On Thursday 30 January 2003 02:24, George Schlossnagle wrote:
> Mandatory locks actually prevent read and write calls
> from _anyone_ else succeeding on that file. 

If implemented improperly, they are also a wide open door for denial of 
service attacks on a system (set a mandatory lock on /etc/passwd and hilarity 
ensues). Security conscious system administrators disable them in their 
system for this reason.

Kristian

-- 
Kristian Köhntopp, NetUSE AG, Dr.-Hell-Straße, D-24107 Kiel
Tel: +49 431 386 435 00, Fax: +49 431 386 435 99


--
PHP Development Mailing List <http://www.php.net/>
To unsubscribe, visit: http://www.php.net/unsub.php

Reply via email to