From bc6eca2432906301de65dc51e595bd6d1772bd1a Mon Sep 17 00:00:00 2001 From: Robert Watson Date: Mon, 2 Jul 2007 14:03:29 +0000 Subject: [PATCH] Continue kernel privilege cleanup for 7.0: unstaticize suser_enabled and stop declaring it in systm.h -- it's used only in kern_priv.c and is not required elsewhere. Approved by: re (kensmith) --- sys/kern/kern_priv.c | 2 +- sys/sys/systm.h | 1 - 2 files changed, 1 insertion(+), 2 deletions(-) diff --git a/sys/kern/kern_priv.c b/sys/kern/kern_priv.c index 307d134e673..1190cd42e5b 100644 --- a/sys/kern/kern_priv.c +++ b/sys/kern/kern_priv.c @@ -51,7 +51,7 @@ * userland programs, and should not be done without careful consideration of * the consequences. */ -int suser_enabled = 1; +static int suser_enabled = 1; SYSCTL_INT(_security_bsd, OID_AUTO, suser_enabled, CTLFLAG_RW, &suser_enabled, 0, "processes with uid 0 have privilege"); TUNABLE_INT("security.bsd.suser_enabled", &suser_enabled); diff --git a/sys/sys/systm.h b/sys/sys/systm.h index c5233783eca..13b7ef7f549 100644 --- a/sys/sys/systm.h +++ b/sys/sys/systm.h @@ -46,7 +46,6 @@ #include /* for people using printf mainly */ extern int securelevel; /* system security level (see init(8)) */ -extern int suser_enabled; /* suser() is permitted to return 0 */ extern int cold; /* nonzero if we are doing a cold boot */ extern int rebooting; /* boot() has been called. */