Ideas on UNIX security

Steven M. Haflich smh at mit-eddi.UUCP
Sun Jun 26 08:26:15 AEST 1983


It is probably necessary to have a daemon do a sum on all the
commands that root regularly executes.  This file could be summed
in turn, and the result checked *by hand* by the local gestapo-in-
charge-of-system-security.  Of course, an illegit superuser could
hack the summer daemon, but occasional checks by hand could detect
tampering.

One moral about security should be made clear to everyone:

	If you want to keep a text file secure, encrypt it.  Otherwise,
	any file you own is readable (at least) in a great many ways
	by a great many people.



More information about the Comp.unix.wizards mailing list