From owner-freebsd-stable Tue Jul 4 2: 3:21 2000 Delivered-To: freebsd-stable@freebsd.org Received: from salmon.maths.tcd.ie (salmon.maths.tcd.ie [134.226.81.11]) by hub.freebsd.org (Postfix) with SMTP id 1139C37B5E2 for ; Tue, 4 Jul 2000 02:03:13 -0700 (PDT) (envelope-from dwmalone@maths.tcd.ie) Received: from walton.maths.tcd.ie by salmon.maths.tcd.ie with SMTP id ; 4 Jul 2000 10:03:05 +0100 (BST) Date: Tue, 4 Jul 2000 10:03:05 +0100 From: David Malone To: cjclark@alum.mit.edu Cc: Brad Knowles , Vivek Khera , freebsd-stable@FreeBSD.ORG Subject: Re: fstab mount options Message-ID: <20000704100305.A10201@walton.maths.tcd.ie> References: <14689.1084.894512.504331@onceler.kcilink.com> <20000703163045.A248@dialin-client.earthlink.net> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline User-Agent: Mutt/1.2.2i In-Reply-To: <20000703163045.A248@dialin-client.earthlink.net>; from cristjc@earthlink.net on Mon, Jul 03, 2000 at 04:30:45PM -0700 Sender: owner-freebsd-stable@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.ORG On Mon, Jul 03, 2000 at 04:30:45PM -0700, Crist J. Clark wrote: > The risk I see is does this method let users mount with setuid? Not by the looks of things - you can also only mount on directories owned by yourself. It's enforced in the mount syscall. temp1# sysctl -w vfs.usermount=1 vfs.usermount: 0 -> 1 temp1# suspend Suspended > mount vn0 /mnt mount: Operation not permitted > mkdir blah > mount vn0 blah > mount | fgrep blah vn0 on /usr/home/dwmalone/blah (ufs, local, nodev, nosuid, mounted by dwmalone, writes: sync 2 async 0, reads: sync 14 async 0) > umount blah > fg su temp1# sysctl -w vfs.usermount=0 David. To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-stable" in the body of the message