Re: ipfw l b for users ?

Bernd Eckenfels (ukd1@rzstud1.rz.uni-karlsruhe.de)
15 Feb 1996 04:09:13 GMT


Herbert Rosmanith (herp@wildsau.idv.uni-linz.ac.at) wrote:
> non-root users can do "ipfw list block". shouldn't that return -EPERM ?
> i really don't like the users look at my firewall-tables o:-)

They can do cat /proc/net/ip_blocking, too. There is not much security gain
from hiding those rules.

Greetings
Bernd

-- 
  (OO)      -- Bernd_Eckenfels@Wittumstrasse13.76646Bruchsal.de --
 ( .. )  ecki@lina.{inka.de,ka.sub.org}  http://home.pages.de/~eckes/
  o--o     *plush*  2048/93600EFD  eckes@irc  +4972573817  *plush*
(O____O)       If privacy is outlawed only Outlaws have privacy