More secure permissions for /root and /etc/sysctl.conf

Miroslav Lachman 000.fbsd at quip.cz
Sun Feb 2 13:58:14 UTC 2020


Ben Woods wrote on 2020/02/02 02:46:

[...]
> DragonFlyBSD 5.6.2 = 700
> HardenedBSD build 104 = 755
> NetBSD 9.0 RC1 = 755
> OpenBSD 6.6 = 700
> 
> For what it's worth, I am broadly supportive of this because I see no
> reason for /root to be world readable.

+1

I see no reason for world readable /root too.
We always set user's homes to 0700 (subdirs of /usr/home).

Miroslav Lachman


More information about the freebsd-hackers mailing list