Re: [s6-svperms] Handling service permissions at creation time.

2021-02-15 Thread Laurent Bercot
Services can fix their own permissions so if s6-rc is going to grow that functionality it should be in the generated run, not in some rarely used outboard helper service. As answered on IRC, for ML completeness: no, because permissions should be fixed when the supervisor starts, not when the

Re: [s6-svperms] Handling service permissions at creation time.

2021-02-15 Thread Colin Booth
On Mon, Feb 15, 2021 at 11:58:59AM +, Laurent Bercot wrote: > > So, If we have a e.g /data/perms/rules/uid//allow file and if > > s6-supervise check this directory at the creation time and create the > > necessary file/directory with the respective uid/gid found at that > > directory, we

Re: [s6-svperms] Handling service permissions at creation time.

2021-02-15 Thread Laurent Bercot
The s6-svperms is a great feature but it only handle permissions control of a service at runtime. That means that we need to change the permissions of the service everytime that a reboot occurs. For a server, this is not really a big deal but for a desktop machine this can be really hard to

[s6-svperms] Handling service permissions at creation time.

2021-02-14 Thread eric vidal
Hi there, The s6-svperms is a great feature but it only handle permissions control of a service at runtime. That means that we need to change the permissions of the service everytime that a reboot occurs. For a server, this is not really a big deal but for a desktop machine this can be really