Don't try this at home, trust me, although you may think that drwxrwxrwt are too much permisions for a directory in your strong bastion host, they are not.

Most programs and daemons relay on being able to write to /tmp no matter what, and will cowardly refuse to run if they can't.

Also, check that funny looking "t" at the end of the permisions for /tmp, that's the famus sticky bit.

