OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Bugtraq archives for 2nd quarter (Apr-Jun) 1998: Re: Full Armor

Re: Full Armor

S M Phillips (phillistRAMHB.CO.NZ)
Fri, 12 Jun 1998 11:17:46 +1200

to prevent this add the following to MSDOS.SYS under the [Options]
section.

BootSafe=0
BootKeys=0
BootWarn=0
AutoScan=0
Network=1 (if you have networking enabled)

while this does tend to stop most of the general populace from bypassing
the restrictions in effect - it still doesnt stop someone booting off a
disk, you could use a bios setting to boot from C before A (if your bios
supports it), hence bypassing this as well - yet, the fact still remains,
dos is never 100% secure, all someone would need to do is gain write
access to the c:\msdos.sys file which shouldnt be a hard thing to do given
a bit of time :)


--
Steve.