[28316] in Kerberos
Re: Installing MIT-K5 client libraries as non-root
daemon@ATHENA.MIT.EDU (Mike Friedman)
Fri Aug 31 11:30:14 2007
Date: Fri, 31 Aug 2007 08:29:47 -0700 (PDT)
From: Mike Friedman <mikef@ack.berkeley.edu>
To: Ken Raeburn <raeburn@mit.edu>
In-Reply-To: <37171109-9372-470E-BCAB-F1F14EC701D4@mit.edu>
Message-ID: <20070831081745.C26258@malcolm.berkeley.edu>
MIME-Version: 1.0
Cc: Kerberos <kerberos@mit.edu>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
On Fri, 31 Aug 2007 at 01:51 (-0400), Ken Raeburn wrote:
> I think there are only two programs that get installed setuid root, ksu
> and v4rcp. The rest of the tree shouldn't care about file ownerships,
> so if you just edit clients/ksu/Makefile and appl/bsd/ Makefile
> respectively to just avoid installing those programs, it should run
> okay.
Ken,
Thanks, that helps a lot. I just removed '-o root' from the definitions
of INSTALL_SETUID. The result is that ksu and v4rcp got installed setuid
to my own userid. Of course, they won't work, but I'm not planning to use
those programs anyway.
Thanks again.
Mike
_________________________________________________________________________
Mike Friedman Information Services & Technology
mikef@ack.Berkeley.EDU 2484 Shattuck Avenue
1-510-642-1410 University of California at Berkeley
http://socrates.berkeley.edu/~mikef http://ist.berkeley.edu
_________________________________________________________________________
-----BEGIN PGP SIGNATURE-----
Version: PGP 6.5.8
iQA/AwUBRtgz7q0bf1iNr4mCEQIPxQCg02HM6JP1SiJzNoR7+wJ1UXTwAx0An1FK
YJYW4LDygjIFInezRuEyLHrU
=Lnfb
-----END PGP SIGNATURE-----
________________________________________________
Kerberos mailing list Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos