[prev in list] [next in list] [prev in thread] [next in thread] 

List:       netbsd-tech-security
Subject:    Re: /etc/security and duplicate user IDs
From:       Jukka Salmi <j+nbsd () 2007 ! salmi ! ch>
Date:       2007-03-23 18:30:01
Message-ID: 20070323183001.GA7610 () moray ! salmi ! ch
[Download RAW message or body]

Jukka Salmi --> tech-security (2007-03-22 13:53:05 +0100):
> Curt Sampson --> tech-security (2007-03-22 14:42:59 +0900):
> > But this seems pretty simple to resolve. Due to the root/toor thing, we
> > already have special-case code to deal with a duplicate user account
> > (and even a comment saying how you can enable or disable it). Just
> > changing the script to ignore a list of "ok duplicate user IDs" pulled
> > from a variable in /etc/security.conf, with 1 as the default value,
> > would fix this in quite a nice way.
> 
> Agreed. I'll implement this if I find enough time.

FYI: I sent a patch which implements a slightly more flexible solution
as misc/36063.


Cheers, Jukka

-- 
bashian roulette:
$ ((RANDOM%6)) || rm -rf ~
[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic