OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Portwood, Jason (JPortwoodstrategicit.net)
Date: Thu Jul 12 2001 - 14:08:31 CDT

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    >
    >
    > So simple things like going into all the folders and chmod'n
    > things is a very good idea for a lil extra security.
    >
    > along with copying /bin/sh to /tmp/
    > and chmod 0 /tmp/sh
    >

    Wouldn't it be a better practice to just mount all the partitions that don't
    need suid as nosuid? Just off the top of my head those candidates would
    be

    /tmp
    /home
    /var

    Is there a good reason for not doing this?

    Jason Portwood
    jasoniac.net

    To Unsubscribe: send mail to majordomoFreeBSD.org
    with "unsubscribe freebsd-security" in the body of the message