Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 15 Jun 1998 17:15:48 -0400
From:      Matthew Hunt <mph@pobox.com>
To:        Niall Smart <njs3@doc.ic.ac.uk>, Darren Reed <avalon@coombs.anu.edu.au>
Cc:        eivind@yes.no, dima@best.net, jayrich@room101.sysc.com, security@FreeBSD.ORG
Subject:   Re: bsd securelevel patch question
Message-ID:  <19980615171548.A3879@mstar.astro.psu.edu>
In-Reply-To: <E0ylbI3-0004aS-00@oak71.doc.ic.ac.uk>; from Niall Smart on Mon, Jun 15, 1998 at 04:35:23PM %2B0100
References:  <mph@pobox.com> <E0ylbI3-0004aS-00@oak71.doc.ic.ac.uk>

next in thread | previous in thread | raw e-mail | index | archive | help

On Mon, Jun 15, 1998 at 04:35:23PM +0100, Niall Smart wrote:

> > >  > 1 you mean.
> 
> Thats greater than 1, i.e., >= 2,  not a quote and then 1.

Yep, my mental block was elsewhere. :-)

> At securelevel 1 disks can be unmounted and their device files accessed.
> Securelevel 1 is no good.

You are right; I thought the question was when the schg flags became
"permanent".  I forgot that the device files could circumvent that.

Regards,
Matt

-- 
Matthew Hunt <mph@pobox.com> * Stay close to the Vorlon.
http://www.pobox.com/~mph/pgp.key for PGP public key 0x67203349.

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe security" in the body of the message



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?19980615171548.A3879>