[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: Sanitizing /etc/pwd.db for anoncvs



On Sat, 26 Feb 2005 00:25:06 -0600, eric
<eric-list-openbsd-misc_(_at_)_catastrophe_(_dot_)_net> wrote:
> I'd like to drop in the most limited files required there, but can't
> seem to find a way to manipulate pwd.db with vipw(8). Is there a way to do
> this? I don't have a system hand that I can wipe out mostly everything out
> of the passwd files.
> 
> Another question: is /etc/spwd.db needed in the chroot() as well?

you can make an entirely new master.passwd in your chroot/etc/ and 
then use pwd_makedb with the appropiate path names to build your
chrot/etc/pwd.db and chroot/etc/spwd.db

man pwd_makedb
man master.passwd

perhaps you create the master.passwd in a more secure place 
(outside the chroott) or move it there afterwards.

--knitti



Visit your host, monkey.org