Ideas on UNIX security
Steven M. Haflich
smh at mit-eddi.UUCP
Sun Jun 26 08:26:15 AEST 1983
It is probably necessary to have a daemon do a sum on all the
commands that root regularly executes. This file could be summed
in turn, and the result checked *by hand* by the local gestapo-in-
charge-of-system-security. Of course, an illegit superuser could
hack the summer daemon, but occasional checks by hand could detect
tampering.
One moral about security should be made clear to everyone:
If you want to keep a text file secure, encrypt it. Otherwise,
any file you own is readable (at least) in a great many ways
by a great many people.
More information about the Comp.unix.wizards
mailing list