This is a discussion on Re: [courier-users] running authdaemond without root rights within the Courier-Imap forums, part of the Mail Servers and Related category; J=C3=BCrgen Herz wrote: > = > But now, authdaemond runs as root. Wouldn't it be sufficient if it &...
|
|||||||
| FAQ | Members List | Calendar | Search | Today's Posts | Mark Forums Read |
|
|||
|
J=C3=BCrgen Herz wrote:
> = > But now, authdaemond runs as root. Wouldn't it be sufficient if it > starts as root but drops all rights after establishing, creating socket= > a.s.o. and run as e.g. user/group given via --with-mailuser and > --with-mailgroup? That depends on the modules used. For authpam, no. It wouldn't be = possible. If you're really worried about it, consider contributing an SELinux = policy to mitigate potential damage. Personally, I think that'd be = rather cool. ------------------------------------------------------- This SF.Net email is sponsored by xPML, a groundbreaking scripting language that extends applications into web and mobile media. Attend the live webcast and join the prime developer group breaking into this new coding territory! http://sel.as-us.falkag.net/sel?cmd=...720&dat=121642 _______________________________________________ courier-users mailing list courier-users@lists.sourceforge.net Unsubscribe: https://lists.sourceforge.net/lists/.../courier-users |