tags 678816 wontfix
thanks

Quoting email....@arcor.de (email....@arcor.de):
> Package: samba
> 
> The default user used by samba to create files of guest users currently
> is "nobody", however the filesystem should never contain anything 
> belonging to the nobody/nogroup. (see Bug #290623)

But the samba package doesn't create any file belonging to "nobody",
and doesn't even allow doing so, as it doesn't create any writable
public share.

> Other reasons to rethink the impersonation of nobody, are practical
> problems in accessing files created by samba guest users.
> 
> May I suggest to introduce a proper samba-guest user and
> default to create files of guests on the local filesystem as "samba-guest"
> and the (general)  "users" group. (with the default umask 002)
> 
> As all real users are supposed to be in the users group this should 
> give users full access to the files locally just as through samba.
> While at the same time the files are still inaccessible to potentially
> vulnerable (system user) deamon processes.

This is a deviation from a widely documented upstream behaviour and
just as for any such deviation without real solid rationale, I object
to it.

Any admin is entitled to do whatever customization suits his|her needs
and, anyway, I think that nearly all Samba servers need local
adaptation to fit local needs.

So, sorry, but I hereby tag this bug as wontfix.


Attachment: signature.asc
Description: Digital signature

Reply via email to