[5461] in RedHat Linux List

home help back first fref pref prev next nref lref last post

Re: RedHat4.0 security

daemon@ATHENA.MIT.EDU (Erik Troan)
Thu Nov 21 17:25:20 1996

Date: Thu, 21 Nov 1996 14:05:47 -0500 (EST)
From: Erik Troan <ewt@redhat.com>
To: redhat-list@redhat.com
In-Reply-To: <199611211644.KAA25405@babba.cu-online.com>
Resent-From: redhat-list@redhat.com
Reply-To: redhat-list@redhat.com

On Thu, 21 Nov 1996, Otto Hammersmith wrote:

> I'd like to point out that it's still a good idea to use the find
> command to, 1) find setuid binaries not installed with rpm, and 2) to
> see if there are any binaryes that are setuid that ought not to be.
> It'd be pretty silly to trust the RPM database on the machine, if
> you're sworried that i's been broken into.

Very true -- if you're worried about a system that may have been compromised
you should definitely use find.

Erik

-------------------------------------------------------------------------------
|       I told you I'm not very bright -- Sugar in "Some Like It Hot"         |
|                                                                             |
|   Erik Troan   =   http://sunsite.unc.edu/ewt/   =   ewt@sunsite.unc.edu    |


--
  PLEASE read the Red Hat FAQ, Tips, Errata and the MAILING LIST ARCHIVES!
  ________________________________________________________________________
  http://www.redhat.com/RedHat-FAQ   http://www.redhat.com/RedHat-Errata
  http://www.redhat.com/RedHat-Tips  http://www.redhat.com/mailing-lists
  ------------------------------------------------------------------------
To unsubscribe: mail -s unsubscribe redhat-list-request@redhat.com < /dev/null


home help back first fref pref prev next nref lref last post