MacMusic  |  PcMusic  |  440 Software  |  440 Forums  |  440TV  |  Zicos
quot
Recherche

"run0" as a sudo replacement

mardi 30 avril 2024, 16:01 , par LWN.net
This
Mastodon stream from Lennart Poettering describes a sudo
replacement — called run0 — that will be part of the upcoming
systemd 256 release. It takes a rather different approach to the execution
of privileged commands, avoiding the use of setuid (which he calls 'SUID')
permissions entirely.

So, in my ideal world, we'd have an OS entirely without SUID. Let's
throw out the concept of SUID on the dump of UNIX' bad ideas. An
execution context for privileged code that is half under the
control of unprivileged code and that needs careful manual clean-up
is just not how security engineering should be done in 2024
anymore.
https://lwn.net/Articles/971745/

Voir aussi

News copyright owned by their original publishers | Copyright © 2004 - 2024 Zicos / 440Network
Date Actuelle
sam. 18 mai - 11:12 CEST