Project

General

Profile

Actions

Bug #2373

open

unix domain socket owner stays root when priviledges dropped

Added by Richard Sailer almost 7 years ago. Updated almost 6 years ago.

Status:
Feedback
Priority:
Normal
Assignee:
Target version:
Affected Versions:
Effort:
Difficulty:
Label:

Description

related: https://github.com/OISF/suricata/pull/3052

macpas suggest to solve this via extending the permissions on the socket
from rw-r-----
to rw-rw---- .

I think the nicer way to solve the problem is by setting the socket owner to the new user before we drop priviledges


Related issues 1 (1 open0 closed)

Related to Suricata - Bug #2337: give warning if permissions won't allow log reopen after dropping privsAssignedOISF DevActions
Actions #1

Updated by Richard Sailer almost 7 years ago

  • Status changed from New to Feedback
  • Assignee set to Richard Sailer
Actions #2

Updated by Richard Sailer almost 7 years ago

  • Subject changed from unix domain socket owner not updated when priviledges dropped to unix domain socket owner stays root when priviledges dropped
  • Description updated (diff)
Actions #3

Updated by Richard Sailer almost 7 years ago

  • Related to Bug #2337: give warning if permissions won't allow log reopen after dropping privs added
Actions #4

Updated by Andreas Herz almost 7 years ago

  • Target version set to TBD
Actions #5

Updated by Andreas Herz almost 6 years ago

  • Assignee changed from Richard Sailer to OISF Dev
Actions

Also available in: Atom PDF