Change the permissions from 0660 to 0600.
Otherwise people in wheel can do things with netmap, including but not limited to promisc transmit/receive. Approved by: luigi MFC after: 1 week
This commit is contained in:
parent
d39bfa5fd5
commit
6132573ef1
@ -3075,10 +3075,10 @@ netmap_init(void)
|
||||
#ifdef __FreeBSD__
|
||||
/* support for the 'eternal' flag */
|
||||
netmap_dev = make_dev_credf(MAKEDEV_ETERNAL_KLD,
|
||||
&netmap_cdevsw, 0, NULL, UID_ROOT, GID_WHEEL, 0660,
|
||||
&netmap_cdevsw, 0, NULL, UID_ROOT, GID_WHEEL, 0600,
|
||||
"netmap");
|
||||
#else
|
||||
netmap_dev = make_dev(&netmap_cdevsw, 0, UID_ROOT, GID_WHEEL, 0660,
|
||||
netmap_dev = make_dev(&netmap_cdevsw, 0, UID_ROOT, GID_WHEEL, 0600,
|
||||
"netmap");
|
||||
#endif
|
||||
if (!netmap_dev)
|
||||
|
Loading…
x
Reference in New Issue
Block a user