samba 2.2.2, session userids, and hp-ux 11.00
Frank Smith
Frank.Smith at unilever.com
Tue Jan 8 23:17:02 GMT 2002
greetings,
earlier versions of samba ran as the userid of the individual who connected to
the samba share. with samba 2.2.2 and hp-ux 11.00, i noticed that the smbd
sessions retained the root userid, even though they created test files with the
appropriate ownership:
root 641 1 0 Jan 7 ? 0:02 /usr/sbin/inetd
root 7749 641 0 02:08:35 ? 0:00 smbd
root 7747 641 1 02:08:18 ? 0:00 smbd
root 7751 641 0 02:08:49 ? 0:00 smbd
btw- the smbd daemon is launched via inetd.
user daemons running as root processes concern me because if/when someone
cracks their samba daemon, they gain root access to my system.
how do i get the samba daemons to perform a suid to the userid of the
individual connected to the samba shares?
thank you for your time and assistance.
frank smith
frank.smith at unilever.com
More information about the samba
mailing list