Re: www user than root

From: Maxim Konovalov (maxim_at_macomnet.ru)
Date: 06/23/05

  • Next message: Jeremie Le Hen: "Re: www user than root"
    Date: Thu, 23 Jun 2005 17:23:23 +0400 (MSD)
    To: Bruce M Simpson <bms@spc.org>
    
    

    [...]
    > You could do something like this in FreeBSD 5-STABLE by hacking the
    > in_pcbbind_setup() function in src/sys/netinet/in_pcb.c to not just
    > call suser_cred(), but to instead perform a group check, by calling
    > groupmember(some_privileged_socket_group, cred).

    mac_portacl(4)

    -- 
    Maxim Konovalov
    _______________________________________________
    freebsd-net@freebsd.org mailing list
    http://lists.freebsd.org/mailman/listinfo/freebsd-net
    To unsubscribe, send any mail to "freebsd-net-unsubscribe@freebsd.org"
    

  • Next message: Jeremie Le Hen: "Re: www user than root"

    Relevant Pages

    • Re: gettext/GPLv4 virus infects FreeBSD
      ... remember that the FreeBSD ports tree is not branched. ... You might find it easier jpd, by cutting down the time spent calling ... We don't play the blame game here. ...
      (comp.unix.bsd.freebsd.misc)
    • [Full-Disclosure] Re: whats to come chapter 1.
      ... I have far better security skills then you will ever have. ... calling no evidence ... >So are you calling yourself stupid? ... Hacking not illegal. ...
      (Full-Disclosure)
    • Re: Unfortunate dynamic linking for everything
      ... > and certainly worthy of special builds. ... are some reasons that FreeBSD doesn't make it into more places. ... Calling them 'tricks' ...
      (freebsd-current)
    • Re: problems with old SSH client and
      ... What operating system is the older machine running ... The new system is just a plain old FreeBSD 6.2 system ... Calling ... Mail has the best spam protection around ...
      (freebsd-questions)
    • [Full-Disclosure] Re: whats to come chapter 1.
      ... calling no evidence ... >So are you calling yourself stupid? ... >evidence must prove guilt ... Hacking not illegal. ...
      (Full-Disclosure)