Gentoo Archives: gentoo-user

From: Neil Bothwick <neil@××××××××××.uk>
To: gentoo-user@l.g.o
Subject: Re: [gentoo-user] USB automount
Date: Thu, 13 Sep 2012 14:44:30
Message-Id: 20120913154222.7538910f@hactar.digimed.co.uk
In Reply to: Re: [gentoo-user] USB automount by "Canek Peláez Valdés"
1 On Thu, 13 Sep 2012 09:19:19 -0500, Canek Peláez Valdés wrote:
2
3 > > A normal user can pumount *WHAT THAT SAME USER* has pmounted. Now
4 > > try for a general solution.
5 >
6 > The general solution is using something like udisks+polkit. That is a
7 > true general solution; otherwise you end up like the author of
8 > calibre, with a security mess on his hands:
9 >
10 > https://bugs.launchpad.net/calibre/+bug/885027
11 >
12 > If you dismiss the security implications of sudoing pmount, because
13 > you care only about *your* use cases, on *your* machine, by definition
14 > that is not a "general solution".
15
16 You should never need to sudo pmount, it is supposed to run as a normal
17 user. Walter is using sudo to run pumount, which is nothing like the
18 situation described in that bug. Even pmount avoids the situations
19 described in that bug because it is only capable of operating in /media.
20
21
22 --
23 Neil Bothwick
24
25 A man wrapped up in himself makes a very small package.

Attachments

File name MIME type
signature.asc application/pgp-signature

Replies

Subject Author
Re: [gentoo-user] USB automount "Canek Peláez Valdés" <caneko@×××××.com>