though passwd/master.passwd are monitored, the databases are not, so a change could be sneaked in without triggering a mention in the security email.
ok? Index: etc/changelist =================================================================== RCS file: /cvs/src/etc/changelist,v retrieving revision 1.65 diff -u -p -r1.65 changelist --- etc/changelist 22 Feb 2010 15:20:22 -0000 1.65 +++ etc/changelist 15 Apr 2010 10:47:52 -0000 @@ -101,6 +101,7 @@ /etc/printcap /etc/profile /etc/protocols ++/etc/pwd.db /etc/rbootd.conf /etc/rc /etc/rc.conf @@ -124,6 +125,7 @@ /etc/slip.hosts /etc/slip.login /etc/snmpd.conf ++/etc/spwd.db /etc/ssh/ssh_config +/etc/ssh/ssh_host_dsa_key /etc/ssh/ssh_host_dsa_key.pub