Re: Proposal "LUID"

From: Steve Dodd (steved@loth.demon.co.uk)
Date: Fri Apr 14 2000 - 19:27:45 EST


On Fri, Apr 14, 2000 at 04:22:03PM -0700, Linda Walsh wrote:

> > Hmmm, I don't think I've understood this; how does this differ from the
> > real userid?
>
> Real user can be changed by su or by SUID programs.

I was assuming that the ability to change the ruid would be restricted by
a capability if this was implemented. As for su, I didn't realise it changed
the ruid. I think I need to go back to UNIX 101 and remind myself what the
ruid is actually used for ;-)

[..]
> For example, I'm 'law'. Even though I suid to root on a daily basis, an audit
> trail should be attached to 'law' not to 'root' since I am the real user -- I
                                                                 ^^^^
> just happen to use root as a way of attaining CAPability for some particular
> operation (mount, change system state, install software, etc.)

That's the bit that confused me - why does su change the real user id?

-- 
If you've been pounding nails with your forehead for years, it may feel
strange the first time somebody hands you a hammer. But that doesn't
mean that you should strap the hammer to a headband just to give your
skull that old familiar jolt.        -- Wayne Throop, during the ``TCL Wars''

- To unsubscribe from this list: send the line "unsubscribe linux-kernel" in the body of a message to majordomo@vger.rutgers.edu Please read the FAQ at http://www.tux.org/lkml/



This archive was generated by hypermail 2b29 : Sun Apr 23 2000 - 21:00:08 EST