I have some concerns about Solaris security. On my system, freshly
cloned, /dev/ip, /dev/tcp, /dev/arp, etc. are all world writable!
(Actually they are links to ../devices/pseudo/.... ; those are the
files with the bad? permissions.) So, is this really bad or do the
device drivers have some built-in intelligence about permissions.
For example, joe user shouldn't be able to open /dev/le and read all
the packets coming into the machine (which would include unencrypted
passwords), but joe user should be able to at least read protocol
statistics from /dev/le.
Could you please at least mail me a response? This newsgroup has
so much volume that it's hard to keep up. Plus I going on vacation
so I won't be around to read net news.
Thanks in advance,
Rob
--
---------------------------------------------------------------------
Rob Cash, Information Systems Specialist Voice: 919/481-7025
Operating Systems Integration FAX: 919/481-8674
Nortel, Inc 100 Perimeter Park
---------------------------------------------------------------------