Date: Mon, 15 Jun 1998 17:15:48 -0400 From: Matthew Hunt <mph@pobox.com> To: Niall Smart <njs3@doc.ic.ac.uk>, Darren Reed <avalon@coombs.anu.edu.au> Cc: eivind@yes.no, dima@best.net, jayrich@room101.sysc.com, security@FreeBSD.ORG Subject: Re: bsd securelevel patch question Message-ID: <19980615171548.A3879@mstar.astro.psu.edu> In-Reply-To: <E0ylbI3-0004aS-00@oak71.doc.ic.ac.uk>; from Niall Smart on Mon, Jun 15, 1998 at 04:35:23PM %2B0100 References: <mph@pobox.com> <E0ylbI3-0004aS-00@oak71.doc.ic.ac.uk>
next in thread | previous in thread | raw e-mail | index | archive | help
On Mon, Jun 15, 1998 at 04:35:23PM +0100, Niall Smart wrote: > > > > 1 you mean. > > Thats greater than 1, i.e., >= 2, not a quote and then 1. Yep, my mental block was elsewhere. :-) > At securelevel 1 disks can be unmounted and their device files accessed. > Securelevel 1 is no good. You are right; I thought the question was when the schg flags became "permanent". I forgot that the device files could circumvent that. Regards, Matt -- Matthew Hunt <mph@pobox.com> * Stay close to the Vorlon. http://www.pobox.com/~mph/pgp.key for PGP public key 0x67203349. To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe security" in the body of the message
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?19980615171548.A3879>
