question on <auth> and .dbus_keyrings

Thiago Macieira thiago.macieira at trolltech.com
Tue Jun 27 01:12:07 PDT 2006


Waldo Bastian wrote:
>I think it
>also make sense to keep the current code as is and update the comment,
> since it doesn't seem to have bitten anyone so far that root can't
> connect to the session bus.

Technically, it has bitten me when porting kdesu. I had simply to remove 
the feature that allowed a differently-privileged program to connect to 
the calling user's session bus (DCOP server, in the case).

However, changing the code to match the comment won't help in all cases, 
since kdesu can be used to run programs with a non-root privilege as 
well.

What would be interesting to me would be to be able to tell the session 
bus server to accept connections given a certain cookie that I would set 
in the DBUS_SESSION_BUS_ADDRESS variable. kdesu would be responsible for 
retiring the cookie when no longer needed, or for pinging the server to 
make sure it doesn't expire.

-- 
Thiago José Macieira - thiago.macieira AT trolltech.com
Trolltech ASA - Sandakerveien 116, NO-0402 Oslo, Norway
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 191 bytes
Desc: not available
Url : http://lists.freedesktop.org/archives/dbus/attachments/20060627/9f89ab3b/attachment.pgp


More information about the dbus mailing list