1 |
On Thu, 13 Sep 2012 09:19:19 -0500, Canek Peláez Valdés wrote: |
2 |
|
3 |
> > A normal user can pumount *WHAT THAT SAME USER* has pmounted. Now |
4 |
> > try for a general solution. |
5 |
> |
6 |
> The general solution is using something like udisks+polkit. That is a |
7 |
> true general solution; otherwise you end up like the author of |
8 |
> calibre, with a security mess on his hands: |
9 |
> |
10 |
> https://bugs.launchpad.net/calibre/+bug/885027 |
11 |
> |
12 |
> If you dismiss the security implications of sudoing pmount, because |
13 |
> you care only about *your* use cases, on *your* machine, by definition |
14 |
> that is not a "general solution". |
15 |
|
16 |
You should never need to sudo pmount, it is supposed to run as a normal |
17 |
user. Walter is using sudo to run pumount, which is nothing like the |
18 |
situation described in that bug. Even pmount avoids the situations |
19 |
described in that bug because it is only capable of operating in /media. |
20 |
|
21 |
|
22 |
-- |
23 |
Neil Bothwick |
24 |
|
25 |
A man wrapped up in himself makes a very small package. |