Eygene A. Ryabinkin
freebsd at rea.mbslab.kiae.ru
Thu Jul 21 07:45:37 GMT 2005
> Since an OPIE password can only be used once, any program that uses OPIE
> needs to be able to read and write /etc/opiekeys. There is no valid reason
> for a program to just want to read the file.
Good point. I've missed it. Thanks.
So, the arguments for permissions 0600 instead of 0644 are getting stronger.
Probably I should make a PR?
More information about the freebsd-hackers