Re: Proposal: restrict link(2)

Adam D. Bradley (
Mon, 16 Dec 1996 21:28:07 -0500 (EST)

> I don't see any good reasons why ordinary users should be allowed
> to set set[ug]id bits. Perhaps that should be disallowed (at least
> as an option)? Would it break any standards?

I use SUID for some CGI..allows a program, executed by "nobody", to
create and write logfiles in my directories that are mine with mode "600".
Making them "666" (and the dir 777) so "nobody" can write is unacceptable,
and as a "joe-average user", I can't do any fancy httpd-group magic.

