Re: bsd.security.see_other_uids affecting netstat?

看板FB_security作者時間16年前 (2009/12/03 19:32), 編輯推噓0(000)
留言0則, 0人參與, 最新討論串2/2 (看更多)
2009/12/3 Marc Silver <marcs@draenor.org>: > Hi guys, > > Please forgive if this is a bit of a noob question > > I noticed that when the bsd.security.see_other_uids sysctl is set to 0, the > netstat command gives no output for users (non-root). No, it gives no access to sockets (switched to per-inpcb since 7) not owned by that user. See mac_seeotheruids(4): DESCRIPTION The mac_seeotheruids policy module, when enabled, denies users to see processes or sockets owned by other users. -- wbr, pluknet _______________________________________________ freebsd-security@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-security To unsubscribe, send any mail to "freebsd-security-unsubscribe@freebsd.org"
文章代碼(AID): #1B5w6pP- (FB_security)
文章代碼(AID): #1B5w6pP- (FB_security)