Subject: Re: /etc/security and duplicate user IDs
To: None <tech-security@netbsd.org>
From: Jukka Salmi <j+nbsd@2007.salmi.ch>
List: tech-security
Date: 03/23/2007 19:30:01
Jukka Salmi --> tech-security (2007-03-22 13:53:05 +0100):
> Curt Sampson --> tech-security (2007-03-22 14:42:59 +0900):
> > But this seems pretty simple to resolve. Due to the root/toor thing, we
> > already have special-case code to deal with a duplicate user account
> > (and even a comment saying how you can enable or disable it). Just
> > changing the script to ignore a list of "ok duplicate user IDs" pulled
> > from a variable in /etc/security.conf, with 1 as the default value,
> > would fix this in quite a nice way.
> 
> Agreed. I'll implement this if I find enough time.

FYI: I sent a patch which implements a slightly more flexible solution
as misc/36063.


Cheers, Jukka

-- 
bashian roulette:
$ ((RANDOM%6)) || rm -rf ~