OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Bugtraq archives for 2nd quarter (Apr-Jun) 1994: Re: NFS exporting

Re: NFS exporting

Perry E. Metzger (perrysnark.imsi.com)
Fri, 15 Apr 1994 06:53:09 -0400

Paul Graham says:
> is it the case that nis/nsf cannot be used safely in a hostile
> (university) shared writeable environment (say using recent vintage
> sunsOS)?  i've heard that you can secure it and i've heard that you
> can't.

If people have access to your lan or another network that packets to
your machine are going over, its very hard to stop them from stealing
NFS file handles. In an environment like the one you describe, the
potential attackers have access to your lan.

Perry