[fedora-ja-list] [Bug 125331] htt_server needs the privileges to support the multiple users

bugzilla @ redhat.com bugzilla @ redhat.com
2004年 6月 9日 (水) 08:13:56 UTC


Please do not reply directly to this email. All additional
comments should be made in the comments box of this bug report.

https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=125331





------- Additional Comments From tagoh @ redhat.com  2004-06-09 04:13 -------
Erm, Canna LE users it already. and it also uses setreuid(2) and
setregid(2) to change the real user/group and the effective usr/group.
since htt_server doesn't use fork(2), CannaLE may not uses it. it's
easy fix for Canna LE then.
However how about the library model's IM and it has the user specific
dictionaries?-- even if the current design of IIIMF isn't changed, the
server-client model's IM is possible to support the multiple users. it
depends on the implementation, though-- LEs needs to be run with
proper user. otherwise the library model's IM won't read/write the
dictionaries and their configurations securely.
htt_server has the authentication mechanism. but it's to connect to
htt_server, but not to support the multiple users on *LEs*. so
htt_server has to be run with the privileged user. otherwise IIIMF
will needs to be changed the security design and LEIF design. this
problem isn't Canna LE specific IMHO.

That problem should be discussed with the upstream anyway, though



------- You are receiving this mail because: -------
You are on the CC list for the bug, or are watching someone who is.



Fedora-ja-list メーリングリストの案内