samba 2.2.2, session userids, and hp-ux 11.00

Frank Smith Frank.Smith at unilever.com
Tue Jan 8 23:17:02 GMT 2002


greetings,

earlier versions of samba ran as the userid of the individual who connected to
the samba share.  with samba 2.2.2 and hp-ux 11.00, i noticed that the smbd
sessions retained the root userid, even though they created test files with the
appropriate ownership:
    root   641     1  0  Jan  7  ?         0:02 /usr/sbin/inetd
    root  7749   641  0 02:08:35 ?         0:00 smbd
    root  7747   641  1 02:08:18 ?         0:00 smbd
    root  7751   641  0 02:08:49 ?         0:00 smbd
btw- the smbd daemon is launched via inetd.

user daemons running as root processes concern me because if/when someone
cracks their samba daemon, they gain root access to my system.

how do i get the samba daemons to perform a suid to the userid of the
individual connected to the samba shares?

thank you for your time and assistance.

frank smith
frank.smith at unilever.com





More information about the samba mailing list