Re: Making /tmp noexec

2010-11-13 Thread Robert Blair Mason Jr.
On Sat, 13 Nov 2010 03:34:36 + teddi...@tmo.blackberry.net wrote: > > This is more of an F-MY-I question, but if the /tem dir is a separate > partition and your using a mount command in fstab, could you limit the > execute capabilities via umask? > > I would think umask=111 would set the d

Re: Making /tmp noexec

2010-11-13 Thread Sjoerd Hardeman
Op 13-11-10 16:49, Simon Brandmair schreef: > On Fri, 12 Nov 2010 13:40:02 +0100 James Allsopp wrote: >> I was reading this page about making tmp non-executable >> (http://pario.no/2007/10/04/making-tmp-non-executable/) but it seems a >> little out of date as I'm using Squeeze. >> >> I changed fsta

Re: Making /tmp noexec

2010-11-13 Thread Simon Brandmair
On Fri, 12 Nov 2010 13:40:02 +0100 James Allsopp wrote: > I was reading this page about making tmp non-executable > (http://pario.no/2007/10/04/making-tmp-non-executable/) but it seems a > little out of date as I'm using Squeeze. > > I changed fstab, and edited by 70debconf to > > DPkg::Pre-Insta

Re: Making /tmp noexec

2010-11-12 Thread teddieeb
ssage- From: Sven Joachim Date: Fri, 12 Nov 2010 22:29:08 To: Subject: Re: Making /tmp noexec On 2010-11-12 14:30 +0100, James Allsopp wrote: > Hi, > I was reading this page about making tmp non-executable > (http://pario.no/2007/10/04/making-tmp-non-executable/) but it seems a &

Re: Making /tmp noexec

2010-11-12 Thread Sven Joachim
On 2010-11-12 14:30 +0100, James Allsopp wrote: > Hi, > I was reading this page about making tmp non-executable > (http://pario.no/2007/10/04/making-tmp-non-executable/) but it seems a > little out of date as I'm using Squeeze. > > I changed fstab, and edited by 70debconf to > > DPkg::Pre-Install-

Re: Making /tmp noexec

2010-11-12 Thread David Sastre
On Fri, Nov 12, 2010 at 01:30:49PM +, James Allsopp wrote: > Hi, > I was reading this page about making tmp non-executable > (http://pario.no/2007/10/04/making-tmp-non-executable/) but it seems a > little out of date as I'm using Squeeze. > > I changed fstab, and edited by 70debconf to > > DP