cvs + xinetd setgid problem

Joshua Pollak pardsbane at offthehill.org
Tue Feb 24 14:55:29 EST 2004


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1


On Feb 24, 2004, at 2:44 PM, Dan Barrett wrote:

> On Tuesday 24 February 2004 14:02, Derek Atkins wrote:
>> Why are you even trying to use 'pserver' for write operations?  That's
>> a security hole waiting to bit you in the rear.
>
> Even when it's bound to the loopback device on an iptable'd box with 
> NO open
> ports, sitting behind a separate firewall which also permits no inbound
> connection attempts?  I'm not overly worried.

In that case, why do you even need it running on a network device at 
all? If your running it entirely from a local machine, why don't you 
just run the local client? CVS can do that, right?

- -- 
Electronic Voting - If you don't get a receipt, your next election is 
on us!
See http://www.verifiedvoting.org/

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.4 (Darwin)

iD8DBQFAO6w6gv2Apyn/boIRAmb0AJ4ird0GBkf79L7krC4zuIeG9uIe5wCglyvH
gDKJtsDI44jxFVmnE1mmGhI=
=Jssk
-----END PGP SIGNATURE-----



More information about the Discuss mailing list