Re: [PATCH] Tighten /etc/crontab permissions

看板FB_security作者時間21年前 (2004/08/11 01:04), 編輯推噓0(000)
留言0則, 0人參與, 最新討論串2/10 (看更多)
On Wed, 11 Aug 2004, Xin LI wrote: > Hi folks, > > While investigating OpenBSD's cron implementation, I found that they set > the systemwide crontab (a.k.a. /etc/crontab) to be readable by the > superuser only. The attached patch will bring this to FreeBSD by moving > crontab out from BIN1 group and install it along with master.passwd. Do you have a reason for wanting to do this other than, "OpenBSD does it this way?" I personally see no problems, and some benefit for users being able to see the system crontab. If the superuser needs to run "secret" cron jobs, then there is root's crontab that can be used for this purpose. Can you elaborate on your thinking? Doug -- This .signature sanitized for your protection _______________________________________________ freebsd-security@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-security To unsubscribe, send any mail to "freebsd-security-unsubscribe@freebsd.org"
文章代碼(AID): #116G0X00 (FB_security)
討論串 (同標題文章)
文章代碼(AID): #116G0X00 (FB_security)