Check the security of /var/mail/dirs similar to /var/mail/boxes:

Index: security
===================================================================
RCS file: /cvs/src/libexec/security/security,v
retrieving revision 1.23
diff -u -u -p -r1.23 security
--- security    21 Mar 2013 09:37:37 -0000      1.23
+++ security    16 Dec 2013 12:05:52 -0000
@@ -458,9 +458,16 @@ sub check_mailboxes {
                my $gname = (getgrgid $fgid)[0] // $fgid;
                nag $fname ne $name,
                    "user $name mailbox is owned by $fname";
-               nag S_IMODE($mode) != (S_IRUSR | S_IWUSR),
-                   sprintf 'user %s mailbox is %s, group %s',
-                       $name, strmode($mode), $gname;
+               if (S_ISDIR($mode)) {
+                       nag S_IMODE($mode) != (S_IRUSR | S_IWUSR | S_IXUSR),
+                           sprintf 'user %s maildir is %s, group %s',
+                               $name, strmode($mode), $gname;
+               }
+               else {
+                       nag S_IMODE($mode) != (S_IRUSR | S_IWUSR),
+                           sprintf 'user %s mailbox is %s, group %s',
+                               $name, strmode($mode), $gname;
+               }
        }
        closedir $dh;
 }

Cheers,
-- 
Craig Skinner | http://twitter.com/Craig_Skinner | http://linkd.in/yGqkv7

Reply via email to