Gentoo Archives: gentoo-hardened

From: pageexec@××××××××.hu
To: gentoo-hardened@l.g.o, "Wang, Baojun" <wangbj@×××××××××××××.cn>
Subject: Re: [gentoo-hardened] Fwd: hardened gentoo mailman/postfix/apache notes?
Date: Wed, 02 Jan 2008 14:50:44
Message-Id: 477BB099.12842.476D7444@pageexec.freemail.hu
1 On 2 Jan 2008 at 22:09, Wang, Baojun wrote:
2
3 > Jan 2 12:20:07 mail [687055.942454] grsec: From 202.201.14.141: denied
4 > untrusted exec of /usr/local/mailman/mail/mailman by /usr/lib/postfix/
5 > local[local:17733] uid/euid:280/280 gid/egid:280/280,
6 > parent /usr/lib/postfix/local[local:17732] uid/euid:0/207 gid/egid:0/207
7
8 'untrusted exec' is a sign of your using TPE, i suggest you check
9 the kernel help on it and make sure the access rights on the path
10 leading up to the executables are proper (in particular, only root
11 should be able to write to the executables).
12
13 > or should I chown -R root:root /usr/local/mainman and chown a-S
14 > /usr/local/manman?
15
16 something like that will be needed, yes, but i don't know what exact
17 permissions mailman needs to properly function, so be careful.
18
19 --
20 gentoo-hardened@g.o mailing list