Karl Chen <[EMAIL PROTECTED]> writes:
>     Adam> I'd also like to add filedrawers (filedrawers.org)

> Php code where "the source code is immature" according to the
> website---doesn't exactly instill confidence in security.

That's the beauty of mod_waklog: you don't have to trust the security
of the php code.  You need only trust mod_waklog -- and even that you
only need to trust not to leak principals between two users who are
using it within a one-hour window of each other.  It does not run with
any sort of (AFS) super-user privileges.

> Does its security simply rely on attempting to access files as
> www-data/etc?

No.  It relies on mod_waklog for all security and authentication.  It
does not do anything authentication-related on its own.

> What's AFS-specific about this app?

It understands AFS ACLs and has a UI for changing them.  Beyond that,
not much.

  - a

-- 
PGP/GPG: 5C9F F366 C9CF 2145 E770  B1B8 EFB1 462D A146 C380


_______________________________________________
HCoop-SysAdmin mailing list
[email protected]
http://hcoop.net/cgi-bin/mailman/listinfo/hcoop-sysadmin

Reply via email to