NEVERMIND!  (was: Local Denial of Service: logger(1))
    Ronald F. Guilmette 
    rfg at tristatelogic.com
       
    Mon May 26 03:37:08 UTC 2014
    
    
  
In message <2091.1401074804 at server1.tristatelogic.com>, I wrote:
>==========================================================================
>#!/bin/sh
>
>while (1)
>    dd if=/dev/random bs=15 count=1 | od -c | xargs logger
>end
>==========================================================================
DUH!
I forgot that newsyslog(8) should limit the size of /var/log/messages, and
that as long as you limit the size of that to a reasnable value, and as
long as you have newsyslog(8) only keeping a finite & reasonable number
of "rotated out" copies, then /var won't fill up.
My apologies to everyone for the distraction.
    
    
More information about the freebsd-security
mailing list