bin owns stuff (was: Installing 4.3-Tahoe on a VAX)

Henry Spencer henry at utzoo.uucp
Fri Sep 16 04:27:19 AEST 1988


In article <4828 at saturn.ucsc.edu> haynes at ucscc.UCSC.EDU (Jim Haynes) writes:
>Now a second related issue is why have all those binaries mode 755 or
>worse instead of 711, with 755 to be used only where needed? ...

Well, for one thing, it's awfully hard to run a debugger on a misbehaving
program when you can't read the binary.  711 can be done, but the headaches
outweigh the advantages for sites that aren't desperately concerned about
security.  (And surely you don't think that trying to keep the crackers
ignorant is going to help much -- they probably know more than you do
about your system's weaknesses.)
-- 
NASA is into artificial        |     Henry Spencer at U of Toronto Zoology
stupidity.  - Jerry Pournelle  | uunet!attcan!utzoo!henry henry at zoo.toronto.edu



More information about the Comp.bugs.4bsd.ucb-fixes mailing list