Re: [hackers] [slock] [PATCH] Properly drop privileges

From: Quentin Rameau <quinq_AT_fifth.space>
Date: Wed, 7 Sep 2016 17:48:51 +0200

Hi,

patch tested here and seconded!

Just a question though, do we need to set a group to drop privileges
to? Wouldn't getting the gid out of the user name sufficient?

Actually two questions, why the nogroup group instead of the nobody
group? I know that nogroup is present on OpenBSD, but the LSB suggest
the use of nobody:nobody[1] and doesn't evoke nogroup.
I don't really mind, just raising question. :)

[1]
http://refspecs.linuxfoundation.org/LSB_5.0.0/LSB-Core-generic/LSB-Core-generic/usernames.html
Received on Wed Sep 07 2016 - 17:48:51 CEST

This archive was generated by hypermail 2.3.0 : Wed Sep 07 2016 - 18:00:21 CEST