Well, putting "setuid" in the search box in perlmonks gives a discussion about
this topic for me. That'll help? If not try: to search for "suidperl"
Actually I don't know whether those discussions are valuable for
you, it's just the first thing to do. As a matter of fact I have never used
suidperl or it's friends ;-)
| [reply] |
Some ideas:
- perldoc perlsec
- The -T switch, see "perldoc perlrun"
- Utilities like sudo and super that
attempt to wrap a little more sanity around setuid programs.
- The tcp wrappers package, which would allow you to "turn on and off" access to the telnet and ftp daemons based on the client's ip address.
Good luck! | [reply] |