Bugtraq mailing list archives

Re: Full Armor


From: phillist () RAMHB CO NZ (S M Phillips)
Date: Fri, 12 Jun 1998 11:17:46 +1200


to prevent this add the following to MSDOS.SYS under the [Options]
section.

BootSafe=0
BootKeys=0
BootWarn=0
AutoScan=0
Network=1 (if you have networking enabled)

while this does tend to stop most of the general populace from bypassing
the restrictions in effect - it still doesnt stop someone booting off a
disk, you could use a bios setting to boot from C before A (if your bios
supports it), hence bypassing this as well - yet, the fact still remains,
dos is never 100% secure, all someone would need to do is gain write
access to the c:\msdos.sys file which shouldnt be a hard thing to do given
a bit of time :)


--
Steve.



Current thread: