Is the restricted shell really secure?
The WITNESS
bsa at ncoast.UUCP
Sun Aug 12 09:34:06 AEST 1984
I found out about it being in V7 just recently; the call is of the type that
Microsoft appeared to have added to the system in the interests of security,
so I made an assumption on insufficient data and it jumped back and bit me.
Unfortuantely, you just made an assumption too: that we had source for Unix
(or so it appeared); Microsoft may make it available but Tandy touched this one
and I have yet to hear of their providing source. (trsvax || microsoft please
correct me if I'm wrong.)
Just changing the protection & owner of .. is enough, I realized; and better
because root and the owner of the restricted filesystem can get out if necess-
ary. I have already implemented a scheme using this to provide a tutorial
minisystem to attach to my pet software project.
Thanks for the replies, anyway, all; I am starting to learn something about
the system I've been using.
--
Brandon Allbery: decvax!cwruecmp{!atvax}!bsafw: R0176 at CSUOHIO.BITNET
6504 Chestnut Road, Independence, OH 44131 <> (216) 524-1416
"The more they overthink the plumbin', the easier 'tis tae stop up the drain."
More information about the Comp.unix.wizards
mailing list