\begin{Greg Hosler}
> however, it is the case that any suid program that is compromised will
> almost certainly (and immediately, to the knowledgeably) be used as a
> root exploit.
> 
> It is for this reason that RH (circa 5.x releases I think) removed the suid
> bit on pppd (I think that the original package still installs it suid
> though).

doesn't it have to be run as root, in order to create/setup the ppp
devices?

how will a "normal" user be able to (eg) dial into your box and setup
a ppp link?

-- 
 - Gus

-- 
SLUG - Sydney Linux User Group Mailing List - http://slug.org.au/
More Info: http://slug.org.au/lists/listinfo/slug

Reply via email to