in reply to Handling passwords and sensitive data
after you've extracted the relevant information of course- or just copy it to a different array. (I give no personal guarantees that this works with Perl, though, since I only know this to work under C.) Of course, this still may leave a millisecond or too where Bob Schnob can still execute ps aux and get your passwd, but the chances that he'll be able to synchronize are slim. FYI, FIPS (1989) explicitly prohibits unprivileged users to see ANY other users' ps table- but we all know that a ps aux is all it takes to see that Bob Schnob is downloading porn again. In fact, I see this as a security risk (obviously, others don't) and I would love to see a kernel with at least an option to hide the process tables from prying eyes. Unfortunately, Linux kernel code hacking would turn my head inside out, so I'll leave it to the folks who know what's going on. If I've missed yet another kernel update in which this is implemented, I'd be much obliged to be informed. Thanx.@ARGV=();
|
|---|
| Replies are listed 'Best First'. | |
|---|---|
|
Re: Re: Handling passwords and sensitive data
by Fastolfe (Vicar) on Jan 28, 2001 at 02:22 UTC | |
|
Re (tilly) 2: Handling passwords and sensitive data
by tilly (Archbishop) on Jan 28, 2001 at 02:05 UTC |