HP3000-L Archives

November 2001, Week 1

HP3000-L@RAVEN.UTC.EDU

Options: Use Monospaced Font
Show Text Part by Default
Show All Mail Headers

Message: [<< First] [< Prev] [Next >] [Last >>]
Topic: [<< First] [< Prev] [Next >] [Last >>]
Author: [<< First] [< Prev] [Next >] [Last >>]

Print Reply
Subject:
From:
Mark Bixby <[log in to unmask]>
Reply To:
Mark Bixby <[log in to unmask]>
Date:
Tue, 6 Nov 2001 09:25:04 -0800
Content-Type:
text/plain
Parts/Attachments:
text/plain (24 lines)
Lars Appel wrote:
> Oh, as far as I recall, but I am not 100% sure, the wrappers
> also have a mode/feature to "pretend" setuid, setgid, etc to
> the calling code without really doing the PM setuid() calls.
>
> I used this to run the Samba server in a "sandbox" i.e. have
> the Samba code "think" it is root and performs all the setuid
> tricks, where the SMBD program actually stayed the same MPE
> user all the time (SAMBA.ORG in my case) and did not need PM.

I did something similar in sendmail 8.12.1 to make it think it is running as an
suid-root program.  You have to create several pretend functions to replace the
POSIX originals in order to pull this off.

I am still in preliminary discussions with sendmail.org and have not yet
submitted my MPE diffs back.  Anybody interested in my current working diffs
can ask for them and I'll send you a copy.
--
[log in to unmask]
Remainder of .sig suppressed to conserve scarce California electrons...

* To join/leave the list, search archives, change list settings, *
* etc., please visit http://raven.utc.edu/archives/hp3000-l.html *

ATOM RSS1 RSS2