<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic mount option suid in Operating System - HP-UX</title>
    <link>https://community.hpe.com/t5/operating-system-hp-ux/mount-option-suid/m-p/2858982#M635840</link>
    <description>What does this option do?  Is there documentation on it somewhere?  Are there any security concerns around this option?</description>
    <pubDate>Fri, 06 Dec 2002 08:20:04 GMT</pubDate>
    <dc:creator>Network Servers</dc:creator>
    <dc:date>2002-12-06T08:20:04Z</dc:date>
    <item>
      <title>mount option suid</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/mount-option-suid/m-p/2858982#M635840</link>
      <description>What does this option do?  Is there documentation on it somewhere?  Are there any security concerns around this option?</description>
      <pubDate>Fri, 06 Dec 2002 08:20:04 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/mount-option-suid/m-p/2858982#M635840</guid>
      <dc:creator>Network Servers</dc:creator>
      <dc:date>2002-12-06T08:20:04Z</dc:date>
    </item>
    <item>
      <title>Re: mount option suid</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/mount-option-suid/m-p/2858983#M635841</link>
      <description>Hi,&lt;BR /&gt;There's info in &lt;BR /&gt;#man 1m mount_vxfs&lt;BR /&gt;&lt;BR /&gt;The way I understand it, you are not allowed to execute suid-scripts (present in that particular filesystem) if the "nosuid" option is used in mounting the filesystem. This would make sense for filesystems that are not "local" to the system (NFS-mounted for example).&lt;BR /&gt;&lt;BR /&gt;Regards,&lt;BR /&gt;Tom</description>
      <pubDate>Fri, 06 Dec 2002 08:38:32 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/mount-option-suid/m-p/2858983#M635841</guid>
      <dc:creator>Tom Geudens</dc:creator>
      <dc:date>2002-12-06T08:38:32Z</dc:date>
    </item>
    <item>
      <title>Re: mount option suid</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/mount-option-suid/m-p/2858984#M635842</link>
      <description>Hi,&lt;BR /&gt;&lt;BR /&gt;nosuid option is mainly for NFS security which&lt;BR /&gt;prohibits running any program with setuid in &lt;BR /&gt;NFS mount directory which if malicious can cause system to come to heels.&lt;BR /&gt;&lt;BR /&gt;By default , suid is set for mounted filesysem&lt;BR /&gt;&lt;BR /&gt;regards,&lt;BR /&gt;U.SivaKumar&lt;BR /&gt;</description>
      <pubDate>Fri, 06 Dec 2002 09:01:06 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/mount-option-suid/m-p/2858984#M635842</guid>
      <dc:creator>U.SivaKumar_2</dc:creator>
      <dc:date>2002-12-06T09:01:06Z</dc:date>
    </item>
    <item>
      <title>Re: mount option suid</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/mount-option-suid/m-p/2858985#M635843</link>
      <description>Hi,&lt;BR /&gt;&lt;BR /&gt;I would not restrict that option ("nosuid" actually!) to only "NFS" mounted filesystems, but to ALL filesystems, which are not under your complete control concerning codefiles/executables/scripts: &lt;BR /&gt;- temporary files&lt;BR /&gt;- data files&lt;BR /&gt;- databases&lt;BR /&gt;- file server files&lt;BR /&gt;- text/document files&lt;BR /&gt;- removable filesystems (floppies, MOs)&lt;BR /&gt;&lt;BR /&gt;And mounting all those filesystems with "nosuid" just keeps everybody from createing (actually: from executing) SUID-programs, i.e. to start a program not under the UID of the starter but the owner of the file.&lt;BR /&gt;You'll only need the option "suid" for your root-filesystem, "/usr", and "opt", and possibly for a filesystem containing application codefiles/-scipts.&lt;BR /&gt;&lt;BR /&gt;FWIW,&lt;BR /&gt;Wodisch</description>
      <pubDate>Fri, 06 Dec 2002 14:02:14 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/mount-option-suid/m-p/2858985#M635843</guid>
      <dc:creator>Wodisch</dc:creator>
      <dc:date>2002-12-06T14:02:14Z</dc:date>
    </item>
  </channel>
</rss>

