[Nut-upsdev] Re: [nut-commits] svn commit r831 - in trunk: .

Arjen de Korte nut+devel at de-korte.org
Sat Mar 3 20:16:12 CET 2007


Charles Lepple wrote:

>> Is there a reason for these permissions, anyone? Would it break the
>> Debian packaging (from which the hotplug scripts were originally
>> taken) if we used a user instead of a group?
> In general, when you want to isolate the amount of damage that a
> process can do, you don't give that process ownership of a file,
> device node or socket - you just give it group read-write permission.

If this is the case (and I'll take your word it), why do we recommend to
let the NUT user own both the statepath and the serial port it connects
to (if any) in the INSTALL file? We probably should change this as well.

Best regards, Arjen



More information about the Nut-upsdev mailing list