Gentoo Logo
Gentoo Spaceship




Note: Due to technical difficulties, the Archives are currently not up to date. GMANE provides an alternative service for most mailing lists.
c.f. bug 424647
List Archive: gentoo-dev
Navigation:
Lists: gentoo-dev: < Prev By Thread Next > < Prev By Date Next >
Headers:
To: gentoo-dev@g.o
From: torbenh@...
Subject: Re: New local use flag for arts: artswrappersuid
Date: Sat, 17 May 2003 21:47:21 +0200
On Sat, May 17, 2003 at 09:49:32PM +0300, Dan Armak wrote:
Content-Description: signed data
> Well, security isn't my home turf, so since everyone thinks a global flag is 
> OK, I won't object :-) (Spider already replied to me privately suggesting the 
> same thing, but then seemed to change his mind, or maybe I just misunderstood 
> him. Anyhow, what do other people think, in particular our security people?.)
> 
> Just that as I said to him, it would have to be on by default and 
> defined as: "Turn off this flag to enable highly insecure default 
> configurations for the sake of performance - for fully trusted environments 
> only". That could even be a global "security" flag, not just "suid". But it's 
> ok with me either way. Opinions?

i dont like the idea of a global suid flag.

an alternative would be to implement this feature with sudo and have a
sudo-update script which creates an autogenerated script in a
path which is scanned prior to /usr/bin...

i am not sure how this script will be unmerged, but it could be ok if
sudo-update added the script to /var/db/pkg/*/*/CONTENTS....

This seems a little safer to me... but much more hassle of course.


-- 
torben Hohn
http://galan.sourceforge.net -- The graphical Audio language
Attachment:
pgpMCuobXpeWf.pgp (PGP signature)
References:
New local use flag for arts: artswrappersuid
-- Dan Armak
Re: New local use flag for arts: artswrappersuid
-- Grant Goodyear
Re: New local use flag for arts: artswrappersuid
-- Martin Schlemmer
Re: New local use flag for arts: artswrappersuid
-- Dan Armak
Navigation:
Lists: gentoo-dev: < Prev By Thread Next > < Prev By Date Next >
Previous by thread:
Re: New local use flag for arts: artswrappersuid
Next by thread:
Re: New local use flag for arts: artswrappersuid
Previous by date:
Re: New local use flag for arts: artswrappersuid
Next by date:
Multiple DISTDIR


Updated Jun 17, 2009

Summary: Archive of the gentoo-dev mailing list.

Donate to support our development efforts.

Copyright 2001-2013 Gentoo Foundation, Inc. Questions, Comments? Contact us.