Bugtraq mailing list archives

Re: Tired of /tmp? Here's a proposed solution


From: guido () dataweb nl (Guido M. Witmond)
Date: Tue, 27 Aug 1996 10:48:21 +0200


Once Igor Chudov @ home wrote:

Are you tired of attacks based on files in /tmp?

Well, how about the following solution:

[ solutions deleted]

Well, this is a good quick hack. What about removing the CONCEPT of
public writable filesystems like /tmp.

One of the reasons for the /tmp filesystem is to provide users with some
extra diskspace that's for temporary use and does not limit users to their
respective quotas.
Nowadays with ever larger and cheaper disks it is acceptable to let every
user create a ~/tmp directory as a private scrapyard. This prevents any
/tmp attacks and the use of the quota-system gives enough flexibility
to enlarge or reduce the area, even more than the fixed size of /tmp.

Regards, Guido Witmond.



Current thread: