Re: daemontools respin?
Bruce Guenter <[email protected]> Wed, 9 Jun 2010 21:35:04 -0600
| Newsgroups | gmane.comp.sysutils.bgware |
|---|---|
| Message-ID | <[email protected]> |
On Wed, Jun 09, 2010 at 09:19:11PM +0000, Wayne Marshall wrote: > It is trivial to drop any existing daemontools service > definitions into a perp installation. See the COMPATIBILITY > section in perpetrate(5) for examples. Well, I would believe simple, but this is a little above what I would call trivial. By drop-in replacements, I mean no changes necessary to existing services. > > My idea was that if the service directory was owned by > > non-root, to setuid to the owner after changing into the > > directory; and/or if the "run" file was owned by non-root, to > > setuid to the owner after forking. > > Well, the use case here still seems a little ambiguous. > Generally, I think it would be inadvisable to have > non-root-owned service directories under a root-priveleged > svscan, unless the entire svscan instance/tree were > non-priveleged. The first use case would be where an admin could give a non-root user a service directory, allowing full management of that one service (since supervise would drop root on startup, the control files would be owned as non-root). The second use case (setuid on fork) would be for setting up services as root to run as another user without doing a setuid in the run script. In both cases, it was an idea and not a plan, and I was uncertain if they would be at all useful. -- Bruce Guenter <[email protected]> http://untroubled.org/
signature.asc
(application/pgp-signature, 198 B)
-----BEGIN PGP SIGNATURE----- Version: GnuPG v2.0.15 (GNU/Linux) iEYEARECAAYFAkwQXWgACgkQ6W+y3GmZgOgE0QCdH9XPettVBz8L2yAHGUYdpA8F Q9cAoIn71dMPbyUOi08jmcX8XSAx/SPk =4Hl5 -----END PGP SIGNATURE-----