suid bit files + securing FreeBSD (new program: LockDown)

Socketd db at traceroute.dk
Sun Jul 27 05:26:42 PDT 2003


On Sun, 27 Jul 2003 06:29:33 -0500
D J Hawkey Jr <hawkeyd at visi.com> wrote:

> This looks like a good idea, to me.

Great :-)

> Your plan is to incorporate this into/for rc.conf, and your program
> would be run at boot?

It is meant to be installed from the port collection and then executed
once, but you can of course run it as many times you want (but if you
haven't changed the sytem, since the last time you ran it, this makes no
sense). 

> What language do you think you'll use (hopefully,
> something supported by the base OS, e.g., not ruby, modula, or perl)?

I use C++

br
db


More information about the freebsd-security mailing list