[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: RC Security Flaw - mkdir & script create as 755, 644. SB &700, yes?



tluxt2@yahoo.com <tluxt2@yahoo.com> wrote:
> So, let's consider a possible typical case: Someone with enough knowledge to
> set up a Microsoft Windows computer to be used at his home by his family.  Now,
> such person is, on average, not a professional sysadmin.  His education and
> skills may have nothing to do with computers.  But, ultimately, for FreeSW &
> Debian to fulfill their potentials, such a person ought to be able to set up a
> Debian system for his family to use.

Oh come on. If you're talking about such a person, they won't even be
expecting that different users *can* hide stuff from each other. He will
*expect* that his wife/kids will be able to see every single document
that he creates, and the fact that there is any security at all is going
to surprise him.

You've provided an example that supports the "Set all files to 0777 to
avoid surprise" argument, not the argument you originally started with.
-- 
Sam "Eddie" Couter  |  mailto:scouter@bigpond.net.au
Debian Developer    |  mailto:eddie@debian.org
                    |  jabber:sam@jabber.topic.com.au
OpenPGP fingerprint:  A46B 9BB5 3148 7BEA 1F05  5BD5 8530 03AE DE89 C75C

Attachment: pgpaJlAOk2ff5.pgp
Description: PGP signature


Reply to: