Could we add a test to make sure that runtar (and rundump, presumably)
do actually run rather than basing the test on their permissions?

I ask because I have just discovered (the hard way) that this site I've
inherited mounts all their /usr/local directories from the one NFS share
with the nosuid flag ... which means that although /usr/local/libexec/runtar
has r-sr-x--- root sys, it won't run.  It took until the backups failed
last night to determine this and a lot of head scratching this morning, 
unfortunately, since amcheck -c daily reported no errors.

It wouldn't be a hard test, for runtar you could simply see whether
runtar --version produces something sensible or whether runtar itself
complains of not being suid root ... presumably something similar
for dump would be possible as well ... 

-- 
Malcolm Herbert                                This brain intentionally
[EMAIL PROTECTED]                                                left blank

Reply via email to