httpd-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From Martynas Bendorius <marty...@martynas.it>
Subject Re: SuexecUserGroup inside Directory context
Date Fri, 01 Aug 2014 10:36:59 GMT
Just bringing the email up, it’s likely that mod_suexec developers missed the email. Thank
you! :)

—
Best Regards,
Martynas Bendorius




On Jul 18, 2014, at 12:53 AM, Martynas Bendorius <martynas@martynas.it> wrote:

> Hello,
> 
> The following question hasn’t been answered in the dev list, so I’m trying to ask
it again here: http://mail-archives.apache.org/mod_mbox/httpd-dev/201205.mbox/%3CCA+-XxSFMS0YRmZZitL0X-sgVGZBvxfZvrt57hH163DabrZ_N2g@mail.gmail.com%3E
:)
> 
> Would it be secure to use SuexecUserGroup inside Directory context? And is there any
reason why that is still not available? From our point of view, that would provide more security,
however, there might have been other technical/security reasons why it is not available/supported
yet. I’ve found requests for that in 2005’s https://issues.apache.org/bugzilla/show_bug.cgi?id=37564
and a patch written in 2003 https://www.mail-archive.com/dev@httpd.apache.org/msg17561.html.

> 
> Thank you for the answers!
> 
> —
> Best Regards,
> Martynas Bendorius
> 
> 
> 
> 


Mime
View raw message