* varad gupta <[email protected]>:
> Hi
> 
> A colleague asked me a question to which I had not given much thought before.

That happens from time to time :)
 
> We all know that most postfix daemons/services run as unpriviliged
> users (apart from local and virtual) but the master daemon runs with
> root privileges?

Yes.
 
> Is it not a risk running master as root (the same reason for running
> other processes as unprivileged) ?

It must bind to ports < 1024 AND it must be able to spawn processes as
other, unprivileged users.

-- 
Ralf Hildebrandt
  Geschäftsbereich IT | Abteilung Netzwerk
  Charité - Universitätsmedizin Berlin
  Campus Benjamin Franklin
  Hindenburgdamm 30 | D-12203 Berlin
  Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962
  [email protected] | http://www.charite.de
            

Reply via email to