1#	$NetBSD: special,v 1.178 2023/09/02 17:39:43 riastradh Exp $
2#	@(#)special	8.2 (Berkeley) 1/23/94
3#
4# This file may be overwritten on upgrades.
5# Put your custom specifications in /etc/mtree/special.local instead.
6# See security.conf(5) for details.
7
8#
9# /etc/security checks:
10#	- All of these are checked if $check_mtree is enabled.
11#	- Files with "nodiff" tags are highlighted if they change.
12#	- Files without "nodiff" or "exclude" tags are displayed
13#	  with diff(1)s if $check_changelist is enabled.
14#
15
16/set uname=root gname=wheel
17
18.				type=dir  mode=0755
19
20./boot.cfg			type=file mode=0644 optional
21
22./dev				type=dir  mode=0755
23./dev/drum			type=char mode=0640 gname=kmem
24./dev/fd			type=dir  mode=0755 ignore
25./dev/kmem			type=char mode=0640 gname=kmem
26./dev/mem			type=char mode=0640 gname=kmem
27
28./etc				type=dir  mode=0755
29./etc/Distfile			type=file mode=0644 optional
30./etc/amd			type=dir  mode=0755 optional
31./etc/apm			type=dir  mode=0755 optional
32./etc/auto_master		type=file mode=0644
33./etc/autofs			type=dir  mode=0755
34./etc/autofs/include_ldap	type=file mode=0755
35./etc/autofs/include_nis	type=file mode=0755
36./etc/autofs/special_hosts	type=file mode=0755
37./etc/autofs/special_media	type=file mode=0755
38./etc/autofs/special_noauto	type=file mode=0755
39./etc/autofs/special_null	type=file mode=0755
40./etc/blocklistd.conf		type=file mode=0644 optional
41./etc/bluetooth			type=dir  mode=0755
42./etc/bluetooth/btattach.conf	type=file mode=0644
43./etc/bluetooth/btdevctl.conf	type=file mode=0644
44./etc/bluetooth/hosts		type=file mode=0644
45./etc/bluetooth/protocols	type=file mode=0644
46./etc/bootparams		type=file mode=0644 optional
47./etc/bootptab			type=file mode=0644 optional
48./etc/ccd.conf			type=file mode=0644 optional
49./etc/cgd			type=dir  mode=0700 optional
50./etc/cgd/cgd.conf		type=file mode=0600 optional tags=nodiff
51./etc/changelist		type=file mode=0644
52./etc/crontab			type=file mode=0644 optional
53./etc/csh.cshrc			type=file mode=0644
54./etc/csh.login			type=file mode=0644
55./etc/csh.logout		type=file mode=0644
56./etc/daily			type=file mode=0644
57./etc/daily.conf		type=file mode=0644
58./etc/daily.local		type=file mode=0644 optional
59./etc/defaultdomain		type=file mode=0644 optional
60./etc/defaults			type=dir  mode=0755
61./etc/defaults/daily.conf	type=file mode=0444
62./etc/defaults/monthly.conf	type=file mode=0444
63./etc/defaults/rc.conf		type=file mode=0444
64./etc/defaults/security.conf	type=file mode=0444
65./etc/defaults/weekly.conf	type=file mode=0444
66./etc/dhcpcd.conf		type=file mode=0644
67./etc/dhcpcd.enter-hook		type=file mode=0644 optional
68./etc/dhcpcd.exit-hook		type=file mode=0644 optional
69./etc/dhcpd.conf		type=file mode=0644 optional
70./etc/dhcpd6.conf		type=file mode=0644 optional
71./etc/disktab			type=file mode=0644
72./etc/dm.conf			type=file mode=0644
73./etc/dumpdates			type=file mode=0664 gname=operator optional tags=exclude
74./etc/envsys.conf		type=file mode=0644 optional
75./etc/ethers			type=file mode=0644 optional
76./etc/exports			type=file mode=0644 optional
77./etc/floppytab			type=file mode=0644
78./etc/fstab			type=file mode=0644
79./etc/ftpchroot			type=file mode=0644
80./etc/ftpd.conf			type=file mode=0644 optional
81./etc/ftpusers			type=file mode=0644
82./etc/ftpwelcome		type=file mode=0644 optional
83./etc/gateways			type=file mode=0644 optional
84./etc/gettytab			type=file mode=0644
85./etc/gpio.conf			type=file mode=0644
86./etc/group			type=file mode=0644
87./etc/hesiod.conf		type=file mode=0644 optional
88./etc/hosts			type=file mode=0644
89./etc/hosts.allow		type=file mode=0644 optional
90./etc/hosts.deny		type=file mode=0644 optional
91./etc/hosts.equiv		type=file mode=0600 optional tags=nodiff
92./etc/hosts.lpd			type=file mode=0644 optional
93./etc/ifaliases			type=file mode=0644 optional
94./etc/inetd.conf		type=file mode=0644
95./etc/ip6addrctl.conf		type=file mode=0644 optional
96./etc/ipf.conf			type=file mode=0644 optional
97./etc/ipf6.conf			type=file mode=0644 optional
98./etc/ipnat.conf		type=file mode=0644 optional
99./etc/ipsec.conf		type=file mode=0600 optional tags=nodiff
100./etc/iscsi			type=dir  mode=0755
101./etc/iscsi/auths		type=file mode=0600 tags=nodiff
102./etc/iscsi/targets		type=file mode=0644
103./etc/ld.so.conf		type=file mode=0644 optional
104./etc/localtime			type=link mode=0755
105./etc/locate.conf		type=file mode=0644 optional
106./etc/login.conf		type=file mode=0644 optional
107./etc/mail			type=dir  mode=0755
108./etc/mail.rc			type=file mode=0644
109./etc/mail/aliases		type=file mode=0644
110./etc/mail/aliases.db		type=file mode=0644 optional tags=exclude
111./etc/mailer.conf		type=file mode=0644
112./etc/man.conf			type=file mode=0644
113./etc/master.passwd		type=file mode=0600 tags=nodiff
114./etc/mk.conf			type=file mode=0644 optional
115./etc/moduli			type=file mode=0444
116./etc/monthly			type=file mode=0644
117./etc/monthly.conf		type=file mode=0644
118./etc/monthly.local		type=file mode=0644 optional
119./etc/mrouted.conf		type=file mode=0644
120./etc/mtree			type=dir  mode=0755
121./etc/mtree/special		type=file mode=0444
122./etc/mtree/special.local	type=file mode=0644 optional
123./etc/mygate			type=file mode=0644 optional
124./etc/mygate6			type=file mode=0644 optional
125./etc/myname			type=file mode=0644 optional
126./etc/named.conf		type=file mode=0644 optional
127./etc/namedb			type=dir  mode=0755
128./etc/netconfig			type=file mode=0644
129./etc/netgroup			type=file mode=0644 optional
130./etc/netstart.local		type=file mode=0644 optional
131./etc/networks			type=file mode=0644
132./etc/newsyslog.conf		type=file mode=0644
133./etc/npf.conf			type=file mode=0644 optional
134./etc/nsswitch.conf		type=file mode=0644
135./etc/ntp.conf			type=file mode=0644 optional
136./etc/openssl			type=dir  mode=0755
137./etc/openssl/certs.conf	type=file mode=0644
138./etc/pam.conf			type=file mode=0644 optional
139./etc/pam.d			type=dir  mode=0755
140./etc/pam.d/display_manager	type=file mode=0644
141./etc/pam.d/ftpd		type=file mode=0644
142./etc/pam.d/gdm			type=file mode=0644
143./etc/pam.d/imap		type=file mode=0644
144./etc/pam.d/kde			type=file mode=0644
145./etc/pam.d/login		type=file mode=0644
146./etc/pam.d/other		type=file mode=0644
147./etc/pam.d/passwd		type=file mode=0644
148./etc/pam.d/pop3		type=file mode=0644
149./etc/pam.d/ppp			type=file mode=0644
150./etc/pam.d/rexecd		type=file mode=0644
151./etc/pam.d/rsh			type=file mode=0644
152./etc/pam.d/sshd		type=file mode=0644
153./etc/pam.d/su			type=file mode=0644
154./etc/pam.d/system		type=file mode=0644
155./etc/pam.d/telnetd		type=file mode=0644
156./etc/pam.d/xdm			type=file mode=0644
157./etc/pam.d/xserver		type=file mode=0644
158./etc/passwd			type=file mode=0644
159./etc/passwd.conf		type=file mode=0644 optional
160./etc/pf.conf			type=file mode=0644
161./etc/pf.os			type=file mode=0444
162./etc/phones			type=file mode=0644
163./etc/postfix			type=dir  mode=0755 optional
164./etc/postfix/main.cf		type=file mode=0644 optional
165./etc/postfix/master.cf		type=file mode=0644 optional
166./etc/powerd			type=dir  mode=0755 optional
167./etc/powerd/scripts		type=dir  mode=0755 optional
168./etc/powerd/scripts/acadapter	type=file mode=0555 optional
169./etc/powerd/scripts/hotkey_button	type=file mode=0555 optional
170./etc/powerd/scripts/lid_switch type=file mode=0555 optional
171./etc/powerd/scripts/power_button	type=file mode=0555 optional
172./etc/powerd/scripts/reset_button	type=file mode=0555 optional
173./etc/powerd/scripts/sensor_battery	type=file mode=0555 optional
174./etc/powerd/scripts/sensor_drive	type=file mode=0555 optional
175./etc/powerd/scripts/sensor_fan		type=file mode=0555 optional
176./etc/powerd/scripts/sensor_indicator	type=file mode=0555 optional
177./etc/powerd/scripts/sensor_power	type=file mode=0555 optional
178./etc/powerd/scripts/sensor_resistance	type=file mode=0555 optional
179./etc/powerd/scripts/sensor_temperature	type=file mode=0555 optional
180./etc/powerd/scripts/sensor_voltage	type=file mode=0555 optional
181./etc/powerd/scripts/sleep_button	type=file mode=0555 optional
182./etc/ppp			type=dir  mode=0755 optional
183./etc/ppp/options		type=file mode=0644 optional
184./etc/printcap			type=file mode=0644
185./etc/profile			type=file mode=0644
186./etc/protocols			type=file mode=0644
187./etc/racoon			type=dir  mode=0755 optional
188./etc/racoon/psk.txt		type=file mode=0600 optional tags=nodiff
189./etc/racoon/racoon.conf	type=file mode=0644 optional
190./etc/rbootd.conf		type=file mode=0644 optional
191./etc/rc			type=file mode=0644
192./etc/rc.conf			type=file mode=0644
193./etc/rc.d			type=dir  mode=0755
194./etc/rc.d/DAEMON		type=file mode=0555
195./etc/rc.d/DISKS		type=file mode=0555
196./etc/rc.d/LOGIN		type=file mode=0555
197./etc/rc.d/NETWORKING		type=file mode=0555
198./etc/rc.d/SERVERS		type=file mode=0555
199./etc/rc.d/accounting		type=file mode=0555
200./etc/rc.d/altqd		type=file mode=0555
201./etc/rc.d/amd			type=file mode=0555
202./etc/rc.d/apmd			type=file mode=0555
203./etc/rc.d/bluetooth		type=file mode=0555
204./etc/rc.d/bootconf.sh		type=file mode=0555
205./etc/rc.d/bootparams		type=file mode=0555
206./etc/rc.d/ccd			type=file mode=0555
207./etc/rc.d/cgd			type=file mode=0555
208./etc/rc.d/cleartmp		type=file mode=0555
209./etc/rc.d/cron			type=file mode=0555
210./etc/rc.d/devpubd		type=file mode=0555
211./etc/rc.d/dhcpcd		type=file mode=0555
212./etc/rc.d/dhcpd		type=file mode=0555
213./etc/rc.d/dhcpd6		type=file mode=0555
214./etc/rc.d/dhcrelay		type=file mode=0555
215./etc/rc.d/dmesg		type=file mode=0555
216./etc/rc.d/downinterfaces	type=file mode=0555
217./etc/rc.d/envsys		type=file mode=0555
218./etc/rc.d/fsck			type=file mode=0555
219./etc/rc.d/fsck_root		type=file mode=0555
220./etc/rc.d/ftp_proxy		type=file mode=0555
221./etc/rc.d/ftpd			type=file mode=0555
222./etc/rc.d/gpio			type=file mode=0555
223./etc/rc.d/hostapd		type=file mode=0555
224./etc/rc.d/httpd		type=file mode=0555
225./etc/rc.d/identd		type=file mode=0555
226./etc/rc.d/ifwatchd		type=file mode=0555
227./etc/rc.d/inetd		type=file mode=0555
228./etc/rc.d/ipfilter		type=file mode=0555
229./etc/rc.d/ipfs			type=file mode=0555
230./etc/rc.d/ipmon		type=file mode=0555
231./etc/rc.d/ipnat		type=file mode=0555
232./etc/rc.d/ipsec		type=file mode=0555
233./etc/rc.d/irdaattach		type=file mode=0555
234./etc/rc.d/iscsi_target		type=file mode=0555
235./etc/rc.d/iscsid		type=file mode=0555
236./etc/rc.d/isibootd		type=file mode=0555
237./etc/rc.d/kdc			type=file mode=0555
238./etc/rc.d/ldconfig		type=file mode=0555
239./etc/rc.d/ldpd			type=file mode=0555
240./etc/rc.d/local		type=file mode=0555
241./etc/rc.d/lpd			type=file mode=0555
242./etc/rc.d/lvm			type=file mode=0555
243./etc/rc.d/makemandb		type=file mode=0555
244./etc/rc.d/mdnsd		type=file mode=0555
245./etc/rc.d/mixerctl		type=file mode=0555
246./etc/rc.d/modules		type=file mode=0555
247./etc/rc.d/mopd			type=file mode=0555
248./etc/rc.d/motd			type=file mode=0555
249./etc/rc.d/mountall		type=file mode=0555
250./etc/rc.d/mountcritlocal	type=file mode=0555
251./etc/rc.d/mountcritremote	type=file mode=0555
252./etc/rc.d/mountd		type=file mode=0555
253./etc/rc.d/moused		type=file mode=0555
254./etc/rc.d/mrouted		type=file mode=0555
255./etc/rc.d/named		type=file mode=0555
256./etc/rc.d/ndbootd		type=file mode=0555
257./etc/rc.d/network		type=file mode=0555
258./etc/rc.d/newsyslog		type=file mode=0555
259./etc/rc.d/nfsd			type=file mode=0555
260./etc/rc.d/nfslocking		type=file mode=0555
261./etc/rc.d/npf			type=file mode=0555
262./etc/rc.d/npfd			type=file mode=0555
263./etc/rc.d/nsd			type=file mode=0555 optional
264./etc/rc.d/ntpd			type=file mode=0555
265./etc/rc.d/ntpdate		type=file mode=0555
266./etc/rc.d/perusertmp		type=file mode=0555
267./etc/rc.d/pf			type=file mode=0555
268./etc/rc.d/pf_boot		type=file mode=0555
269./etc/rc.d/pflogd		type=file mode=0555
270./etc/rc.d/postfix		type=file mode=0555
271./etc/rc.d/powerd		type=file mode=0555
272./etc/rc.d/ppp			type=file mode=0555
273./etc/rc.d/pwcheck		type=file mode=0555
274./etc/rc.d/quota		type=file mode=0555
275./etc/rc.d/racoon		type=file mode=0555
276./etc/rc.d/raidframe		type=file mode=0555
277./etc/rc.d/raidframeparity	type=file mode=0555
278./etc/rc.d/random_seed		type=file mode=0555
279./etc/rc.d/rarpd		type=file mode=0555
280./etc/rc.d/rbootd		type=file mode=0555
281./etc/rc.d/rndctl		type=file mode=0555
282./etc/rc.d/root			type=file mode=0555
283./etc/rc.d/route6d		type=file mode=0555
284./etc/rc.d/routed		type=file mode=0555
285./etc/rc.d/rpcbind		type=file mode=0555
286./etc/rc.d/rtadvd		type=file mode=0555
287./etc/rc.d/rtclocaltime		type=file mode=0555
288./etc/rc.d/rwho			type=file mode=0555
289./etc/rc.d/savecore		type=file mode=0555
290./etc/rc.d/screenblank		type=file mode=0555
291./etc/rc.d/securelevel		type=file mode=0555
292./etc/rc.d/smtoff		type=file mode=0555
293./etc/rc.d/sshd			type=file mode=0555
294./etc/rc.d/staticroute		type=file mode=0555
295./etc/rc.d/swap1		type=file mode=0555
296./etc/rc.d/swap2		type=file mode=0555
297./etc/rc.d/sysctl		type=file mode=0555
298./etc/rc.d/sysdb		type=file mode=0555
299./etc/rc.d/syslogd		type=file mode=0555
300./etc/rc.d/timed		type=file mode=0555
301./etc/rc.d/tpctl		type=file mode=0555
302./etc/rc.d/ttys			type=file mode=0555
303./etc/rc.d/unbound		type=file mode=0555
304./etc/rc.d/veriexec		type=file mode=0555
305./etc/rc.d/virecover		type=file mode=0555
306./etc/rc.d/wdogctl		type=file mode=0555
307./etc/rc.d/wpa_supplicant	type=file mode=0555
308./etc/rc.d/wscons		type=file mode=0555
309./etc/rc.d/wsmoused		type=file mode=0555
310./etc/rc.d/xdm			type=file mode=0555 optional
311./etc/rc.d/xfs			type=file mode=0555 optional
312./etc/rc.d/ypbind		type=file mode=0555
313./etc/rc.d/yppasswdd		type=file mode=0555
314./etc/rc.d/ypserv		type=file mode=0555
315./etc/rc.local			type=file mode=0644 optional
316./etc/rc.shutdown		type=file mode=0644
317./etc/rc.shutdown.local		type=file mode=0644 optional
318./etc/rc.subr			type=file mode=0644
319./etc/remote			type=file mode=0644
320./etc/resolv.conf		type=file mode=0644 optional
321./etc/route.conf		type=file mode=0644 optional
322./etc/rpc			type=file mode=0644
323./etc/rtadvd.conf		type=file mode=0644 optional
324./etc/saslc.d			type=dir  mode=0755
325./etc/saslc.d/postfix		type=dir  mode=0755
326./etc/saslc.d/postfix/mech	type=dir  mode=0755
327./etc/saslc.d/saslc		type=dir  mode=0755
328./etc/saslc.d/saslc/mech	type=dir  mode=0755
329./etc/security			type=file mode=0644
330./etc/security.conf		type=file mode=0644
331./etc/security.local		type=file mode=0644 optional
332./etc/services			type=file mode=0644
333./etc/shells			type=file mode=0644
334./etc/shosts.equiv		type=file mode=0600 optional tags=nodiff
335./etc/skel			type=dir  mode=0755 optional
336./etc/spwd.db			type=file mode=0600 tags=exclude tags=nodiff
337./etc/ssh			type=dir  mode=0755 optional
338./etc/ssh/ssh_config		type=file mode=0644 optional
339./etc/ssh/ssh_host_dsa_key	type=file mode=0600 optional tags=nodiff
340./etc/ssh/ssh_host_dsa_key.pub	type=file mode=0644 optional
341./etc/ssh/ssh_host_ecdsa_key	type=file mode=0600 optional tags=nodiff
342./etc/ssh/ssh_host_ecdsa_key.pub	type=file mode=0644 optional
343./etc/ssh/ssh_host_ed25519_key	type=file mode=0600 optional tags=nodiff
344./etc/ssh/ssh_host_ed25519_key.pub	type=file mode=0644 optional
345./etc/ssh/ssh_host_key		type=file mode=0600 optional tags=nodiff tags=nodiff
346./etc/ssh/ssh_host_key.pub	type=file mode=0644 optional
347./etc/ssh/ssh_host_rsa_key	type=file mode=0600 optional tags=nodiff
348./etc/ssh/ssh_host_rsa_key.pub	type=file mode=0644 optional
349./etc/ssh/ssh_known_hosts	type=file mode=0644 optional
350./etc/ssh/ssh_known_hosts2	type=file mode=0644 optional
351./etc/ssh/sshd_config		type=file mode=0644 optional
352./etc/sysctl.conf		type=file mode=0644
353./etc/syslog.conf		type=file mode=0644
354./etc/ttyaction			type=file mode=0644 optional
355./etc/ttys			type=file mode=0644
356./etc/usermgmt.conf		type=file mode=0644 optional
357./etc/weekly			type=file mode=0644
358./etc/weekly.conf		type=file mode=0644
359./etc/weekly.local		type=file mode=0644 optional
360./etc/wscons.conf		type=file mode=0644
361./etc/zfs			type=dir  mode=0755
362
363./private			type=dir mode=0755 optional
364./private/tmp			type=dir mode=0555 optional ignore
365
366./root				type=dir  mode=0755
367./root/.cshrc			type=file mode=0644
368./root/.klogin			type=file mode=0600 optional tags=nodiff
369./root/.login			type=file mode=0644
370./root/.profile			type=file mode=0644
371./root/.rhosts			type=file mode=0600 optional tags=nodiff
372./root/.shosts			type=file mode=0600 optional tags=nodiff
373./root/.ssh			type=dir  mode=0700 optional
374./root/.ssh/authorized_keys	type=file mode=0600 optional tags=nodiff
375./root/.ssh/authorized_keys2	type=file mode=0600 optional tags=nodiff
376./root/.ssh/config		type=file mode=0644 optional
377./root/.ssh/id_dsa		type=file mode=0600 optional tags=nodiff
378./root/.ssh/id_dsa.pub		type=file mode=0644 optional
379./root/.ssh/id_rsa		type=file mode=0600 optional tags=nodiff
380./root/.ssh/id_rsa.pub		type=file mode=0644 optional
381./root/.ssh/identity		type=file mode=0600 optional tags=nodiff
382./root/.ssh/identity.pub	type=file mode=0644 optional
383./root/.ssh/known_hosts		type=file mode=0644 optional
384./root/.ssh/known_hosts2	type=file mode=0644 optional
385
386./sbin				type=dir  mode=0755 ignore
387
388./usr				type=dir  mode=0755
389./usr/bin			type=dir  mode=0755 ignore
390./usr/games			type=dir  mode=0755 optional
391./usr/games/hide		type=dir  mode=0750 gname=games ignore optional
392./usr/include			type=dir  mode=0755 ignore
393./usr/lib			type=dir  mode=0755 ignore
394./usr/libdata			type=dir  mode=0755 ignore
395./usr/libexec			type=dir  mode=0755 ignore
396./usr/pkg			type=dir  mode=0755 ignore optional
397./usr/sbin			type=dir  mode=0755 ignore
398./usr/share			type=dir  mode=0755 ignore
399
400./var				type=dir  mode=0755
401./var/account			type=dir  mode=0755
402./var/account/acct		type=file mode=0644 optional tags=exclude
403./var/at			type=dir  mode=0755 ignore
404./var/backups			type=dir  mode=0755 ignore
405./var/chroot			type=dir  mode=0755
406./var/chroot/ftp-proxy		type=dir  mode=0755
407./var/chroot/named		type=dir  mode=0755
408./var/chroot/named/dev		type=dir  mode=0755
409./var/chroot/named/etc		type=dir  mode=0755
410./var/chroot/named/etc/namedb	type=dir  mode=0755 uname=named gname=named
411./var/chroot/named/etc/namedb/cache	type=dir mode=0775 uname=named gname=named
412./var/chroot/named/etc/namedb/keys	type=dir mode=0775 uname=named gname=named
413./var/chroot/named/usr		type=dir  mode=0755
414./var/chroot/named/usr/libexec	type=dir  mode=0755
415./var/chroot/named/var		type=dir  mode=0755
416./var/chroot/named/var/run	type=dir  mode=0775 uname=named gname=named
417./var/chroot/named/var/tmp	type=dir  mode=01775 uname=named gname=named
418./var/chroot/ntpd		type=dir  mode=0755
419./var/chroot/ntpd/dev		type=dir  mode=0755
420./var/chroot/ntpd/etc		type=dir  mode=0755
421./var/chroot/ntpd/var		type=dir  mode=0755
422./var/chroot/ntpd/var/db	type=dir  mode=0775 uname=ntpd gname=ntpd
423./var/chroot/ntpd/var/run	type=dir  mode=0775 uname=ntpd gname=ntpd
424./var/chroot/pflogd		type=dir  mode=0755
425./var/chroot/rtadvd		type=dir  mode=0755 uname=_rtadvd gname=_rtadvd
426./var/chroot/rtadvd/etc		type=dir  mode=0755 uname=_rtadvd gname=_rtadvd
427./var/chroot/rtadvd/var		type=dir  mode=0755 uname=_rtadvd gname=_rtadvd
428./var/chroot/rtadvd/var/run	type=dir  mode=0775 uname=_rtadvd gname=_rtadvd
429./var/chroot/sshd		type=dir  mode=0755
430./var/chroot/tcpdump		type=dir  mode=0755
431./var/chroot/tftp-proxy		type=dir  mode=0755
432./var/cron			type=dir  mode=0755
433./var/cron/tabs			type=dir  mode=0700
434./var/cron/tabs/root		type=file mode=0600 tags=nodiff
435./var/db			type=dir  mode=0755
436./var/log			type=dir  mode=0755
437./var/log/authlog		type=file mode=0600 optional tags=exclude
438./var/log/lastlog		type=file mode=0664 gname=utmp tags=exclude
439./var/log/lastlogx		type=file mode=0664 gname=utmp tags=exclude
440./var/log/wtmp			type=file mode=0664 gname=utmp tags=exclude
441./var/log/wtmpx			type=file mode=0664 gname=utmp tags=exclude
442./var/mail			type=dir  mode=1777 ignore
443./var/preserve			type=dir  mode=0755 ignore
444./var/run			type=dir  mode=0755
445./var/run/mdnsd			type=dir  mode=0755 gname=_mdnsd uname=_mdnsd optional
446./var/run/utmp			type=file mode=0664 gname=utmp tags=exclude
447./var/run/utmpx			type=file mode=0664 gname=utmp tags=exclude
448./var/spool			type=dir  mode=0755
449./var/spool/ftp			type=dir  mode=0755 optional
450./var/spool/ftp/bin		type=dir  mode=0755 optional
451./var/spool/ftp/bin/ls		type=file mode=0555 optional
452./var/spool/ftp/etc		type=dir  mode=0755 optional
453./var/spool/ftp/etc/group		type=file mode=0644 optional
454./var/spool/ftp/etc/localtime		type=file mode=0644 optional
455./var/spool/ftp/etc/master.passwd	type=file mode=0600 optional tags=nodiff
456./var/spool/ftp/etc/passwd		type=file mode=0644 optional
457./var/spool/ftp/hidden		type=dir  mode=0111 ignore optional
458./var/spool/ftp/pub		type=dir  mode=0775 ignore optional
459./var/spool/output		type=dir  mode=0755 ignore
460./var/yp			type=dir  mode=0755
461./var/yp/Makefile		type=file mode=0644 optional
462