On 23/09/2013 11:54, Leslie Jensen wrote:

In the daily security run I see the following:



Checking setuid files and devices:

Checking negative group permissions:
3791965 -rwxr--r-x  1 admin  wheel  172 Mar  9 10:59:55 2011
 /usr/home/admin/bin/noip_update.sh


Is it just a reminder that the group has no x permissions or should I give those permissions?

Yes, basically. It's obviously very odd to give everyone OTHER than :wheel members permission to run it. What about user root in group wheel - is root allowed to run it? Actually, yes, even though you might think you've forbidden members of "wheel".

Regards, Frank.

_______________________________________________
freebsd-questions@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to "freebsd-questions-unsubscr...@freebsd.org"

Reply via email to