• Plesk Uservoice will be deprecated by October. Moving forward, all product feature requests and improvement suggestions will be managed through our new platform Plesk Productboard.
    To continue sharing your ideas and feedback, please visit features.plesk.com

Securing /TMP as per instructions of KB Parallels

M

Mandi

Guest
Hello,
I was following the instructions of: http://kb.odin.com/en/1410
to secure my /tmp folder in noexec mode.

When I edit /etc/fstab, I see another /tmp mounted
as:
none /tmp tmpfs size=1g 0 0

I add the line as instructed in the Knowledge base (!?)
and now my /etc/fstab looks like:

none /tmp tmpfs size=1g 0 0
/var/filesystems/tmp_fs /tmp ext3 noexec,nosuid,loop 1 1

when I df
I see 2 /tmp partitions.

/dev/sda1 972404 141324 781684 16% /
/dev/sda5 4881504 1948580 2932924 40% /usr
/dev/sda7 65384700 29728460 35656240 46% /var
/dev/sda6 4881504 1358920 3522584 28% /home
none 1048576 596 1047980 1% /tmp
none 1048576 596 1047980 1% /tmp


is the old partition taking precende on the new one?
Shall I remove the line of the old /tmp line from the fstab and then add the new one?

They look silly questions, but I don't want to mess up a 1and1, no support server.
 
I wouldnt worry about it, "Securing /tmp" doesn't really do anything anyway. All it means is that instead of the badguys doing this:

chmod +x /tmp/foo.pl
/tmp/foo.pl

they do this

perl /tmp/foo.pl

They usually do the latter anyway, since it involves fewer commands.
 
move mnt

Hi. Done as described above but my redhat would not boot saying it could not check filesystem /filesystems/tmp_fs only to drop in into the repair console.

I added /filesystems/tmp_fs /tmp ext3 noexec,nosuid,loop 1 0 instead of 1 1 so to disable boot fsck for that fs.

Would that be the correct way to go?
Any other method for moving /tmp from / into another filesystem?
 
Back
Top