Subject: Re: disklabel(8) and machdep on-disk structures issues
To: None <tech-kern@NetBSD.org, tech-security@NetBSD.org>
From: der Mouse <mouse@Rodents.Montreal.QC.CA>
List: tech-security
Date: 11/08/2003 03:26:27
>>> [...]; and we can then prohibit user writes of the disklabel
>>> sectors all the time, no matter what,
>> I would find this last significantly annoying if it were to ever
>> make it into any version I use; [...]

[tls]
> It's already there, and has been for years.  See the discussion of
> securelevel in the init manual page.

[mrg]
> see "disklabel -W"

See "no matter what" in the above quote.  If it depends on securelevel,
if it depends on whatever that ioctl is that disklabel -W does, it's
not being done no matter what.

/~\ The ASCII				der Mouse
\ / Ribbon Campaign
 X  Against HTML	       mouse@rodents.montreal.qc.ca
/ \ Email!	     7D C8 61 52 5D E7 2D 39  4E F1 31 3E E8 B3 27 4B