OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Dug Song (dugsong_at_monkey.org)
Date: Tue Aug 06 2002 - 12:36:28 CDT

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    On Tue, Aug 06, 2002 at 07:02:57PM +0200, Han wrote:

    > [/etc/systrace]# systrace -a /usr/sbin/tcpdump -e -n -tttv -r /var/log/pflog
    > syntax error
    > /etc/systrace/usr_sbin_tcpdump:2: systax error.
    > zsh: 4831 segmentation fault (core dumped) systrace -a /usr/sbin/tcpdump -e -n -tttv -r /var/log/pflog
    >
    > Should I s/native-__sysctl/native-sysctl/ ?

    try -current.

    > Does the "$USER" mean that I can use systrace and I can run the script
    > as a restricted user?

    it means that the program can only setuid() to the user who started it.
    not that anyone would have tcpdump be setuid root anyway...

    -d.

    ---
    http://www.monkey.org/~dugsong/