Re: [PATCH 2/7] procfs privacy: tasks/processes lookup
From: Lorenzo Hernández García-Hierro (lorenzo_at_gnu.org)
Date: 04/18/05
- Previous message: Timur Tabi: "Re: [PATCH][RFC][0/4] InfiniBand userspace verbs implementation"
- In reply to: Rik van Riel: "Re: [PATCH 2/7] procfs privacy: tasks/processes lookup"
- Next in thread: Rene Scharfe: "Re: [PATCH 2/7] procfs privacy: tasks/processes lookup"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]
To: Rik van Riel <riel@redhat.com> Date: Mon, 18 Apr 2005 21:59:30 +0200
El lun, 18-04-2005 a las 15:24 -0400, Rik van Riel escribió:
> This looks like a very bad default to me!
>
> Your patch would force people to run system monitoring
> applications as root, because otherwise they cannot get
> some of the information they can get now. Forcing that
> these applications run with root rights is a security
> risk, not a benefit...
Right, that's why I would say "fall back to the config. option"
behavior, trusting in a certain user group defined in configuration-time
or via sysctl, or just keeping it simple as it's right now, split up so
anyone can decide what to apply and what shouldn't be applied.
Cheers,
-- Lorenzo Hernández García-Hierro <lorenzo@gnu.org> [1024D/6F2B2DEC] & [2048g/9AE91A22][http://tuxedo-es.org]
-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.kernel.org
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/
- application/pgp-signature attachment: This is a digitally signed message part
- Previous message: Timur Tabi: "Re: [PATCH][RFC][0/4] InfiniBand userspace verbs implementation"
- In reply to: Rik van Riel: "Re: [PATCH 2/7] procfs privacy: tasks/processes lookup"
- Next in thread: Rene Scharfe: "Re: [PATCH 2/7] procfs privacy: tasks/processes lookup"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]
Relevant Pages
|