Re: Secure Linux From Scratch
Joel Miller <[email protected]>
| Newsgroups | gmane.linux.lfs.security |
|---|---|
| Message-ID | <[email protected]> |
On Thu, 18 Dec 2003 12:14:37 -0500, Archaic <[email protected]> wrote: > On Mon, Dec 15, 2003 at 06:20:22PM -0500, ashes wrote: > >> In this case a package-builder, I'll name Bin, would own /usr/local, >> _maybe_ even /usr/bin. So now Bin wouldn't need sudo make install to >> upgrade non vital components, and user Bin wouldn't be able to install >> an suid program without us knowing in advance. This also teaches the >> admin to use root less and less. > > http://www.linuxfromscratch.org/ \ > hints/downloads/files/more_control_and_pkg_man.txt > I would just like to point out that I am a great fan of this hint from a security standpoint and a package management standpoint. The hint is still good and only minor deviation from it is needed for 5.0. -- Registered LFS User 6929 Registered Linux User 298182 -- http://linuxfromscratch.org/mailman/listinfo/lfs-security FAQ: http://www.linuxfromscratch.org/faq/ Unsubscribe: See the above information page