Re: GNOME and superuser (privilege raising) integration



On Wednesday 14 May 2003 01:20, Sean Middleditch wrote:
> Because the backend must have a separate process running as root to
> operate.  Move the whole thing to a separate binary, remove security
> related code from the application themselves, and solve the whole
> problem in one place - the special binary.  Provide a little one-liner
> function for launching it for apps.

In other words, instead of talking to su/sudo, create a new setuid root binary 
that uses a different way to communicate?


> I _don't_ want Nautilus, the Panel, or anything else to be setuid root
> just so they can authenticate a root password dialog for a time config
> app.  ;-)

They don't have to be setuid root. They just talk to su/sudo.



[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]