Re: RFC: Passing on initial client user in systemd-userdbd
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
- Subject: Re: RFC: Passing on initial client user in systemd-userdbd
- From: Dominik George <nik@xxxxxxxxxxxxx>
- Date: Tue, 29 Nov 2022 14:57:25 +0100
- Cc: systemd-devel@xxxxxxxxxxxxxxxxxxxxx
- In-reply-to: <Y4YJu4zZbZ59PK3W@gardel-login>
- References: <20221125141942.uub4xrwacrqsed5b@frifot> <Y4DYAYvhwFA5qvIB@gardel-login> <4D7A349A-4180-4F67-9FF9-226EE7AEA3FE@naturalnet.de> <20221127231453.zgldrjlvludwuvgi@frifot> <Y4S/ojpUyIbAiaMw@gardel-login> <20221128152742.d6jfrd76uwthzgak@frifot> <Y4TZrkZDYCWr5CFN@gardel-login> <20221129011100.zbng657vv2rqm3cf@frifot> <20221129105042.6mdeztmiifgygas5@frifot> <Y4YJu4zZbZ59PK3W@gardel-login>
- User-agent: K-9 Mail for Android
Hi,
> Just add the capability to the service unit file.
Sure, I can do that.
My doubts are not about how to do it, but whether it is a good idea. CAP_SYS_ADMIN is a rather huge pile of capabilities, and certainly there is a reason userdbd runs with a very constrained set now?
-nik
[Index of Archives]
[LARTC]
[Bugtraq]
[Yosemite Forum]
[Photo]