Re: Draft privilege escalation policy for comments

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Sat, 2010-01-30 at 10:52 +0100, Till Maas wrote:
> On Fri, Jan 29, 2010 at 02:27:13PM -0800, Adam Williamson wrote:
> 
> > Please do provide any and all feedback on the proposed policy. if we can
> > get it into a shape which most people on the list would find acceptable,
> > my next step will be to take it back to FESco for them to review.
> > Thanks.
> 
> I don't understand this sentence:
> "with the exceptions that the 'cause to be performed' provision is waived
> in this case"

It means that it's okay for the user to indirectly cause changes to
happen, because that happens all the time. This particular clause
applies only to direct user actions.

> maybe it already covers it, but there are more directories a user can
> write to then just ~, /tmp, /var/tmp or /usr/tmp, e.g. /dev/shm and with
> certain restrictions /var/spool/{cron,mail,cups,at}.

full list of directories it's okay for an unprivileged user to write to
directly would be good...
-- 
Adam Williamson
Fedora QA Community Monkey
IRC: adamw | Fedora Talk: adamwill AT fedoraproject DOT org
http://www.happyassassin.net

-- 
devel mailing list
devel@xxxxxxxxxxxxxxxxxxxxxxx
https://admin.fedoraproject.org/mailman/listinfo/devel

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[Index of Archives]     [Fedora Announce]     [Fedora Kernel]     [Fedora Testing]     [Fedora Formulas]     [Fedora PHP Devel]     [Kernel Development]     [Fedora Legacy]     [Fedora Maintainers]     [Fedora Desktop]     [PAM]     [Red Hat Development]     [Gimp]     [Yosemite News]
  Powered by Linux