The debian-private mailing list leak, part 1. Volunteers have complained about Blackmail. Lynchings. Character assassination. Defamation. Cyberbullying. Volunteers who gave many years of their lives are picked out at random for cruel social experiments. The former DPL's girlfriend Molly de Blanc is given volunteers to experiment on for her crazy talks. These volunteers never consented to be used like lab rats. We don't either. debian-private can no longer be a safe space for the cabal. Let these monsters have nowhere to hide. Volunteers are not disposable. We stand with the victims.

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: suid programs and security



-----BEGIN PGP SIGNED MESSAGE-----

On Mon, 17 Feb 1997, Steve McIntyre wrote:

> >Is not required but practical... The purpose is to have a good place to 
> >know which programs are suid. suidregister registers each package in 
> >/etc/suid.conf with all the good information. It was easy to use 
> >(suidregister [-s my_package] filename user group permissions )  
> >and an admin can easily warp it so he will be warn if anything are change.
> >
> >Add this to a restrictive dpkg who remove all suid off the package (why 
> >not make it the standard ?) and you will have, in a snap, a more secure 
> >system.
> 
> OK, this sounds better. Your original mail suggested you though it a bug
> for programs not to use suidmanager. I'd prefer to wait for dpkg
> enhancements to deal with issues like this, anyway, so we can have the
> standard package maintenance tool do all of it.

I think of it more like a "missing man page" bugs; Something you looking 
for but find it doesn't exist :)


- ---------------------------------------------------------------------
 "When all else fails, read the instructions."      
                                          -- Cahn's Axiom
- ---------------------------------------------------------------------
Fabien Ninoles aka le Veneur aka le Corbeau     
E-mail: fab@tzone.org
WebPage: http://www-edu.gel.usherb.ca/ninf01 
E-mail me with "get pgp key" in the subject to get my public key
PGP KEY [E3723845]: 1C C1 4F A6 EE E5 4D 99  4F 80 2D 2D 1F 85 C1 70 
- ----------------------------------------------------------------------

-----BEGIN PGP SIGNATURE-----
Version: 2.6.2

iQCVAwUBMwn+uFX6fc7jcjhFAQHXGgQAjwf0Qb2dlW3TJhnqqHoXwhwYMjmmsoIW
2ugJpDzqMPTsk+kerg1XNrviLW6zDEq5QkicaYLSmhZ9B+cW4chZmjEOHQ1Q6Usx
o/4Mr7ndtmIqpnzRlix5lOg2BK82TMLB4Elz9666HqqLh0oqoI2nm6C3HrT3GLiX
SquPOnaALbs=
=FvBt
-----END PGP SIGNATURE-----


--
Please respect the confidentiality of material on the debian-private list.
TO UNSUBSCRIBE FROM THIS MAILING LIST: e-mail the word "unsubscribe" to
debian-private-REQUEST@lists.debian.org . Trouble? e-mail to Bruce@Pixar.com