~/.hosts patch

John-Mark Gurney gurney_j at resnet.uoregon.edu
Wed Jun 21 21:22:19 UTC 2006


John Birrell wrote this message on Wed, Jun 21, 2006 at 07:31 +0000:
> We need to retain the integrity of a DNS lookup. If there are any work
> arounds required for poor DNS lookups, then let an administrator configure
> them!

As long as we allow libraries to be preloaded on binaries, someone can
override the resolver library, and have their own hooks there...  Killing
this feature doesn't make anything more secure for the user...

-- 
  John-Mark Gurney				Voice: +1 415 225 5579

     "All that I will do, has been done, All that I have, has not."


More information about the freebsd-current mailing list