Re: Proposing Fedora Feature for private /tmp and /var/tmp for all systemd services in Fedora 17.

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Once upon a time, Miloslav Trmač <mitr@xxxxxxxx> said:
> On Wed, Nov 9, 2011 at 10:10 AM, Benny Amorsen <benny+usenet@xxxxxxxxxx> wrote:
> > How about making a non-world-writable directory somewhere for this
> > purpose, with service-named directories beneath it?
> >
> > That is yet another thing for sysadms to learn about of course, unless
> > it is placed in /tmp itself which creates some security problems
> > again...
> What security problems do you mean?

Users can create entries in /tmp, which can cause a number of race
conditions.

I like the idea of using /tmp/.systemd (or /tmp/systemd, /tmp/init,
etc.) to separate the systemd-created private tmps.

-- 
Chris Adams <cmadams@xxxxxxxxxx>
Systems and Network Administrator - HiWAAY Internet Services
I don't speak for anybody but myself - that's enough trouble.
-- 
devel mailing list
devel@xxxxxxxxxxxxxxxxxxxxxxx
https://admin.fedoraproject.org/mailman/listinfo/devel



[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[Index of Archives]     [Fedora Announce]     [Fedora Kernel]     [Fedora Testing]     [Fedora Formulas]     [Fedora PHP Devel]     [Kernel Development]     [Fedora Legacy]     [Fedora Maintainers]     [Fedora Desktop]     [PAM]     [Red Hat Development]     [Gimp]     [Yosemite News]
  Powered by Linux