Summary:Preventing users from rsh'ing

From: Freedman, Dan (Dan.Freedman@GSC.GTE.Com)
Date: Fri Jan 30 1998 - 08:07:39 CST


Many have sent responses indicating that if a file owned by root is in a
user's home directory, its permissions may still be changed and removed
by that user. They are right, of course. Thus copying a blank, root
owned ( permission 000) .rhosts file to a user's home directory is not a
secure solution. Most suggested tcpwrappers if I still needed some rsh
capability.

Thanks you for your responses,
Dan Freedman



This archive was generated by hypermail 2.1.2 : Fri Sep 28 2001 - 23:12:30 CDT