home *** CD-ROM | disk | FTP | other *** search
- Path: sparky!uunet!not-for-mail
- From: casey@anchovy.wpd.sgi.com (Casey Schaufler)
- Newsgroups: comp.std.unix
- Subject: Re: POSIX - Caving In Under Its Own Weight (Long)
- Date: 29 Dec 1992 14:14:57 -0800
- Organization: Silicon Graphics, Inc., Mountain View, CA
- Lines: 26
- Sender: sef@ftp.UU.NET
- Approved: sef@ftp.uucp (Moderator, Sean Eric Fagan)
- Message-ID: <1hqil1INN8tg@ftp.UU.NET>
- References: <1halvbINN9kd@ftp.UU.NET> <1hdnejINNi74@ftp.UU.NET> <1hg70uINNfvd@ftp.UU.NET>
- NNTP-Posting-Host: ftp.uu.net
- X-Submissions: std-unix@uunet.uu.net
-
- Submitted-by: casey@anchovy.wpd.sgi.com (Casey Schaufler)
-
- > I thought the audit commands were being done as an addendum to 1003.2.
- > Has this idea been dropped?
-
- All of 1003.6 should be considered an addendum.
-
- > Not to mention the fact (opinion?) that the interfaces specified by 1003.6
- > are so complex that verification and minimality of the TCB is extremely
- > (impossible?) difficult to assure.
-
- The POSIX ACL spec is Most Heinous. The priviledge mechanism is designed
- primarily to ease retrofitting existing sysadmin programs, not to provide
- for the principle of least priviledge. The audit section doesn't actually
- nail anything down.
-
- > Anybody know where I can get a copy of the Trusix spec?
-
- The Trusix spec is available from the NSA. Don't strain any muscles getting
- it, however. The Trusix working group (which I was privileged to be part of)
- did not (in my opinion) produce anything of real value, primarily because
- they didn't want to be incompatible with the POSIX efforts.
-
- -casey
-
- Volume-Number: Volume 30, Number 4
-