set user id for service ?

frederic heem frederic.heem at telsey.it
Thu Sep 14 00:17:37 PDT 2006


Alle 20:04, mercoledì 13 settembre 2006, Thiago Macieira ha scritto:
> frederic heem wrote:
> >Is it possible to set the user id of a service started by the
> > dbus-deamon ?
>
> Yes, of course. Make your program be setuid to that user and that's all.
Unfortunately, making the program setuid is considered insecure.
Another solution is to use sudo to restrict who can start the service, i.e the 
messagebus, but the sniffer still have to root permission, that's too much 
permission. 
The ultimate solution is to use selinux, it allows to run the sniffer with the  
messagebus uid and allow to open and read a raw socket.
 


______________________________________________________________________________

--- NOTICE ---

CONFIDENTIALITY - This  email  and  any  attachments  are confidential and are
intended  for  the  addressee  only.   If  you  have  received this message by
mistake,  please  contact us immediately and then delete the message from your
system.  You  must  not copy, distribute, disclose or act upon the contents of
this email. Thank you.

PERSONAL DATA PROTECTION  (Law  by  Decree  30. 06.2003 n. 196) - Personal and
corporate  data  submitted  will  be used in a correct, transparent and lawful
manner. The data collected will be processed in paper or computerized form for
the performance of contractual  and  lawful  obligations  as  well  as for the
effective management of business relationship. Data may be disclosed, in Italy
or abroad, for the purpose above mentioned to third  parties  which  cooperate
with Telsey, agents, banks, factoring companies,  credit recovering companies,
credit  insurance  companies,  professional  and  consultants,  and   shipping
companies. In relation to the same purposes, data  may  be  processed  by  the
following  classes  of  executors  or  processors:  management; administration
department; logistics  and  purchase  department; sales department; post sales
department quality department; R&D department; IT department; legal department.
The  data  processor  is  Telsey S.p.A.  The data subject may exercise all the
rights set forth in art. 7 of Law by Decree 30. 06.2003 n. 196 as reported  in
in the following link http://www.telsey.it/privacy.jsp. 

______________________________________________________________________________


More information about the dbus mailing list