Re: suid bit on directories

Michael Hoennig (michael@hostsharing.net)
Wed, 22 May 2002 06:44:29 +0200


Hi Bill,

> > Anyway, when I find time in the next weeks, I will try this patch and
> > post it. I will do it as a mount option. Nobody is forced to use it
> > ;-)
>
> If I might offer a suggestion, that requires a patched mount command,
> etc. I would offer as an alternative implementation which might be both
> easier to do and more useful in testing. Make the capability an option
> in the kernel, and then require that it be enabled in /proc/sys with
> default off. Think TCP_SYN_COOKIES or similar. That way you can have a
> single patch set for the kernel only, and no one can possibly "stumble
> on it" and complain. Also, you can disable without reboot or remount
> after testing.

Good idea; I will consider it.

Michael

-- 
Hostsharing eG / c/o Michael Hönnig / Boytinstr. 10 / D-22143 Hamburg
phone:+49/40/67581419 / mobile:+49/177/3787491 / fax:++49/40/67581426
http://www.hostsharing.net ---> Webhosting Spielregeln selbst gemacht
-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html
Please read the FAQ at  http://www.tux.org/lkml/