From f15a6410c374a29de109fe1efcec650b34eb65a3 Mon Sep 17 00:00:00 2001 From: Jason McIntyre Date: Thu, 8 Jan 2004 10:56:08 +0000 Subject: document that sysctls fs.posix.setuid and net.inet.ip.sourceroute may not be set when securelevel > 0; the latter from Ryan Leslie (PR 3631); --- share/man/man7/securelevel.7 | 12 +++++++++++- 1 file changed, 11 insertions(+), 1 deletion(-) (limited to 'share/man') diff --git a/share/man/man7/securelevel.7 b/share/man/man7/securelevel.7 index b24c62f145c..a560151d1c9 100644 --- a/share/man/man7/securelevel.7 +++ b/share/man/man7/securelevel.7 @@ -1,4 +1,4 @@ -.\" $OpenBSD: securelevel.7,v 1.14 2002/07/30 00:11:36 nordin Exp $ +.\" $OpenBSD: securelevel.7,v 1.15 2004/01/08 10:56:07 jmc Exp $ .\" .\" Copyright (c) 2000 Hugh Graham .\" @@ -72,6 +72,16 @@ raw disk devices of mounted file systems are read-only system immutable and append-only file flags may not be removed .It kernel modules may not be loaded or unloaded +.It +the +.Va fs.posix.setuid +.Xr sysctl 8 +variable may not be raised +.It +the +.Va net.inet.ip.sourceroute +.Xr sysctl 8 +variable may not be raised .El .It \ 2 Em Highly secure mode .Bl -hyphen -compact -- cgit v1.2.3