From owner-freebsd-questions@FreeBSD.ORG Sun Feb 10 08:35:59 2008 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 188B216A41B for ; Sun, 10 Feb 2008 08:35:59 +0000 (UTC) (envelope-from gs_stoller@juno.com) Received: from outbound-mail.dca.untd.com (outbound-mail.dca.untd.com [64.136.47.15]) by mx1.freebsd.org (Postfix) with SMTP id 9C24413C459 for ; Sun, 10 Feb 2008 08:35:58 +0000 (UTC) (envelope-from gs_stoller@juno.com) Received: from outbound-bu1.dca.untd.com (webmail09.dca.untd.com [10.171.12.149]) by smtpout01.dca.untd.com with SMTP id AABD47P4QAN8YNMA for (sender ); Sun, 10 Feb 2008 00:35:26 -0800 (PST) X-UNTD-OriginStamp: /s5f1SIGSI3+WdnoYQ8yRKDAgpOmg2HdrUfstQ/RSYQE4VYlrve2qQ== Received: (from gs_stoller@juno.com) by webmail09.dca.untd.com (jqueuemail) id NBKWRVP6; Sun, 10 Feb 2008 00:34:35 PST Received: from [71.190.134.167] by webmail09.dca.untd.com with HTTP: Sun, 10 Feb 2008 08:34:21 GMT X-Originating-IP: [71.190.134.167] Mime-Version: 1.0 From: "gs_stoller@juno.com" Date: Sun, 10 Feb 2008 08:34:21 GMT To: xfb52@dial.pipex.com X-Mailer: Webmail Version 4.0 Message-Id: <20080210.033421.6825.0@webmail09.dca.untd.com> X-UOL-TAGLINE: true X-ContentStamp: 1:1:3005213129 X-MAIL-INFO: 21c3734ab75b4fb76b4f5b4fc717e3aa7707d333d3efdfdecadfaff7f763ca57dbc34a8ae7df73b77b8bca5b02022bbf035b73 X-UNTD-Peer-Info: 10.171.12.149|webmail09.dca.untd.com|outbound-bu1.dca.untd.com|gs_stoller@juno.com Content-Type: text/plain; charset=windows-1252 Content-Transfer-Encoding: quoted-printable Content-Disposition: inline X-Content-Filtered-By: Mailman/MimeDel 2.1.5 Cc: freebsd-questions@freebsd.org Subject: Re: /usr/local/etc/rc.d/ scripts and non-root user X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sun, 10 Feb 2008 08:35:59 -0000 On Wed, 06 Feb 2008, Alex Zbyslaw wrote SNIP > Setuid/gid bits on shell scripts aren't considered safe, however and m= ay = > even be disabled. THERE IS NO REASON FOR THIS, JUST USE THE FILE-SYSTEM TO PROTECT THE FIL= ES (MAKE THEM NOT WRITEABLE). Scripts are no more susceptible to sabota= ge and misuse than binary files, it is just that scripts can be more eas= ily decoded and understood than binary files, and so management (that us= ually doesn't know much about a computer system) becomes frightened and = issues orders to relieve their stress. _____________________________________________________________ Click here to find great deals on vending machines. http://thirdpartyoffers.juno.com/TGL2121/fc/Ioyw6i3oCSwt1BYLoh5xXATYqaxK= ALXWJLFa8J0MSGPzQwGFpMau8i/