All,

Should we be requiring polyinstation of /tmp and /var/tmp for users via PAM?

I had forgotten about this until reading a recent post.

I feel that this would be a good idea in general, but may cause issues in
terms of legitimate file sharing and end up with more users making their
home directories 755 (or more ridiculous).

Also, should we be binding users to any particular CGroup limits by default?

Thanks,

Trevor

-- 
Trevor Vaughan
Vice President, Onyx Point, Inc
(410) 541-6699
[email protected]

-- This account not approved for unencrypted proprietary information --
_______________________________________________
scap-security-guide mailing list
[email protected]
https://lists.fedorahosted.org/mailman/listinfo/scap-security-guide

Reply via email to