<<On Tue, 23 Nov 1999 21:46:24 -0800, Mike Smith <[EMAIL PROTECTED]> said:

> This was discussed close to death before the changes were committed,

Where, and by whom?  I don't recall seeing any such discussion on
-security.

> and the current behaviour (restricted access) has been agreed by 
> general consensus to be the most appropriate.

Agreed by whom?  Remember POLA?

> Making this behaviour tunable would be bad; it adds another option 

Indeed; it should be reverted completely.  Portable programs may not
rely on their argv[] being ``secret''.  Portable sysadmins rely on
argv[] not being ``secret''.

Having bogus behavior such as this encourages sysadmins to do all
their work as root -- a very Bad Thing.  Not only that, it violates 20
years of UNIX tradition.

-GAWollman

--
Garrett A. Wollman   | O Siem / We are all family / O Siem / We're all the same
[EMAIL PROTECTED]  | O Siem / The fires of freedom 
Opinions not those of| Dance in the burning flame
MIT, LCS, CRS, or NSA|                     - Susan Aglukark and Chad Irschick


To Unsubscribe: send mail to [EMAIL PROTECTED]
with "unsubscribe freebsd-current" in the body of the message

Reply via email to