[xorg-bugzilla-noise] [Bug 1206] X server should not run as root
continuously.
bugzilla-daemon at freedesktop.org
bugzilla-daemon at freedesktop.org
Fri Aug 27 12:34:14 PDT 2004
Please do not reply to this email: if you want to comment on the bug, go to
the URL shown below and enter yourcomments there.
https://freedesktop.org/bugzilla/show_bug.cgi?id=1206
------- Additional Comments From matthieu.herrb at laas.fr 2004-08-27 12:34 -------
I've implemented privilege separation in the X server for OpenBSD. I still
plan to integrate this in the main stream one day or the other (at least in
the current form, enabled for OpenBSD only).
It needs a bit of work to be ported on Linux, but I think it's doable.
Another option I've investigated in the past is running the X server under
systrace (http://www.citi.umich.edu/u/provos/systrace/), using its privilege
elevation mode. This helps identifying the operations that require privileges.
<ftp://ftp.laas.fr/pub/ii/matthieu/xf86-sec.pdf>
--
Configure bugmail: https://freedesktop.org/bugzilla/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug, or are watching the assignee.
More information about the xorg-bugzilla-noise
mailing list