Re: Background fsck is broken

From: Poul-Henning Kamp (phk_at_phk.freebsd.dk)
Date: 12/15/04

  • Next message: Ted Lindgreen: "acpi is broken since about 2004/12/01"
    To: Matthias Andree <ma@dt.e-technik.uni-dortmund.de>
    Date: Wed, 15 Dec 2004 12:18:38 +0100
    
    

    In message <m33by7zula.fsf@merlin.emma.line.org>, Matthias Andree writes:
    >"Poul-Henning Kamp" <phk@phk.freebsd.dk> writes:
    >
    >> In message <20041215105326.GO25967@ip.net.ua>, Ruslan Ermilov writes:
    >>
    >>>Are you saying it's not possible to downgrade the open to
    >>>(r=1, w=0, e=0) when a file system is downgraded from R/W to R/O?
    >>
    >> Yes: that would make a read-only mounted filesystem vulnerable to
    >> overwriting through the /dev entry and we don't want that.
    >>
    >> The problem is that we do not in the kernel know if we are in single
    >> user mode or not.
    >
    >What difference does this make? Aren't secure levels or mandatory access
    >control and similar schemes sufficient to prevent tampering with direct
    >device access?

    No.

    >Why would not root be allowed to nuke a read-only mounted file system?
    >root has other means to trash a system, including writing junk into the
    >hardware registers.

    Just because root can go out of his way to do something stupid doesn't
    mean that we should make it easier to make an honest mistake.

    >On my wishlist, I've always wanted a "networked single user mode"
    >(i. e. only sshd running, only root login with key possible), and I've
    >always wondered why the whole system recovery is focused so much on the
    >principle of a "single-user console".

    Implement it! I've wanted that for a long time too.

    -- 
    Poul-Henning Kamp       | UNIX since Zilog Zeus 3.20
    phk@FreeBSD.ORG         | TCP/IP since RFC 956
    FreeBSD committer       | BSD since 4.3-tahoe    
    Never attribute to malice what can adequately be explained by incompetence.
    _______________________________________________
    freebsd-current@freebsd.org mailing list
    http://lists.freebsd.org/mailman/listinfo/freebsd-current
    To unsubscribe, send any mail to "freebsd-current-unsubscribe@freebsd.org"
    

  • Next message: Ted Lindgreen: "acpi is broken since about 2004/12/01"

    Relevant Pages

    • Re: Background fsck is broken
      ... > overwriting through the /dev entry and we don't want that. ... Aren't secure levels or mandatory access ... Why would not root be allowed to nuke a read-only mounted file system? ... I've always wanted a "networked single user mode" ...
      (freebsd-current)
    • Re: Out of disk space
      ... | messages after the system comes up that the root hard drive is full. ... I am new to SCO OpenServer. ... I couldn't find a boot or root disk either. ... You could then hit CTRL-D to proceed to multi user mode, but you want the other option, which is to go into single-user mode by entering root's password. ...
      (comp.unix.sco.misc)
    • Re: Out of disk space
      ... | messages after the system comes up that the root hard drive is full. ... I am new to SCO OpenServer. ... I couldn't find a boot or root disk either. ... DELete) to proceed to multi user mode, but you want the other option, ...
      (comp.unix.sco.misc)
    • Re: Out of disk space
      ... >> | messages after the system comes up that the root hard drive is full. ... >> | When I try to login as root I get a message that I must exec login ... I couldn't find a boot or root disk either. ... >> DELete) to proceed to multi user mode, but you want the other option, ...
      (comp.unix.sco.misc)
    • Re: Confused: Single User Mode and LVM Maint. mode
      ... The root volumegroup is activated. ... which is used when the LVM configuration is ... Extending /usr has to be done in single user mode. ...
      (comp.sys.hp.hpux)