Re: Enforce minimal file/ dir permissions

2008-06-21 Thread Mister Olli
hi hi... after looking at the mac_bsdextended docs I found out, that it will not solve my problem: > "When access to a file system object is attempted, the list of rules > is iterated until either a matching rule is located or the end is reached" <-- From http://freebsd.therek.net/handbook/mac-b

Re: Enforce minimal file/ dir permissions

2008-06-17 Thread Mister Olli
hi Am Montag, den 16.06.2008, 08:51 -0500 schrieb Jeffrey Goldberg: > On Jun 16, 2008, at 7:21 AM, Bill Moran wrote: > > > Look at MAC and the bsdextended module (filesystem firewall): > > http://www.freebsd.org/doc/en_US.ISO8859-1/books/handbook/mac.html > > http://www.freebsd.org/doc/en_US.

Re: Enforce minimal file/ dir permissions

2008-06-16 Thread Bill Moran
In response to Jeffrey Goldberg <[EMAIL PROTECTED]>: > On Jun 16, 2008, at 7:21 AM, Bill Moran wrote: > > > Look at MAC and the bsdextended module (filesystem firewall): > > http://www.freebsd.org/doc/en_US.ISO8859-1/books/handbook/mac.html > > http://www.freebsd.org/doc/en_US.ISO8859-1/books/han

Re: Enforce minimal file/ dir permissions

2008-06-16 Thread Jeffrey Goldberg
On Jun 16, 2008, at 7:21 AM, Bill Moran wrote: Look at MAC and the bsdextended module (filesystem firewall): http://www.freebsd.org/doc/en_US.ISO8859-1/books/handbook/mac.html http://www.freebsd.org/doc/en_US.ISO8859-1/books/handbook/mac-bsdextended.html I've recently been looking at those mys

Re: Enforce minimal file/ dir permissions

2008-06-16 Thread Bill Moran
In response to Mister Olli <[EMAIL PROTECTED]>: > Hi... > > on my filer I have to enforce minimal file permission of 664 for files > and 755 for directorys. > > no user should be able to change them to a value less than that. > > any ideas how to do this? Look at MAC and the bsdextended module

Enforce minimal file/ dir permissions

2008-06-16 Thread Mister Olli
Hi... on my filer I have to enforce minimal file permission of 664 for files and 755 for directorys. no user should be able to change them to a value less than that. any ideas how to do this? greetz olli ___ freebsd-questions@freebsd.org mailing list