Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 29 Aug 2013 22:39:26 +0300
From:      Kozlov Sergey <kozlov.sergey.404@gmail.com>
To:        freebsd-questions@freebsd.org
Subject:   chmod go-r /tmp
Message-ID:  <CAGtNJ9vHc_21bXXycuQ6Br36rnwiEkZpD=vW7SMHANZ8XjwksA@mail.gmail.com>

next in thread | raw e-mail | index | archive | help
Hi

As I know, all the applications know the names of files they create in /tmp.
So is it ok to "chmod go-r /tmp" for security reasons, so the attacker
can't get a list of temp files? Won't it break any applications?

I search a lot, but I couldn't find anything about it.
All the /tmp security hardening advised is to set nosuid,noexec for the
partition.

Tanks for answers.

Kozlov Sergey.



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?CAGtNJ9vHc_21bXXycuQ6Br36rnwiEkZpD=vW7SMHANZ8XjwksA>