Re: Securing FreeBSD.

From: Albert Shih <Albert.Shih_at_obspm.fr>
Date: Fri, 04 Apr 2025 18:36:04 UTC
Le 04/04/2025 à 13:23:38-0400, Paul Procacci a écrit
> On Fri, Apr 4, 2025 at 1:14 PM Albert Shih <Albert.Shih@obspm.fr> wrote:
> >
> >
> 
> So you want to be root, without having the power of root.
> Try logging into the system with a different user and the problem is
> solved -- tongue and cheek.

No, I want to make the system in a state where root *cannot* remove some
file. 

If I put a file under / with adhoc chflags, put the system in securelevel 2
you cannot (or I really like to know how) easily remove the file. 

In other term I would like to create a system where it's impossible (I'm
not talking about a security problem) to remove file without be physically
in the front of the server. 

Regards


-- 
Albert SHIH 🦫 🐸
France
Heure locale/Local time:
ven. 04 avril 2025 20:31:58 CEST