> no kernel impact ... i was just suggesting that any accompanying
> documentation should be careful to imply that the one change to allow www
> to open 80 is all that's required to get rid of apache's root privs. i'm
> just worried folks will blindly chown their logs to www.
Ok, now I understand your suggestion. Seems, I have to learn a lot
more about security. Thanks, I will think about this issue.
Regards, Olaf.
-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.kernel.org
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/