Date: Fri, 15 Sep 2000 11:19:17 +0200 (CEST) From: Paul Herman <pherman@frenchfries.net> To: freebsd-hackers@FreeBSD.ORG Subject: init(8) and securelevel Message-ID: <Pine.BSF.4.21.0009151100150.323-101000@bagabeedaboo.security.at12.de>
next in thread | raw e-mail | index | archive | help
[-- Attachment #1 --]
After some thought about init(8) and securelevel (and a suggestion
from Sheldon Hearn) I believe a good compromise is to have the whole
"init(8) being able to lower the securelevel in single-user mode"
behaviour a boot variable in /boot/loader.conf.
This has the advantage of giving people who wish to lower the secure
level in maintenence mode what they want, without changing the default
behavior of FreeBSD.
Attached is a patch against -CURRENT from a few days ago (don't know
if it patches cleanly against -STABLE.)
Feedback welcome (for example, I'm not so happy with the boot variable
name...)
-Paul.
[-- Attachment #2 --]
9init_securelevel.patch Xas8ll
6$f62{w8cP$dw_dㄭڡq4f_ϲ32ՙgB-;IL,ۗ~',2[NmdGs_gcg.@Y
~׳c>WzkiV?u?
<?N=:g9o>t.G0QP
x
%bVz/Jχ<'&RKTL1NHX"T49k-D*6L2&D| !ł8֕PPO20VL%MR"]%Ix"cA\mXr`0]jyyԑ3vA`n=ݶg4&oˢeJZ2HTM,8TL`֘{Ngw{Vgy*Q xAA7>{TsoC~p|_Gǫ!<}~?LYij#z~pk2l0Q͠ up}?!V䅈_v@_f÷}P
iVMW!OǢ{<~#[u.eH] |,Y
KJ䑲PP"8!I%h'W/J
-L\*t2͖-'8oPެ/ۼsM7ouh B,-;Q k}hl27e>{VyvX7/tk&[7YЋ@c64SL6V?o<^?ztû]*qyA(h{}#ykgZvEw9EH%e&UGWGxnuDX[6@,,Ip7ш:x
MҘkrx7jn0z4iӨZy$gBd(G[[¦@n#6
?lV+cp߫#j)F{5~kÏn3لG_FMkz?(˿>;V+.21P?icSԠTfŞu-%ו_V(A<ekY:QraPLC1Oh\P||
[Sf Ub}28<"BDX2r)3lL`;2-cU+%NM*z#&EHM<VY"ݽ/f[XWإ:N!RQMWt<u}(",C,Q;YFm߾z!=e_jx:q{DNv+Ź2w)ZZW7x˱ƏGИe'xlZؠÈVA!lPd2ڧ
qK̆96Op7a~E2V 8 4˫gZ
]Xf_`h^JFB.M0-׆$ޗF u^1\s~+xSab]bp$#|#-{D=/)-ҢbX.&){TPNmˎjPit(B&"z$Irfmg99NGEKF80CrYil
FIn{0jpL@8\.N
)^zCG{ZsSFqg,$"W6a+۶{b`
g &t{g*S-U;(ŇC3XdDf6s!ˬsǻIu`Nm+kc^r )]yM
A{{#KL;z_5{R[NX-'S(fcNyB/hh# HAtk "cHՂ
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.BSF.4.21.0009151100150.323-101000>
