| Commit message (Collapse) | Author | Age | Files | Lines |
|
|
|
| |
Notes:
svn path=/projects/bmake/; revision=266219
|
|
|
|
| |
Notes:
svn path=/projects/bmake/; revision=265802
|
|
|
|
| |
Notes:
svn path=/projects/bmake/; revision=248169
|
|
|
|
| |
Notes:
svn path=/projects/bmake/; revision=246868
|
|
|
|
|
|
|
| |
Requested by: Simon Gerraty <sjg@juniper.net>
Notes:
svn path=/projects/bmake/; revision=239572
|
|
|
|
|
|
|
|
|
| |
PR: docs/148891
Submitted by: olgeni
MFC after: 1 week
Notes:
svn path=/head/; revision=210641
|
|
|
|
|
|
|
|
|
|
|
|
| |
regenerated in libugidfw) rather than simply printing that the rule was
added with only the number. This makes ugidfw(8) behave a bit more like
ipfw(8), and also means that the administrator sees how the rule was
interpreted once uids/gids/etc were processed.
Obtained from: TrustedBSD Project
Notes:
svn path=/head/; revision=186480
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
subject: ranges of uid, ranges of gid, jail id
objects: ranges of uid, ranges of gid, filesystem,
object is suid, object is sgid, object matches subject uid/gid
object type
We can also negate individual conditions. The ruleset language is
a superset of the previous language, so old rules should continue
to work.
These changes require a change to the API between libugidfw and the
mac_bsdextended module. Add a version number, so we can tell if
we're running mismatched versions.
Update man pages to reflect changes, add extra test cases to
test_ugidfw.c and add a shell script that checks that the the
module seems to do what we expect.
Suggestions from: rwatson, trhodes
Reviewed by: trhodes
MFC after: 2 months
Notes:
svn path=/head/; revision=157986
|
|
|
|
|
|
|
|
|
|
| |
"Data error in security.mac.bsdextended.rules.N: Unknown error: 0."
Reviewed by: rwatson
MFC after: 3 days
Notes:
svn path=/head/; revision=148240
|
|
|
|
|
|
|
|
| |
'usage: ' in front of usage string. Use warnx(3) instead of fprintf in error
messages to get progname prepended.
Notes:
svn path=/head/; revision=140343
|
|
|
|
| |
Notes:
svn path=/head/; revision=139951
|
|
|
|
|
|
|
| |
Requested by: phk
Notes:
svn path=/head/; revision=136741
|
|
|
|
| |
Notes:
svn path=/head/; revision=131500
|
|
|
|
|
|
|
|
|
|
|
|
| |
rule without explicitly specifying a new rule number.
Update copyrights, remove license clause three.
Obtained from: TrustedBSD Project
Sponsored by: DARPA, McAfee Research
Notes:
svn path=/head/; revision=126218
|
|
|
|
| |
Notes:
svn path=/head/; revision=113091
|
|
|
|
|
|
|
| |
Approved by: re
Notes:
svn path=/head/; revision=107778
|
|
|
|
| |
Notes:
svn path=/head/; revision=105547
|
|
|
|
|
|
|
| |
the (incorrectly-spaced) output "... Network Associates Inc. under ..."
Notes:
svn path=/head/; revision=105381
|
|
|
|
| |
Notes:
svn path=/head/; revision=105380
|
|
|
|
|
|
|
|
| |
Obtained from: TrustedBSD Project
Sponsored by: DARPA, NAI Labs
Notes:
svn path=/head/; revision=105361
|
|
|
|
|
|
|
|
| |
Obtained from: TrustedBSD Project
Sponsored by: DARPA, NAI Labs
Notes:
svn path=/head/; revision=105303
|
|
|
|
|
|
|
|
|
| |
Add a DPADD line for ${LIBUGIDFW} for ugidfw.
Submitted by: ru
Notes:
svn path=/head/; revision=101224
|
|
kernel access control.
Provide ugidfw, a utility to manage the ruleset provided by
mac_bsdextended. Similar to ipfw, only for uids/gids and files.
Obtained from: TrustedBSD Project
Sponsored by: DARPA, NAI Labs
Notes:
svn path=/head/; revision=101209
|