Blame SOURCES/arpwatch-drop-man.patch

8501a5
--- arpwatch.8.orig	Sun Oct  8 23:31:28 2000
8501a5
+++ arpwatch.8	Mon Oct 16 16:46:19 2000
8501a5
@@ -36,13 +36,16 @@
8501a5
 .I interface
8501a5
 ]
8501a5
 .br
8501a5
-.ti +8
8501a5
+.ti +9
8501a5
 [
8501a5
 .B -n
8501a5
 .IR net [/ width
8501a5
 ]] [
8501a5
 .B -r
8501a5
 .I file
8501a5
+] [
8501a5
+.B -u
8501a5
+.I username
8501a5
 ]
8501a5
 .ad
8501a5
 .SH DESCRIPTION
8501a5
@@ -94,10 +97,26 @@
8501a5
 .B arpwatch
8501a5
 does not fork.
8501a5
 .LP
8501a5
+If 
8501a5
+.B -u 
8501a5
+flag is used, 
8501a5
+.B arpwatch
8501a5
+drops root privileges and changes user ID to
8501a5
+.I username
8501a5
+and group ID to that of the primary group of 
8501a5
+.IR username .
8501a5
+This is recommended for security reasons.
8501a5
+.LP
8501a5
 Note that an empty
8501a5
 .I arp.dat
8501a5
 file must be created before the first time you run
8501a5
-.BR arpwatch .
8501a5
+.BR arpwatch . 
8501a5
+Also, the default directory (where arp.dat is stored) must be owned
8501a5
+by 
8501a5
+.I username
8501a5
+if 
8501a5
+.BR -u
8501a5
+flag is used.
8501a5
 .LP
8501a5
 .SH "REPORT MESSAGES"
8501a5
 Here's a quick list of the report messages generated by