Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 2 Oct 2001 09:38:05 +0300
From:      "Igor Melnichuk" <simplyi@skif.net>
To:        <security@FreeBSD.ORG>
Subject:   login.conf & FreeBSD 4.4 
Message-ID:  <004701c14b0c$ce44f140$45e03ac3@skif.net>

next in thread | raw e-mail | index | archive | help
I need advise.

I have a server with installed FreeBSD 4.4 RELEASE .

Limiting users I've created new class "webuser" in login.conf ( fixed limit
on resource - max mem usage, cpu time, core dump size) and do all necessary
steps (compile base `cap_mkdb /etc/login.conf` and assign  new class to user
`chclass user1`)

But in fact this _not_ works when I logged like user1 or run perl script
(infinite loop)  with his privileges.

On machine with FreeBSD 4.3 RELEASE  this works well (kernel kill script
according to login.conf rules)

Any ideas ?

PS I've  read FreeBSD 4.4-RELEASE Errata (
http://www.freebsd.org/releases/4.4R/errata.html ) 2 Security Advisories
(Support for per-user ~/.login_conf files) I believe it has no relation to
problem

login.conf
--------------
webuser:\
        :cputime=10s:\
        :filesize=unlimited:\
        :datasize=20M:\
        :stacksize=20M:\
        :coredumpsize=unlimited:\
        :memoryuse=20M:\
        :memorylocked=20M:\
        :maxproc=20:\
        :openfiles=20:\
        :priority=0:
---------------

Igor Melnichuk
simplyi@skif.net


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?004701c14b0c$ce44f140$45e03ac3>