Pierre Thierry, le Thu 25 Jul 2013 15:53:41 +0200, a écrit :
> On Mon, Jul 22, 2013 at 10:11:32AM +0200, Samuel Thibault wrote:
> > Mmm, but we also want to check that the user can read all components,
> > otherwise we may be revealing directory entries which the user was not
> > supposed to find out.
> 
> That's not the behaviour on Linux and I've always found it desirable:
> I can give someone access to a directory within a tree they cannot
> discover.

Sure.  But that's not what we are talking about.  What we are talking
about is exposing an existing path.  You don't want to do that unless
people have read rights along it.

Samuel

Reply via email to