On Mon, Feb 21, 2005 at 17:18:35 +0200, Elan Ruusamäe wrote:

> > > So now we have:
> > >
> > > drwxr-x---    2 root    logs                0 Feb 16 20:27 /var/log/httpd
[...]
> > Directory permisions should be irrelevant here.
> apache creates the log files being still root, and it's security risk if the 
> files are owned by apache uid.
> 
> but this concrete ssl_scache shouldn't be in logs/ as stated already before.

...and cache is written with http EUID, so dir perms are relevant.

-- 
GoTaR <priv0.onet.pl->gotar>
http://vfmg.sourceforge.net/

_______________________________________________
pld-devel-en mailing list
[email protected]
http://lists.pld-linux.org/mailman/listinfo/pld-devel-en

Reply via email to