> You are right. In the next release, msec will not change the settings > in /etc/security/msec/security.conf except if the secure level is > changed.
I do not think it is the correct way. Files that are managed by msec must be managed by msec. It must always be possible to use plain msec to make sure all settings correspond to current level. What I meant was, we need either good documentation how to customize configuration or use simple file, not Python script (who is going to learn Python just to customize msec)? Please, do not do it. -andrej
