[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#31864: Should programs that access /dev/* be SGID?



Previously rjk@greenend.org.uk wrote:
> The idea is that users who are permitted to access the CDROM are put
> into group disk.  If all users should be able to access it, then all
> users must be put into the relevant group.

Allmost correct: uses who are permitted to acces the cdrom are put into
the group cdrom, and the appropriate device should be chgrp'ed to cdrom.
Group disk has read&write access to all disk blockdevices, which is
obviously very evil for a user to have.


Wichert.

-- 
==============================================================================
This combination of bytes forms a message written to you by Wichert Akkerman.
E-Mail: wakkerma@cs.leidenuniv.nl
WWW: http://www.wi.leidenuniv.nl/~wichert/

Attachment: pgpeZVvQSkZ3n.pgp
Description: PGP signature


Reply to: