*BSD News Article 83466


Return to BSD News archive

Path: euryale.cc.adfa.oz.au!newshost.carno.net.au!harbinger.cc.monash.edu.au!nntp.coast.net!howland.erols.net!newspump.sol.net!ddsw1!news.mcs.net!hammer.uoregon.edu!news.uoregon.edu!Symiserver2.symantec.com!news
From: tedm@agora.rdrop.com
Newsgroups: comp.unix.bsd.freebsd.misc
Subject: Re: Letting httpd run port 80 (quick newbie question)
Date: 22 Nov 1996 08:15:44 GMT
Organization: Symantec Corp.
Lines: 11
Message-ID: <573nfg$pqp@Symiserver2.symantec.com>
References: <570bf4$spf@vixen.cso.uiuc.edu>
Reply-To: tedm@agora.rdrop.com
NNTP-Posting-Host: shiva1.central.com
X-Newsreader: IBM NewsReader/2 v1.2.5

In <570bf4$spf@vixen.cso.uiuc.edu>, dannyman@arh0135.urh.uiuc.edu (Dannyman) writes:
>	Okay, Apache here ...
>
>	I've tried running httpd suid username httpd, but then it's not
>allowed to bind port 80. How can I allow this to occur, are there any other
>suggestions? The child processes sitting around run under httpd, I think I

Allowing any user other than root to start processes that listen to one of
the reserved ports (ports under 1024) is a security hole plugged in modern
Unixes.