Wednesday, May 26, 2010

Re: [LINUX_Newbies] Fedora 13 problems

 

On Wed, May 26, 2010 at 20:38, Scott <scottro@nyc.rr.com> wrote:
> (As for the link on that page, to the page on paths, that has become
> irrelevant.  Fedora now includes all the /sbin paths in a normal user's
> profile.)

By the way, thanks for pointing that out Scott... every time my friend
at Red Hat gives me grief for working for Canonical, I throw things
like this back in his face ;-)

However, that being said, /sbin and /usr/sbin are part of the first
user created in Ubuntu. I believe that in Ubuntu, and I'm going to
guess that in Fedora it's the same thing, the assumption is that the
first non-root user is an admin and thus members of adm in Ubuntu, or
it's equivalent in Fedora (is that wheel?, I don't recall).

For users created after that, though, their path still includes /sbin
and /usr/sbin, but does not include group membership, so even though
they can execute the apps in those places, they can't actually do
anything beyond getting usage...

in Ubuntu, my primary user (part of the adm group) can run them, but
still needs sudo to do anything systemic.

And in reality, I want to say that this behaviour, at least as
pertains to $PATH, has been around for a while now.

BUT, that being said, personally, I'd just prefer to not have normal
users $PATH contain those directories at all.

Personally, non-admin users shouldn't even be able to read directories
outside of /home/$USERNAME beyond maybe /var/cache, /var/spool, and
/tmp (unless there's a app specific need I'm not thinking of).

Cheers
Jeff

__._,_.___
Recent Activity:
To unsubscribe from this list, please email LINUX_Newbies-unsubscribe@yahoogroups.com & you will be removed.
MARKETPLACE

Stay on top of your group activity without leaving the page you're on - Get the Yahoo! Toolbar now.


Get great advice about dogs and cats. Visit the Dog & Cat Answers Center.


Hobbies & Activities Zone: Find others who share your passions! Explore new interests.

.

__,_._,___

No comments:

Post a Comment