[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Potato "testing"



>>>>> "Ethan" == Ethan Benson <erbenson@alaska.net> writes:

    Ethan> personally, when i used it I was not pleased with the
    Ethan> defaults, which are to leak your X cookie to any user you
    Ethan> su to.  it does have a mechanism for the user to prevent
    Ethan> there key from being exported to any user they do not
    Ethan> specify, but i think that should be default.  ie it should
    Ethan> never leak the cookie unless the user explicitly adds the
    Ethan> target user to the allow file. or perhaps only leaks it to
    Ethan> root by default, but not other users.

I'm pretty sure that the default is only to copy the key if you're
suing TO root, otherwise it needs a special ~/.xauth/whatever
file to allow this.

Ben

-- 
Brought to you by the letters F and M and the number 19.
"More testicles means more iron."
Debian GNU/Linux maintainer of Gimp and GTK+ -- http://www.debian.org/


Reply to: