Am 05.04.2011 18:29, schrieb Marco d'Itri: > On Apr 05, Michael Biebl <bi...@debian.org> wrote: > >> Very bad idea imho, I'm strongly against it. >> The point of /run is not to create a second /tmp, where everyone can write >> into. > Agreed, I really do not want to consider the security implications of a > world-writeable {,/var}/run. > Programs which use /run are supposed to use a subdirectory anyway.
Yeah. Daemons which drop privileges would have a properly owned subdirectory in /run. Such a subdirectory would be setup by a privileged process. Usually that is done in the sysv init script itself, although I'd like us to provide a more declarative mechanism for that. Cheers, Michael -- Why is it that all of the instruments seeking intelligent life in the universe are pointed away from Earth?
signature.asc
Description: OpenPGP digital signature