From mboxrd@z Thu Jan 1 00:00:00 1970 From: Tom Hall Subject: Question concerning -l option Date: Fri, 10 Feb 2017 16:52:13 +0000 Message-ID: <1486745472582.37375@Brocade.com> Mime-Version: 1.0 Content-Type: multipart/mixed; boundary="===============4892764906837147207==" Return-path: Received: from mx1.redhat.com (ext-mx06.extmail.prod.ext.phx2.redhat.com [10.5.110.30]) by int-mx13.intmail.prod.int.phx2.redhat.com (8.14.4/8.14.4) with ESMTP id v1AGqJsH002680 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-GCM-SHA384 bits=256 verify=NO) for ; Fri, 10 Feb 2017 11:52:19 -0500 Received: from mx0a-000f0801.pphosted.com (mx0a-000f0801.pphosted.com [67.231.144.122]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by mx1.redhat.com (Postfix) with ESMTPS id 5473F42BA0 for ; Fri, 10 Feb 2017 16:52:18 +0000 (UTC) Received: from pps.filterd (m0048193.ppops.net [127.0.0.1]) by mx0a-000f0801.pphosted.com (8.16.0.20/8.16.0.20) with SMTP id v1AG58VZ014471 for ; Fri, 10 Feb 2017 08:52:16 -0800 Received: from hq1wp-exmb12.corp.brocade.com ([144.49.131.13]) by mx0a-000f0801.pphosted.com with ESMTP id 28g1a5khnu-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-SHA384 bits=256 verify=NOT) for ; Fri, 10 Feb 2017 08:52:16 -0800 Content-Language: en-US List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Sender: linux-audit-bounces@redhat.com Errors-To: linux-audit-bounces@redhat.com To: "linux-audit@redhat.com" List-Id: linux-audit@redhat.com --===============4892764906837147207== Content-Language: en-US Content-Type: multipart/alternative; boundary="_000_148674547258237375Brocadecom_" --_000_148674547258237375Brocadecom_ Content-Type: text/plain; charset="iso-8859-1" Content-Transfer-Encoding: quoted-printable Please forgive me, I assume this has already been addressed in the mail arc= hive but I've been unable to locate a related thread. Can someone tell me w= hy the default for auditd is O_NOFOLLOW for accessing auditd configuration = files? I assume there is a reason for not supporting links as the default t= hat is important enough to justify the extra work to add the -l option but = it is not clear to me. Thanks, Tom Hall Brocade Communications Systems, Inc. --_000_148674547258237375Brocadecom_ Content-Type: text/html; charset="iso-8859-1" Content-Transfer-Encoding: quoted-printable

Please forgive me, I assume this has already been addressed in= the mail archive but I've been unable to locate a related thread.&nbs= p;Can someone tell me why the default for auditd is O_NOFOLL= OW for accessing auditd configuration files? I assume there is a reason for not supporting links as the default that is important enough to j= ustify the extra work to add the -l option but it is not clear to me.


Thanks,


Tom Hall

Brocade Communications Systems, Inc.

--_000_148674547258237375Brocadecom_-- --===============4892764906837147207== Content-Type: text/plain; charset="us-ascii" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit Content-Disposition: inline --===============4892764906837147207==--