"Olivier B." <ob.report...@daevel.fr> writes:

> is it possible to make bcfg2-server running on an unprivileged account ?
> (instead of root) After asking on the upstream IRC Channel, it seems that
> bcfg2-server doesn't need root privileges.

I agree that this is a change that should be done at some point, but since the
release of Squeeze is getting closer and this is an invasive change and also
rather complicated (we can't simply do a chown -R from the postinst, since we
have no way of knowing how the user has configured the permissions of their
repository, manual intervention by the admin is likely to be needed), I'd
prefer to leave this for later (after the release).

Also I think that the security improvements gained from this are likely to be
rather low (control of the Bcfg2 server gives root access on all of the
clients no matter what, and the machine running the server is likely to also
be a client), I don't consider this to be of high priority at this time.

-- 
Arto Jantunen



-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Reply via email to