*BSD News Article 70760


Return to BSD News archive

Path: euryale.cc.adfa.oz.au!newshost.anu.edu.au!harbinger.cc.monash.edu.au!news.rmit.EDU.AU!news.unimelb.EDU.AU!munnari.OZ.AU!news.mel.connect.com.au!news.mira.net.au!vic.news.telstra.net!act.news.telstra.net!psgrain!iafrica.com!pipex-sa.net!plug.news.pipex.net!pipex!tank.news.pipex.net!pipex!news.mathworks.com!news.kei.com!nntp.coast.net!howland.reston.ans.net!Germany.EU.net!Dortmund.Germany.EU.net!interface-business.de!usenet
From: j@ida.interface-business.de (J Wunsch)
Newsgroups: comp.unix.bsd.bsdi.misc
Subject: Re: revoking root privledges from httpd
Date: 12 Jun 1996 08:50:00 GMT
Organization: interface business GmbH, Dresden
Lines: 12
Message-ID: <4pm0bp$91v@innocence.interface-business.de>
References: <31BC1070.E88@atlanticfoods.com>
Reply-To: joerg_wunsch@interface-business.de (Joerg Wunsch)
NNTP-Posting-Host: ida.interface-business.de
X-Newsreader: knews 0.9.6
X-Phone: +49-351-31809-14
X-Fax: +49-351-3361187
X-PGP-Fingerprint: DC 47 E6 E4 FF A6 E9 8F  93 21 E0 7D F9 12 D6 4E

Dave C <dcanatsey@atlanticfoods.com> wrote:

> I've heard that it's a BAD thing to run httpd while SUID.  Granted I 
> need SUID to grab port 80, but how do I then revoke SU status from the 
> daemon?

A correctly written httpd does this for you.

-- 
J"org Wunsch					       Unix support engineer
joerg_wunsch@interface-business.de       http://www.interface-business.de/~j