On 8/2/05, Michael C. Ibarra <[EMAIL PROTECTED]> wrote:
> Just ran into a wall with the scponly option:
> 
> "If you do use chroot(), your binary will need to be setuid."
> 
> I'll pass on that one for now...

systrace could probably mitigate most of the risk here ... (privsep,
if you're good enough to hack in support to the source. I'm not. :))
-- 
[EMAIL PROTECTED],darkuncle.net} || 0x5537F527
    encrypted email to the latter address please
    http://darkuncle.net/pubkey.asc for public key

Reply via email to