Re: [Nix-dev] Can non-root users open new ports?

2013-06-01 Thread Cai Chen
Alright, I will give it a shot. Thank you for helping out! Best, Cai On Saturday, June 1, 2013, Vladimír Čunát wrote: > On 06/01/2013 09:07 PM, Cai Chen wrote: > >> Thank you, Vlad. I think leaving non-privileged ports (above 1024) wide >> open has serious security implication

Re: [Nix-dev] Can non-root users open new ports?

2013-06-01 Thread Cai Chen
1024? On Saturday, June 1, 2013, Vladimír Čunát wrote: > On 06/01/2013 06:07 PM, Cai Chen wrote: > >> Am I understanding it right? >> > > True, except perhaps for one thing. AFAIK anyone can open ports above > 1024. (Well, I suppose our firewall prevents this now, but that

[Nix-dev] Cam non-root users open new ports

2013-06-01 Thread Cai Chen
Hi All, I like the approach in Nix(os) that non-privileged users can securely install their own package. But say if they wanted to install their own version of apache httpd with their own set of modules and http.conf, would they be able to open new port say 9090 for new install without root user?

[Nix-dev] Running multiple Apache servers in the same ports

2013-05-19 Thread Cai Chen
Hi All, I am very fascinated by the idea before NixOS: running same package side by side in multi-user environment. Same package can be installed and packaged into each user's own store path so that they can't interfere with each other, however, how can I run it under say port say 80 for Apache se