<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Sticky bit in Operating System - HP-UX</title>
    <link>https://community.hpe.com/t5/operating-system-hp-ux/sticky-bit/m-p/2473585#M760043</link>
    <description>Hi Don,&lt;BR /&gt;&lt;BR /&gt;The permissions you're showing are unrelated to the STICKY BIT.&lt;BR /&gt;&lt;BR /&gt;Here is a short list:&lt;BR /&gt;4xxx SETUID&lt;BR /&gt;2xxx SETGID&lt;BR /&gt;1xxx STICKY BIT&lt;BR /&gt;&lt;BR /&gt;They add-up, so 6xxx is SETUID and SETGID&lt;BR /&gt;&lt;BR /&gt;A filesystem with a STICKY BIT set, would prevent a user to delete a file for which he doesn't have write permission.&lt;BR /&gt;&lt;BR /&gt;A 'man chmod' will tell you that, and a lot more...&lt;BR /&gt;&lt;BR /&gt;Best regards,&lt;BR /&gt;&lt;BR /&gt;Dan&lt;BR /&gt;</description>
    <pubDate>Thu, 14 Dec 2000 06:00:56 GMT</pubDate>
    <dc:creator>Dan Hetzel</dc:creator>
    <dc:date>2000-12-14T06:00:56Z</dc:date>
    <item>
      <title>Sticky bit</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/sticky-bit/m-p/2473583#M760041</link>
      <description>A software vendor reciently requested a sticky bit on an nfs exported directory be changed to 2655 from 777 . Is this going to open a security hole? . The oner of the directory is a power user.</description>
      <pubDate>Wed, 13 Dec 2000 20:32:16 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/sticky-bit/m-p/2473583#M760041</guid>
      <dc:creator>Don Bowne</dc:creator>
      <dc:date>2000-12-13T20:32:16Z</dc:date>
    </item>
    <item>
      <title>Re: Sticky bit</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/sticky-bit/m-p/2473584#M760042</link>
      <description>Don:&lt;BR /&gt;&lt;BR /&gt;The current permissions are 0777 (rwxrwxrwx) without any setuid, setgid or sticky bit set.&lt;BR /&gt;&lt;BR /&gt;By migrating to 2655 you are setting the SETGID bit on the directory to force files created in that directory to inherit the group id of the parent directory rather than the user who creates them.  Based on the contents and the usage of this directory, you can decide how this impacts your security needs.&lt;BR /&gt;&lt;BR /&gt;If the sticky bit were set on the directory, then users could only remove files for which they had explicit write permission.&lt;BR /&gt;&lt;BR /&gt;See the man pages for 'chmod'.&lt;BR /&gt;&lt;BR /&gt;...JRF...</description>
      <pubDate>Wed, 13 Dec 2000 21:50:15 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/sticky-bit/m-p/2473584#M760042</guid>
      <dc:creator>James R. Ferguson</dc:creator>
      <dc:date>2000-12-13T21:50:15Z</dc:date>
    </item>
    <item>
      <title>Re: Sticky bit</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/sticky-bit/m-p/2473585#M760043</link>
      <description>Hi Don,&lt;BR /&gt;&lt;BR /&gt;The permissions you're showing are unrelated to the STICKY BIT.&lt;BR /&gt;&lt;BR /&gt;Here is a short list:&lt;BR /&gt;4xxx SETUID&lt;BR /&gt;2xxx SETGID&lt;BR /&gt;1xxx STICKY BIT&lt;BR /&gt;&lt;BR /&gt;They add-up, so 6xxx is SETUID and SETGID&lt;BR /&gt;&lt;BR /&gt;A filesystem with a STICKY BIT set, would prevent a user to delete a file for which he doesn't have write permission.&lt;BR /&gt;&lt;BR /&gt;A 'man chmod' will tell you that, and a lot more...&lt;BR /&gt;&lt;BR /&gt;Best regards,&lt;BR /&gt;&lt;BR /&gt;Dan&lt;BR /&gt;</description>
      <pubDate>Thu, 14 Dec 2000 06:00:56 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/sticky-bit/m-p/2473585#M760043</guid>
      <dc:creator>Dan Hetzel</dc:creator>
      <dc:date>2000-12-14T06:00:56Z</dc:date>
    </item>
    <item>
      <title>Re: Sticky bit</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/sticky-bit/m-p/2473586#M760044</link>
      <description>If anything this is going to close a security hole. at 777 anybody can create delete stuff in the directory 2655 removes the write permission for group and other so only the owner of the directory can create new files.  By setting a sticky bit on the group bit I suspect that the directory has been modified to a different group ID from the default group of the owner , eg User root and group data rather than group sys.</description>
      <pubDate>Thu, 14 Dec 2000 08:38:24 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/sticky-bit/m-p/2473586#M760044</guid>
      <dc:creator>John Waller</dc:creator>
      <dc:date>2000-12-14T08:38:24Z</dc:date>
    </item>
  </channel>
</rss>

