check out setuid file

#!/bin/bash

# after the system installed,please check setuid files first for security.

# mkdir /backup
# find / -perm -4000 -a -perm -20000 > /backup/setuid.list
/usr/bin/find / -perm -4000 -or -perm -2000 > /tmp/setuid.check 2> /dev/null

for file in `/bin/cat /tmp/setuid.check`
do
/bin/grep $file /backup/setuid.list > /dev/null
if [ "$?" != "0" ]
then
 echo "$file is not in list it is danger !"
fi
done
#/bin/rm /tmp/setuid.check

猜你喜欢

转载自davidlee1986.iteye.com/blog/1919428