diff options
author | nectar <nectar@FreeBSD.org> | 2005-06-10 20:52:36 +0000 |
---|---|---|
committer | nectar <nectar@FreeBSD.org> | 2005-06-10 20:52:36 +0000 |
commit | a23214e059e07a8642c27d57c541ce60479d3d53 (patch) | |
tree | 5ee3318e2bc8698d7b3272548002af39bc383000 /etc | |
parent | 080645b93b9d88377eecb256c9d0aa5c5c2d4dd7 (diff) | |
download | FreeBSD-src-a23214e059e07a8642c27d57c541ce60479d3d53.zip FreeBSD-src-a23214e059e07a8642c27d57c541ce60479d3d53.tar.gz |
Remove rexecd(8), a server that implements a particularly insecure
method of executing commands remotely. There are no rexec clients in
the FreeBSD tree, and the client function rexec(3) is present only in
libcompat. It has been documented as "obsolete" since 4.3BSD, and its
use has been discouraged in the man page for over 10 years.
Diffstat (limited to 'etc')
-rw-r--r-- | etc/inetd.conf | 1 | ||||
-rw-r--r-- | etc/pam.d/Makefile | 2 | ||||
-rw-r--r-- | etc/pam.d/rexecd | 19 |
3 files changed, 1 insertions, 21 deletions
diff --git a/etc/inetd.conf b/etc/inetd.conf index 27b93f7..34e7fc3 100644 --- a/etc/inetd.conf +++ b/etc/inetd.conf @@ -18,7 +18,6 @@ #login stream tcp6 nowait root /usr/libexec/rlogind rlogind #finger stream tcp nowait/3/10 nobody /usr/libexec/fingerd fingerd -s #finger stream tcp6 nowait/3/10 nobody /usr/libexec/fingerd fingerd -s -#exec stream tcp nowait root /usr/libexec/rexecd rexecd # # run comsat as root to be able to print partial mailbox contents w/ biff, # or use the safer tty:tty to just print that new mail has been received. diff --git a/etc/pam.d/Makefile b/etc/pam.d/Makefile index 4a69de4..1933788 100644 --- a/etc/pam.d/Makefile +++ b/etc/pam.d/Makefile @@ -2,7 +2,7 @@ NO_OBJ= FILES= README ftpd gdm imap kde login other passwd pop3 \ - rexecd rsh sshd su system telnetd xdm + rsh sshd su system telnetd xdm FILESDIR= /etc/pam.d FILESMODE= 644 FILESMODE_README= 444 diff --git a/etc/pam.d/rexecd b/etc/pam.d/rexecd deleted file mode 100644 index 532348e..0000000 --- a/etc/pam.d/rexecd +++ /dev/null @@ -1,19 +0,0 @@ -# -# $FreeBSD$ -# -# PAM configuration for the "rexecd" service -# - -# auth -auth required pam_nologin.so no_warn -auth required pam_unix.so no_warn use_first_pass - -# account -account required pam_ftpusers.so no_warn disallow -account required pam_unix.so no_warn - -# session -session required pam_permit.so - -# password -password required pam_deny.so |