On Tue, Mar 15, 2011 at 23:09:13 +0100, Georges Khaznadar wrote:

> Hello Bill,
> 
> the override was intended to make a few commands as low privileged 
> as possible. Most of the files under the subdirectory /var/lib/wims are
> owner by the system user "wims", which is created for the sake of the
> package wims. Instead of making nobody:nogroup to own these commands,
> I may create another pair of user/group, for instance nowims/nowims and
> use this pair to achieve the same goal.
> 
Why don't you use root:root then?

> Do you agree with this possibility?
> 
> By the way, please can you give me some link about the problem which
> arises with the usage of nobody/nogroup?
> 
random system daemon runs as nobody:nogroup (because it's not supposed
to have access to the filesystem).  You've just given it permissions it
wasn't supposed to have.

Cheers,
Julien



-- 
To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Reply via email to