[rsbac] Good stuff

Nick Vasiliev delete852 at yahoo.com
Sun Oct 24 17:57:14 CEST 2004


Hey guys, I have been playing around with RSBAC for a
couple of days and I have to say, good stuff. Keep it
up. I do have a couple of questions. I have read the
documentation you provided at your site and at
books.rsbac.org however it left a lot of things
unanswered.

Under pkgs/ssh I have auth_may_setuid 1
However when the process starts up by itself I can't
log in via SSH because remote access SUID is denied.
Now if I go into processes menu and select SSH as the
process then I will be able to manually set it in
there to allow auth_may_setuid to 1. However if I
restart the service and it has a new PID it will not
work any more, and will be set back to 0. 

Second question that I have, is that I am unsure about
how the permissions and ACLs work toghether. For
example if I deny a user permission to a file, and
then allow it with the ACL it wouldn't work, I have
been trying to tweak something here and there for a
while. ANy ideas?

Thanks in advance, Nick


More information about the rsbac mailing list