Gentoo Archives: gentoo-user

From: Florian Philipp <f.philipp@××××××.de>
To: gentoo-user@l.g.o
Subject: Re: [gentoo-user] pam limits
Date: Thu, 25 Oct 2007 22:12:39
Message-Id: 4721125E.8000506@addcom.de
In Reply to: Re: [gentoo-user] pam limits by Albert Hopkins
1 Albert Hopkins schrieb:
2 > On Thu, 2007-10-25 at 14:35 +0300, Daniel Iliev wrote:
3 >> Hi, ppl
4 >>
5 >> I have the habit of imposing some limitations over all users via
6 >> /etc/security/limits.conf. For example I used to limit the number of
7 >> concurrent processes one can execute to prevent the system from simple
8 >> misuses like fork bombs by putting a limit (nproc) for group "users"
9 >> and all other common groups ("games" etc.)
10 >>
11 >> Now that the behaviour of "useradd -m xyz" has changed from putting the
12 >> newuser in group "users" ("xyz:users") to putting the user in a group
13 >> with same name ("xyz:xyz") I would appreciate any advice on getting the
14 >> old behavior back or any workaround to achieve the same goal - all
15 >> users should be limited by default at creation time.
16 >
17 > Oh do they do that now? That was that nasty Red Hat extension.
18 > Nevertheless, override the default behavior:
19 >
20 > # useradd -m -g users xyz
21 >
22 >
23 >
24 > --
25 > Albert W. Hopkins
26 >
27
28 I'm wondering what's the advantage of using a special group for each
29 user. Doesn't it just make user administration more complicated?
30
31 --
32 gentoo-user@g.o mailing list

Replies

Subject Author
Re: [gentoo-user] pam limits Albert Hopkins <marduk@×××××××××××.org>