>For reasons that I don't understand, predating my time at this site,
>the Sun systems use "bin" for amanda user and the SGI systems use
>"root" for amanda user.
>
>Rather than allow enhanced root access via NFS I selected an equally
>questionable solution, chmod o+x on the executable.

That's a really bad idea (or it would be in most environments).
It essentially means anyone can dump any portion of that client (such
as your encrypted passwords) and look at them.

If the Amanda user is already root, you could try setting the modes
back to 550 but without setuid.

>                                               Brian

John R. Jackson, Technical Software Specialist, [EMAIL PROTECTED]

Reply via email to