Skip site navigation (1)Skip section navigation (2)
Date:      05 Oct 2000 15:30:00 +0200
From:      Dag-Erling Smorgrav <des@ofug.org>
To:        Alex Prohorenko <white@alkar.net>
Cc:        freebsd-security@FreeBSD.ORG
Subject:   Re: BSD chpass (fwd)
Message-ID:  <xzpog0zv2jr.fsf@flood.ping.uio.no>
In-Reply-To: Alex Prohorenko's message of "5 Oct 2000 13:25:08 GMT"
References:  <20001004053422.8A3901F19@static.unixfreak.org> <8rhvfk$12ue$2@pandora.alkar.net>

next in thread | previous in thread | raw e-mail | index | archive | help
Alex Prohorenko <white@alkar.net> writes:
> Dima Dorfman <dima@unixfreak.org> wrote:
> > Unfortunatly it isn't that easy if you're running with securelevel > 0
> > since chpass is installed with the schg (system immutable) flag on by
> > default.  Oh well, guess it's time to reboot some hosts.  :-/
> I do not see any single problem here.
> 
> chflags noschg /usr/bin/chpass
> chown u-s /usr/bin/chpass 
> 
> Sounds pretty easy, isn't it?

Except that chflags doesn't work at higher securelevels.

DES
-- 
Dag-Erling Smorgrav - des@ofug.org


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?xzpog0zv2jr.fsf>