# $OpenBSD: rc.securelevel,v 1.16 2004/07/06 04:05:03 deraadt Exp $ # # site-specific startup actions, daemons, and other things which # can be done BEFORE your system goes into securemode. For actions # which should be done AFTER your system has gone into securemode # please see /etc/rc.local # This is the desired security level # XXX # XXX it is not really acceptable to put this value in a configuration # XXX file, because locking it down requires immutability on about # XXX 5 files instead of 2 (the kernel and init) # XXX securelevel=1 echo -n 'starting pre-securelevel daemons:' # # Place local actions here. # # Append mode on Asterisk log files chflags sappnd /var/log/asterisk/cdr-csv/Master.csv chflags sappnd /var/log/asterisk/messages chflags sappnd /var/log/asterisk/event_log chflags sappnd /var/log/asterisk/queue_log # Block changes to the Asterisk main executable file chflags schg /usr/local/sbin/asterisk # Block changes to Asterisk configuration files, voice prompts and it's modules chflags -R schg /etc/asterisk chflags -R schg /usr/local/share/asterisk chflags -R schg /usr/local/lib/asterisk/modules echo '.'