Tightening security: not for the impatient
Tightening security: not for the impatient
Posted Jul 17, 2012 15:18 UTC (Tue) by nybble41 (subscriber, #55106)In reply to: Tightening security: not for the impatient by nlucas
Parent article: Tightening security: not for the impatient
That should still work, so long as you create the links _before_ marking the binary as SUID. You could look at the reference count to ensure that there are no "rogue" links at that point. Once it's marked SUID, no new hard links could be created without first clearing the SUID bit.