Am 05.04.2011 18:29, schrieb Marco d'Itri:
> On Apr 05, Michael Biebl <biebl@debian.org> wrote:
>> Very bad idea imho, I'm strongly against it.
>> The point of /run is not to create a second /tmp, where everyone can write into.
> Agreed, I really do not want to consider the security implications of a
> world-writeable {,/var}/run.
> Programs which use /run are supposed to use a subdirectory anyway.

Yeah. Daemons which drop privileges would have a properly owned subdirectory in
/run. Such a subdirectory would be setup by a privileged process. Usually that
is done in the sysv init script itself, although I'd like us to provide a more
declarative mechanism for that.


