Gentoo Logo
Gentoo Spaceship




Note: Due to technical difficulties, the Archives are currently not up to date. GMANE provides an alternative service for most mailing lists.
c.f. bug 424647
List Archive: gentoo-amd64
Navigation:
Lists: gentoo-amd64: < Prev By Thread Next > < Prev By Date Next >
Headers:
To: gentoo-amd64@g.o
From: Duncan <1i5t5.duncan@...>
Subject: Re: chrooted environment not available to users
Date: Tue, 13 Dec 2005 16:35:02 -0700
Mark Knecht posted
<5bdc1c8b0512131503n3c3cfcb4p9e7f3e6780dedf8d@...>, excerpted
below,  on Tue, 13 Dec 2005 15:03:49 -0800:

> 1) Everything seems to work fine so far as root. I have Firefox, Java,
> Flash and mplayer all working nicely. I can browse the web pages I
> need to and play the wmv video training files and do the exercises
> just fine.

Waitaminute...  You are browsing the web as root?  That's NOT a good
idea, particularly with all sorts of plugins (meaning all sorts of
opportunities for vulnerabilities) setup.  It extreme situations, I
/might/ browse as root using links or lynx in text-mode only, preferably
without even scripting turned on, but even then, I feel like I'm leaving
myself open to more than I want.  It may be a chroot environment, but that
doesn't mean it's impossible to break outof, and browsing as root, unless
it's ONLY to local stuff you've written yourself (or documentation that
you trust doesn't contain deliberate exploits), is NOT a good idea!

As for home, you could mount --bind it  as well, if desired, then create
a stub user in the chroot to use for browsing the web or whatever.  I'd
certainly create the stub user, regardless of whether I bind-mounted /home
into the chroot or not.

-- 
Duncan - List replies preferred.   No HTML msgs.
"Every nonfree program has a lord, a master --
and if you use the program, he is your master."  Richard Stallman in
http://www.linuxdevcenter.com/pub/a/linux/2004/12/22/rms_interview.html


-- 
gentoo-amd64@g.o mailing list


Replies:
Re: Re: chrooted environment not available to users
-- Mark Knecht
References:
chrrot'ed environment not available to users
-- Mark Knecht
Re: chrrot'ed environment not available to users
-- Billy Holmes
Re: chrrot'ed environment not available to users
-- Billy Holmes
Re: chrrot'ed environment not available to users
-- Mark Knecht
Re: chrooted environment not available to users
-- Peter Humphrey
Re: chrooted environment not available to users
-- Billy Holmes
Re: chrooted environment not available to users
-- Mark Knecht
Navigation:
Lists: gentoo-amd64: < Prev By Thread Next > < Prev By Date Next >
Previous by thread:
Re: chrooted environment not available to users
Next by thread:
Re: Re: chrooted environment not available to users
Previous by date:
Re: chrooted environment not available to users
Next by date:
Re: Re: chrooted environment not available to users


Updated Jun 17, 2009

Summary: Archive of the gentoo-amd64 mailing list.

Donate to support our development efforts.

Copyright 2001-2013 Gentoo Foundation, Inc. Questions, Comments? Contact us.