1# $OpenBSD: special,v 1.121 2016/09/26 06:51:23 ajacoutot Exp $ 2# 3# Hand-crafted mtree specification for the dangerous files. 4# 5 6. type=dir mode=0755 uname=root gname=wheel 7 8dev type=dir mode=0755 uname=root gname=wheel 9fd type=dir mode=0555 uname=root gname=wheel ignore 10.. #dev/fd 11kmem type=char mode=0640 uname=root gname=kmem 12mem type=char mode=0640 uname=root gname=kmem 13.. #dev 14 15etc type=dir mode=0755 uname=root gname=wheel 16acme-client.conf type=file mode=0644 uname=root gname=wheel optional 17bgpd.conf type=file mode=0600 uname=root gname=wheel optional 18chio.conf type=file mode=0644 uname=root gname=operator optional 19crontab type=file mode=0600 uname=root gname=wheel optional 20csh.cshrc type=file mode=0644 uname=root gname=wheel optional 21csh.login type=file mode=0644 uname=root gname=wheel optional 22csh.logout type=file mode=0644 uname=root gname=wheel optional 23daily type=file mode=0644 uname=root gname=wheel 24daily.local type=file mode=0644 uname=root gname=wheel optional 25dhcpd.conf type=file mode=0644 uname=root gname=wheel optional 26dvmrpd.conf type=file mode=0600 uname=root gname=wheel optional 27exports type=file mode=0644 uname=root gname=wheel optional 28fbtab type=file mode=0644 uname=root gname=wheel 29fstab type=file mode=0644 uname=root gname=wheel 30ftpchroot type=file mode=0644 uname=root gname=wheel optional 31ftpusers type=file mode=0644 uname=root gname=wheel 32group type=file mode=0644 uname=root gname=wheel 33hostapd.conf type=file mode=0600 uname=root gname=wheel optional 34hosts type=file mode=0644 uname=root gname=wheel 35httpd.conf type=file mode=0644 uname=root gname=wheel optional 36ifstated.conf type=file mode=0644 uname=root gname=wheel optional 37iked type=dir mode=0755 uname=root gname=wheel 38.. #iked 39iked.conf type=file mode=0600 uname=root gname=wheel optional 40inetd.conf type=file mode=0644 uname=root gname=wheel optional 41ipsec.conf type=file mode=0600 uname=root gname=wheel optional 42isakmpd type=dir mode=0755 uname=root gname=wheel 43isakmpd.conf type=file mode=0600 uname=root gname=wheel optional 44isakmpd.policy type=file mode=0600 uname=root gname=wheel optional 45.. #isakmpd 46ldapd.conf type=file mode=0600 uname=root gname=wheel optional 47ldpd.conf type=file mode=0600 uname=root gname=wheel optional 48login.conf type=file mode=0644 uname=root gname=wheel 49mail.rc type=file mode=0644 uname=root gname=wheel 50mailer.conf type=file mode=0644 uname=root gname=wheel 51master.passwd type=file mode=0600 uname=root gname=wheel 52monthly type=file mode=0644 uname=root gname=wheel 53monthly.local type=file mode=0644 uname=root gname=wheel optional 54mrouted.conf type=file mode=0644 uname=root gname=wheel optional 55mail type=dir mode=0755 uname=root gname=wheel 56aliases type=file mode=0644 uname=root gname=wheel optional 57aliases.db type=file mode=0644 uname=root gname=wheel optional 58secrets type=file mode=0640 uname=root gname=_smtpd optional 59secrets.db type=file mode=0640 uname=root gname=_smtpd optional 60smtpd.conf type=file mode=0644 uname=root gname=wheel 61spamd.conf type=file mode=0644 uname=root gname=wheel optional 62.. #mail 63mtree type=dir mode=0755 uname=root gname=wheel 64special type=file mode=0600 uname=root gname=wheel 65.. #mtree 66moduli type=file mode=0644 uname=root gname=wheel 67netstart type=file mode=0644 uname=root gname=wheel 68npppd type=dir mode=0755 uname=root gname=wheel 69npppd.conf type=file mode=0640 uname=root gname=wheel 70npppd-users type=file mode=0600 uname=root gname=wheel 71.. #npppd 72ntpd.conf type=file mode=0644 uname=root gname=wheel optional 73ospfd.conf type=file mode=0600 uname=root gname=wheel optional 74ospf6d.conf type=file mode=0600 uname=root gname=wheel optional 75passwd type=file mode=0644 uname=root gname=wheel 76pf.conf type=file mode=0600 uname=root gname=wheel optional 77printcap mode=0644 uname=root gname=wheel optional 78radiusd.conf type=file mode=0600 uname=root gname=wheel optional 79rc type=file mode=0644 uname=root gname=wheel 80rc.conf type=file mode=0644 uname=root gname=wheel 81rc.conf.local type=file mode=0644 uname=root gname=wheel optional 82rc.local type=file mode=0644 uname=root gname=wheel optional 83rc.securelevel type=file mode=0644 uname=root gname=wheel optional 84rc.shutdown type=file mode=0644 uname=root gname=wheel optional 85relayd.conf type=file mode=0600 uname=root gname=wheel optional 86remote type=file mode=0644 uname=root gname=wheel optional 87resolv.conf type=file mode=0644 uname=root gname=wheel optional 88resolv.conf.tail type=file mode=0644 uname=root gname=wheel optional 89rbootd.conf type=file mode=0644 uname=root gname=wheel optional 90ripd.conf type=file mode=0600 uname=root gname=wheel optional 91sasyncd.conf type=file mode=0600 uname=root gname=wheel optional 92sensorsd.conf type=file mode=0644 uname=root gname=wheel optional 93shells type=file mode=0644 uname=root gname=wheel 94skey type=dir mode=01730 uname=root gname=auth optional 95.. #skey 96snmpd.conf type=file mode=0600 uname=root gname=wheel optional 97spwd.db type=file mode=0640 uname=root gname=_shadow 98ssh type=dir mode=0755 uname=root gname=wheel optional 99ssh_config type=file mode=0644 uname=root gname=wheel 100ssh_host_dsa_key type=file mode=0600 uname=root gname=wheel optional 101ssh_host_dsa_key.pub type=file mode=0644 uname=root gname=wheel optional 102ssh_host_ecdsa_key type=file mode=0600 uname=root gname=wheel optional 103ssh_host_ecdsa_key.pub type=file mode=0644 uname=root gname=wheel optional 104ssh_host_ed25519_key type=file mode=0600 uname=root gname=wheel optional 105ssh_host_ed25519_key.pub type=file mode=0644 uname=root gname=wheel optional 106ssh_host_key type=file mode=0600 uname=root gname=wheel optional 107ssh_host_key.pub type=file mode=0644 uname=root gname=wheel optional 108ssh_host_rsa_key type=file mode=0600 uname=root gname=wheel optional 109ssh_host_rsa_key.pub type=file mode=0644 uname=root gname=wheel optional 110sshd_config type=file mode=0644 uname=root gname=wheel 111.. #ssh 112syslog.conf type=file mode=0644 uname=root gname=wheel 113ttys type=file mode=0644 uname=root gname=wheel 114weekly type=file mode=0644 uname=root gname=wheel 115weekly.local type=file mode=0644 uname=root gname=wheel optional 116ypldap.conf type=file mode=0600 uname=root gname=wheel optional 117uucp type=dir mode=0755 uname=root gname=wheel optional ignore 118.. #uucp 119.. #etc 120 121root type=dir mode=0700 uname=root gname=wheel 122.cshrc type=file mode=0644 uname=root gname=wheel 123.login type=file mode=0644 uname=root gname=wheel 124.profile type=file mode=0644 uname=root gname=wheel 125.rhosts type=file mode=0600 uname=root gname=wheel optional 126.. #root 127 128sbin type=dir mode=0755 uname=root gname=wheel ignore 129.. #sbin 130 131usr type=dir mode=0755 uname=root gname=wheel 132bin type=dir mode=0755 uname=root gname=wheel ignore 133.. #usr/bin 134games type=dir mode=0755 uname=root gname=wheel optional 135.. #usr/games 136include type=dir mode=0755 uname=root gname=bin ignore 137.. #usr/include 138lib type=dir mode=0755 uname=root gname=wheel ignore 139.. #usr/lib 140libdata type=dir mode=0755 uname=root gname=wheel ignore 141.. #usr/libdata 142libexec type=dir mode=0755 uname=root gname=wheel 143auth type=dir mode=0750 uname=root gname=auth ignore 144.. #usr/libexec/auth 145.. #usr/libexec 146local type=dir mode=0755 uname=root gname=wheel 147bin type=dir mode=0755 uname=root gname=wheel ignore 148.. #usr/local/bin 149lib type=dir mode=0755 uname=root gname=wheel ignore 150.. #usr/local/lib 151.. #usr/local 152sbin type=dir mode=0755 uname=root gname=wheel ignore 153.. #usr/sbin 154share type=dir mode=0755 uname=root gname=wheel ignore 155.. #usr/share 156.. #usr 157 158var type=dir mode=0755 uname=root gname=wheel 159account type=dir mode=0755 uname=root gname=wheel 160acct type=file mode=0644 uname=root gname=wheel optional 161.. #var/account 162yp type=dir mode=0755 uname=root gname=wheel optional ignore 163.. #var/yp 164backups type=dir mode=0700 uname=root gname=wheel ignore 165.. #var/backups 166cron type=dir mode=0555 uname=root gname=wheel 167log type=file mode=0600 uname=root gname=wheel 168atjobs type=dir mode=01770 uname=root gname=crontab ignore 169.. #var/cron/atjobs 170tabs type=dir mode=01730 uname=root gname=crontab ignore 171.. #var/cron/tabs 172.. #var/cron 173db type=dir mode=0755 uname=root gname=wheel 174host.random type=file mode=0600 uname=root gname=wheel optional 175kvm_bsd.db type=file mode=0640 uname=root gname=kmem 176.. #var/db 177log type=dir mode=0755 uname=root gname=wheel 178authlog type=file mode=0640 uname=root gname=wheel 179secure type=file mode=0600 uname=root gname=wheel 180wtmp type=file mode=0644 uname=root gname=wheel 181lastlog type=file mode=0644 uname=root gname=wheel 182.. #var/log 183mail type=dir mode=0755 uname=root gname=wheel ignore 184.. #var/mail 185nsd type=dir mode=0755 uname=root gname=wheel 186etc type=dir mode=0750 uname=root gname=_nsd 187.. #var/nsd/etc 188.. #var/nsd 189run type=dir mode=0755 uname=root gname=wheel 190utmp type=file mode=0664 uname=root gname=utmp 191.. #var/run 192spool type=dir mode=0755 uname=root gname=wheel 193ftp type=dir mode=0555 uname=root gname=wheel optional 194bin type=dir mode=0511 uname=root gname=wheel optional 195.. #var/spool/ftp/bin 196etc type=dir mode=0511 uname=root gname=wheel optional 197group type=file mode=0444 uname=root gname=wheel optional 198localtime type=file mode=0444 uname=root gname=wheel optional 199master.passwd type=file mode=0400 uname=root gname=wheel optional 200spwd.db type=file mode=0400 uname=root gname=wheel optional 201motd type=file mode=0444 uname=root gname=wheel optional 202passwd type=file mode=0444 uname=root gname=wheel optional 203pwd.db type=file mode=0444 uname=root gname=wheel optional 204.. #var/spool/ftp/etc 205hidden type=dir mode=0111 uname=root gname=wheel optional ignore 206.. #var/spool/ftp/hidden 207pub type=dir mode=0555 uname=root gname=wheel optional ignore 208.. #var/spool/ftp/pub 209.. #var/spool/ftp 210output type=dir mode=0755 uname=root gname=wheel ignore 211.. #var/spool/output 212uucp type=dir mode=0755 uname=uucp gname=daemon ignore 213.. #var/spool/uucp 214uucppublic type=dir mode=0755 uname=uucp gname=daemon ignore 215.. #var/spool/uucppublic 216.. #var/spool 217