Is the restricted shell really secure?

The WITNESS bsa at ncoast.UUCP
Sun Aug 12 09:34:06 AEST 1984


I found out about it being in V7 just recently; the call is of the type that
Microsoft appeared to have added to the system in the interests of security,
so I made an assumption on insufficient data and it jumped back and bit me.
Unfortuantely, you just made an assumption too:  that we had source for Unix
(or so it appeared); Microsoft may make it available but Tandy touched this one
and I have yet to hear of their providing source.  (trsvax || microsoft please
correct me if I'm wrong.)

Just changing the protection & owner of .. is enough, I realized; and better
because root and the owner of the restricted filesystem can get out if necess-
ary.  I have already implemented a scheme using this to provide a tutorial
minisystem to attach to my pet software project.

Thanks for the replies, anyway, all; I am starting to learn something about
the system I've been using.
-- 
     Brandon Allbery: decvax!cwruecmp{!atvax}!bsafw: R0176 at CSUOHIO.BITNET
	 6504 Chestnut Road, Independence, OH 44131 <> (216) 524-1416

"The more they overthink the plumbin', the easier 'tis tae stop up the drain."



More information about the Comp.unix.wizards mailing list