[Samba] 3 simple questions

Gerald (Jerry) Carter jerry at samba.org
Mon Feb 20 16:06:04 GMT 2006


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

MJBarber at Hearst.com wrote:
> For the user profile....
> 
> If he were to use a different path say /etc/samba/%U ... 
> Then the user would no longer have root access to the
> machine right?
> 
> Does the config below allow root access because it is 
> an include and could possibly execute code, this along with
> the fact the user can look at and (maybe) even edit
> the include file?

if the user can write to the included file, the user can
get root access.  Viewing the file is no problem as smb.conf
is generally world readable anyways.

Jeremy is working on a per user share configuration that
would allow a user to manipulate shares in their own home
directory.  That feature is slated for 3.0.22.




cheers, jerry




-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2 (MingW32)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFD+ejsIR7qMdg1EfYRAhWUAKDzqX1w2fB3Fm2aVd25HLYtiBSliQCgzY+n
yKwifMjU9H9jQ/m+aPBSrE8=
=DK0W
-----END PGP SIGNATURE-----


More information about the samba mailing list