Subject: ACLs (was: [lists@globalintersec.com: [Global InterSec 2002041701] Sudo Password Prompt Vulnerability.] )
To: None <tech-security@netbsd.org>
From: Jan Schaumann <jschauma@netbsd.org>
List: tech-security
Date: 04/26/2002 09:33:35
Thor Lancelot Simon <tls@rek.tjls.com> wrote:
> If you want to let a user run one
> particular binary as root, copy it and use group permissions (or ACLs
> if your chosen Unix allows that; sadly NetBSD does not).
What is the general notion on ACLs around here? I'm still looking for a
suitable CS Thesis topic/implementation-task, and had pondered the idea
of ACLs. Is that too complex a task to cover in, say, 4 months
part-time work, or would it not be wanted to begin with?
Obviously, I haven't put much research into this (yet), but I'd
appreciate your feedback...
-Jan