I notice that MIT and UMich give system:anyuser "rl" access to users'
  home directories.

There are some machines I log in to on which I don't acquire tokens at login
time, but must klog after I login locally.  On those machines I wouldn't be
able to read my .cshrc, .login, .xsession, etc if I didn't have 'rl' rights
on my home directory.

Also, there may be some files (like .plan) that I want to make world
readable.

One solution is to put these files in a subdirectory and leave links behind.
Another is to put the sensitive files (like .newsrc) in a subdirectory.  It
would have been nice if Transarc (cmu, really) had let us put acls on files,
where they belong.

I think at Michigan users get anyuser 'l' home directories by default, but
some of us change this.

Reply via email to