home *** CD-ROM | disk | FTP | other *** search
- Path: sparky!uunet!math.fu-berlin.de!unidui!flyer!easix!jester!michael
- From: michael@jester.GUN.de (Michael Gerhards)
- Newsgroups: comp.os.coherent
- Distribution: world
- Subject: who to protect private mail ??
- Keywords:
- Summary:
- X-Newsreader: Tin 1.1 PL4
- Message-ID: <930126714@jester.GUN.de>
- Organization: private COHERENT system
- Date: Tue, 26 Jan 93 20:42:37 +0100
- Lines: 17
-
- Hello,
-
- The subject says it all. An user could clear the mailbox of another user,
- because the permissions in /usr/spool/mail are 622. I know, that this is
- important, 'cause if I take the write-permission away, noone could send mail
- to my account.
-
- But, if someone types 'cat /dev/null >/usr/spool/mail/michael', the file is
- empty and all my mail is gone.
-
- Is it possible to change the permissions to 620, set mail setgid bin and change
- all files in /usr/spool/mail to group bin ?
-
- Michael
- --
- * michael@jester.gun.de * Michael Gerhards * E.-Hoepner-Strasse 41 *
- * D - 4040 Neuss 1 * Voice: 49 2131 470989 *
-