In <a7e963770904241138me7b1fdai3a3f68dd56c76...@mail.gmail.com>, Erik Xavior 
wrote:
>what's the biggest point to not set the noexec on /home?

Users don't have anywhere to put scripts or custom binaries.  You may also 
get random breakage due to programs using small, temporary scripts without 
the user's knowledge.

As a user of my own systems, that's simply unacceptable.  I suppose it might 
be of some value if you are already mounting /tmp, /var/tmp and anywhere 
else a user can write to as noexec.
-- 
Boyd Stephen Smith Jr.                   ,= ,-_-. =.
b...@iguanasuicide.net                  ((_/)o o(\_))
ICQ: 514984 YM/AIM: DaTwinkDaddy         `-'(. .)`-'
http://iguanasuicide.net/                    \_/

Attachment: signature.asc
Description: This is a digitally signed message part.

Reply via email to