What restrictions on execution permissions Linux's privilege rootkits are basically compiled executable files. Disabling its operation under /tmp reduces the possibility of hacking. Perl, PHP
scripts are interpreted languages that can be called directly via the perl/php command, even if the script is stored in /tmp.
## Case: perl /tmp/hack.pl #Runs /tmp/back.pl #Cannot run
Check if there is a separate /tmp partition running”df -h” Command, in the "Mount On" column to confirm whether there is a ” /tmp & rdquo; information. There are separate /tmp partitions.
Restricting Permissions on Systems with Independent /tmp Partitions
### 1. Edit the /tmp mount permission in the /etc/fstab file and adjust ”defaults” to ” Rw, nosuid, noexec”. LABEL=/tmp /tmp ext3 rw,nosuid,noexec 1 2
### 2. Reload the /tmp partition with the mount command mount -oremount loop,rw,nosuid,noexec /tmp
Restrict permissions on systems that do not have separate /tmp partitions
## Example: Create a 100 megabyte /tmp partition and disable execute permissions cd /dev/dd if=/dev/zero of=Tmp bs= 1024 count=100000mkfs -t ext3 /dev/Tmpcd /cp -aR /tmp /tmp_backupmount -o loop,noexec,nosuid,rw /dev/Tmp /tmpcp -aR /tmp_backup/* /tmp/chmod 0777 /tmpchmod +t /Tmp
Disable execution permission under /var/tmp
cd /varmv /var/tmp/* /tmp/ls -alh /var/tmp # Confirm that all data has been migrated to /tmprm -fR /var/tmpln -s /tmp /var/tmp
About Linux shutdown and restart commands. In fact, the first article should write about Linux inst
Computer Store News: first Linux systems for flat panel launch For those who have tired of the N
Format: printf("\\033[word background color; font color m string \\033[0m" ); printf("
lftp is an ftp client under Linux for logging in to a remote FTP server. Use its mirror command to b
Optimization (configuration file) in nginx instructions
Differential mode and common mode signal
Persistent mounting of partitions under Ubuntu
Talking about the optimization and security of Linux system
How to add drivers to the Linux kernel
Linux Shell learning: uniq command usage method introduction
Explain in detail the practical security of home Linux
Installing Arch Linux in my Defy
Three tips for improving the efficiency of Linux operation and maintenance management
Windows 7 personalized desktop background settings
What should I do if I can't find the hard drive when I install Win7?
Win 7 install update update 0x8024402F error prompt resolution
Win8.1 configuration IP pop-up to configure TCP/IP, must install and enable network adapter card
Win8 Tips: Open the hidden start menu
Manually solve the problem of double-clicking the partition can not open
System automation operation method (1)
Win7 system network icon display is not connected, but the actual connection is normal
Windows XP installation and XP basic settings (3)
Win10 Universal Edition "Translation 10 Beta" application shelves