espie
|
bad13e3a6b
|
Give line printout along with line number.
|
25 years ago |
deraadt
|
aad99d26ce
|
make /var/backups same as mtree says; mickey
|
26 years ago |
millert
|
646731011d
|
don't include FIFOs in check for set[ug]id files and devices; andrew@nfr.net
|
26 years ago |
marc
|
692caaedb2
|
better checks for . in path from "Denis A. Doroshenko" <cyxob@isl.vtu.lt>
|
26 years ago |
todd
|
4003b60995
|
Check a few more DOTfiles that could potentially compromise security on a per
user basis.
|
27 years ago |
marc
|
0b582277ad
|
fix ksh.kshrc; check ksh.kshrc, .kshrc for owner/mode/path
|
27 years ago |
millert
|
f8b73365a5
|
Deal with non-existent /etc/skeykeys
|
27 years ago |
deraadt
|
eadfd2f525
|
be more careful during termination
|
27 years ago |
deraadt
|
b7fb34043d
|
completely avoid master.passwd in the changelist processing; jbernard@tater.mines.edu
|
27 years ago |
deraadt
|
5d22791c21
|
handling for closed home directories; yensid@afri.imsa.edu
|
27 years ago |
deraadt
|
dc14af3f0f
|
oops, detect blowfish-a as OK; yensid@imsa.edu, PR#321
|
27 years ago |
deraadt
|
699300c397
|
better path handling; jbernard@tater.mines.edu, netbsd pr#3995
|
27 years ago |
millert
|
13286d26c2
|
/etc/profile should be checked along with .profile for consistency with
/etc/csh.login and .login. From Chris Jones <cjones@rupert.oscs.montana.edu>
|
27 years ago |
flipk
|
e64c7ac1e7
|
1. ignore blank lines
2. /-ro/ -> /^-ro$/ : allows hostnames containing "*-ro*" and
ignores "-root"
|
27 years ago |
gene
|
4195a04efa
|
Don't consider an account disabled just because the password length != 13.
Also, take into account users w/ the blowfish cypher.
|
28 years ago |
deraadt
|
a6e4ece949
|
blow away tmp dir on more traps
|
28 years ago |
millert
|
9c78a0b944
|
check for entry in /etc/skeykeys and ~/.ssh in evil system()
|
28 years ago |
millert
|
27bb79055b
|
Change some "test -f" to "test -s"
Don't bitch about star'd out logins unless they have a .rhosts/.shosts/.klogin
file (ie: something that would let them in via rsh/ssh).
|
28 years ago |
millert
|
4fa80f455e
|
skip lines in /etc/passwd that start with + or -.
don't bitch about root-owned .rhosts since multiple system accounts
share root's homedir.
|
28 years ago |
millert
|
bbb3533e89
|
Merged our changes back into 4.4BSD version.
Can't do "find -ls" since we need to store the date in an absolute format
(ls -T). Use "find -print0" | xargs -0 instead.
|
28 years ago |
millert
|
0baab24189
|
Deal with leading whitespace in find output. Fixes problem of devices
showing up in the setuid list ;-)
|
28 years ago |
tholo
|
0f388ec0c1
|
Update to work properly with output from find -ls; also skip commented out
lines in /etc/exports
|
28 years ago |
bitblt
|
f93906164e
|
names of set-uid files are no longer passed to a shell.
Thanks to deraadt for pointing out the -ls flag on find.
|
28 years ago |
deraadt
|
3bd428e122
|
toor is gone; thanks bibtlt
|
28 years ago |
deraadt
|
9dcf23df2c
|
setup trap after mkdir
|
28 years ago |
deraadt
|
a5911b292f
|
kill the races; found by bitblt
|
28 years ago |
millert
|
1504780699
|
Would give complain that /etc/hosts.equiv /etc/shosts.equiv /etc/hosts.lpd
have '+' in them even when they don't. Escaped the + to fix.
|
28 years ago |
deraadt
|
a6bf944ca0
|
setgid too
|
28 years ago |
deraadt
|
e69b25ba3d
|
only watch for pure + entries
|
28 years ago |
deraadt
|
c8a37c7003
|
sync & label
|
29 years ago |
deraadt
|
97dfe08287
|
numerous improvements by arnej@pvv.unit.no, david@city.ac.uk, and myself.
complain less in normal situations, and deal better with netgroups, YP,
ssh configuration files, and other rather normal configurations.
|
29 years ago |
deraadt
|
47b73ff83c
|
initial import of NetBSD tree
|
29 years ago |