Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 12 Jul 2001 15:08:31 -0400
From:      "Portwood, Jason" <JPortwood@strategicit.net>
To:        "'security@FreeBSD.ORG'" <security@FreeBSD.ORG>
Subject:   RE: FreeBSD 4.3 local root PREVENTIONS
Message-ID:  <6381A6A8826BD31199500090279CAFBA2BD50E@exchange.strategicit.net>

next in thread | raw e-mail | index | archive | help
> 
> 
> So simple things like going into all the folders and chmod'n 
> things is a very good idea for a lil extra security.
> 
> along with copying /bin/sh to /tmp/
> and chmod 0 /tmp/sh
> 

Wouldn't it be a better practice to just mount all the partitions that don't
need suid as nosuid?  Just off the top of my head those candidates would
be  

/tmp
/home
/var

Is there a good reason for not doing this?

Jason Portwood  
jason@iac.net


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?6381A6A8826BD31199500090279CAFBA2BD50E>