Subject: Re: NetBSD 1.5.2 default configuration
To: Wojciech Bojdol <wojboj@htcon.pl>
From: None <xs@kittenz.org>
List: tech-security
Date: 02/03/2002 16:01:54
on Sun, Feb 03, 2002 at 04:36:33PM +0100, Wojciech Bojdol wrote:
> It cost me time. On old machines - could be to much of time.
> last with support of pipe could be good, but now the best is to not compress
> that files.

Well, ok, if in your specific case it's too much, then change your configs,
but making it the default doesn't seem right.

> > Not really, put the output from crontab -l into a textarea, and then when
> > the user clicks "save" pipe the current contents of that textarea into
> > crontab -. Assuming whatever user executes the (nonsuid) script has
> > rights to run crontab, which it would if you used a system like apache's
> > suEXEC.
> 
> In my oppinion it's insecure model.
> Good, tested suid script/program would be better for that.

Um, isn't that what crontab and suexec are? :)

> > Or as a users login shell.
> 
> That users need to run pppd as root ?

yes