhost) by bunrab.catwhisker.org (8.13.3/8.13.1/Submit) id m4AFUqxF082977; Sat, 10 May 2008 08:30:52 -0700 (PDT) (envelope-from david) Date: Sat, 10 May 2008 08:30:52 -0700 From: David Wolfskill To: Stefan Lambrev Message-ID: <20080510153052.GX66703@bunrab.catwhisker.org> Mail-Followup-To: David Wolfskill , Stefan Lambrev , FreeBSD Stable References: <4825BCD6.4080001@moneybookers.com> Mime-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="3a/Z8KDuKqDOIvAo" Content-Disposition: inline In-Reply-To: <4825BCD6.4080001@moneybookers.com> User-Agent: Mutt/1.4.2.1i Cc: FreeBSD Stable Subject: Re: /usr/bin/ksu and missing suid bit X-BeenThere: freebsd-stable@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: Production branch of FreeBSD source code List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 10 May 2008 15:45:36 -0000 --3a/Z8KDuKqDOIvAo Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Sat, May 10, 2008 at 06:18:46PM +0300, Stefan Lambrev wrote: > ... > And my second question - is there a option that I can define in src.conf= =20 > or make.conf, next time when I build/installworld > ksu to have setuid bit ? (in manual I found only knobs for disabling=20 > kerberos) Define ENABLE_SUID_K5SU to be true. Ref. the stanza from /usr/share/examples/etc/make.conf: # Kerberos 5 su (k5su) # If you want to use the k5su utility, define this to have it installed # set-user-ID. #ENABLE_SUID_K5SU=3D Peace, david --=20 David H. Wolfskill david@catwhisker.org I submit that "conspiracy" would be an appropriate collective noun for cats. See http://www.catwhisker.org/~david/publickey.gpg for my public key. --3a/Z8KDuKqDOIvAo Content-Type: application/pgp-signature Content-Disposition: inline -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.0 (FreeBSD) iEYEARECAAYFAkglv6oACgkQmprOCmdXAD1PAwCfbSiPiRwJBOoiX32A9GFOZaji sjoAnAwJQOxC9jF3+y+rgTNDoeRavvKH =0Qmg -----END PGP SIGNATURE----- --3a/Z8KDuKqDOIvAo--