tomcat-users mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Peter T. Abplanalp" <...@psaconsultants.com>
Subject Re: Unix file socket / mod_jk2
Date Fri, 13 Sep 2002 17:35:16 GMT
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

* On Fri, Sep 13, 2002 at 01:29:08PM -0400, Maxime Colas des Francs wrote:
> Hi
> 
> I'm on Linux (RH 7.3) with jsdk 1.4
> 
> I attempt to use Tomcat 4, Apache 2 and mod_jk2 with a
> unix socket file for communication.
> 
> Tomcat is launched as root, and creates the socket file : 
> srw-rw----    1 root     root            0 sep 13 13:17 jk2.socket
> 
> Apache 2 is launched as nobody and can't read/write in this file 
> (works with after a chmod 777 on jk2.socket)
> 
> what is the best (secure) solution ?

1) add a tomcat group to your system.
2) add nobody to the tomcat group.
3) chgrp tomcat jk2.socket.
4) chmod g+w jk2.socket.
5) restart everything.

- -- 
Peter Abplanalp
PGP:     pgp.mit.edu
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.7 (GNU/Linux)

iD8DBQE9giHUggA8sH0iRXQRAhZmAKCuXYvqyUs6Z48hBHIuDtdd39dWPgCgt2uC
6BjV4PC6iw/x/ChnJwNRG6A=
=PRY9
-----END PGP SIGNATURE-----

--
To unsubscribe, e-mail:   <mailto:tomcat-user-unsubscribe@jakarta.apache.org>
For additional commands, e-mail: <mailto:tomcat-user-help@jakarta.apache.org>


Mime
View raw message