svn commit: r252017 - in head/usr.sbin/bsdconfig/security: . include
Devin Teske
dteske at FreeBSD.org
Thu Jun 20 05:40:12 UTC 2013
Author: dteske
Date: Thu Jun 20 05:40:11 2013
New Revision: 252017
URL: http://svnweb.freebsd.org/changeset/base/252017
Log:
Add debugging (for a case that shouldn't arise, but makes it more obvious
if a menu addition is made in one plce but forgotten in another).
Modified:
head/usr.sbin/bsdconfig/security/include/messages.subr
head/usr.sbin/bsdconfig/security/kern_securelevel
head/usr.sbin/bsdconfig/security/security
Modified: head/usr.sbin/bsdconfig/security/include/messages.subr
==============================================================================
--- head/usr.sbin/bsdconfig/security/include/messages.subr Thu Jun 20 03:55:41 2013 (r252016)
+++ head/usr.sbin/bsdconfig/security/include/messages.subr Thu Jun 20 05:40:11 2013 (r252017)
@@ -46,3 +46,5 @@ msg_securelevel_desc="Configure securele
msg_securelevels_menu_text="This menu allows you to select the securelevel your system runs with.\nWhen operating at a securelevel, certain root privileges are disabled,\nwhich may increase resistance to exploits and protect system integrity.\nIn secure mode system flags may not be overridden by the root user,\naccess to direct kernel memory is limited, and kernel modules may not\nbe changed. In highly secure mode, mounted file systems may not be\nmodified on-disk, tampering with the system clock is prohibited. In\nnetwork secure mode configuration changes to firewalling are prohibited.\n "
msg_securelevels_menu_title="Securelevel Configuration Menu"
msg_system_security_options_menu="System Security Options Menu"
+msg_unknown_kern_securelevel_selection="Unknown kern.securelevel selection"
+msg_unknown_security_menu_selection="Unknown security menu selection"
Modified: head/usr.sbin/bsdconfig/security/kern_securelevel
==============================================================================
--- head/usr.sbin/bsdconfig/security/kern_securelevel Thu Jun 20 03:55:41 2013 (r252016)
+++ head/usr.sbin/bsdconfig/security/kern_securelevel Thu Jun 20 05:40:11 2013 (r252017)
@@ -158,6 +158,8 @@ case "$mtag" in
f_sysrc_set kern_securelevel_enable "YES"
f_sysrc_set kern_securelevel "3"
;;
+*)
+ f_die 1 "$msg_unknown_kern_securelevel_selection"
esac
exit $SUCCESS
Modified: head/usr.sbin/bsdconfig/security/security
==============================================================================
--- head/usr.sbin/bsdconfig/security/security Thu Jun 20 03:55:41 2013 (r252016)
+++ head/usr.sbin/bsdconfig/security/security Thu Jun 20 05:40:11 2013 (r252017)
@@ -165,6 +165,8 @@ while :; do
f_sysrc_set nfs_reserved_port_only "NO" ;;
"3 [ ] $msg_nfs_port") # Same; Toggle value
f_sysrc_set nfs_reserved_port_only "YES" ;;
+ *)
+ f_die 1 "$msg_unknown_security_menu_selection"
esac
done
More information about the svn-src-all
mailing list