[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: apache question



On Thu, May 25, 2000 at 08:07:10PM -0800, Ethan Benson wrote:
[ snip ]
> all keeping the logs owned by the unpriviledged user seems to buy you
> is a security hole.

That's why on new debian installations the log are owned by root.root.
However, if the logs were already owned by www-data.www-data they
won't be changed.

-- 
Nathan Norman         "Eschew Obfuscation"          Network Engineer
GPG Key ID 1024D/51F98BB7            http://home.midco.net/~nnorman/
Key fingerprint = C5F4 A147 416C E0BF AB73  8BEF F0C8 255C 51F9 8BB7

Attachment: pgp2l3k8NQkuZ.pgp
Description: PGP signature


Reply to: