Re: Permissions with 3.06 Linux

This WebDNA talk-list message is from

2000


It keeps the original formatting.
numero = 28660
interpreted = N
texte = In most cases, write permissions for nobody are only needed for directories where the carts and .db are.As a general rule, write permissions are needed where WC writes files. So, if you use [writefile] somewhere, you have to make that directory hierarchy writable by nobody. Q to John: How do you support users that have to FTP files in their accounts if everything belongs to nobody:nobody?Clem. At 11:07 3/7/00, jpeacock@univpress.com wrote: >Peter - > >Under all Unix variants, file rights are not inherited in the same >fashion as NT >or Netware. Directory rights override file rights, as you have discovered. >What is especially wild is that you can have a file which a user >cannot read or >write to, yet that user can delete it or rename it if the directory rights >allow. > >The easiest thing to do for now, until WebCat 4.0 comes out with multiuser >security (Ha, Ha!), is to make sure that all files and directories >are owned by >nobody and all are RW user only. Try these commands from the top of your >WebCat directories: > > chown --recursive nobody:nobody * > chmod --recursive u=rw * > >The first line will walk the directory tree and make all files owned >by nobody >and the second will make sure that the _only_ file rights are RW by that user. >This is the most secure mode and should always work. Other less limited >security models may work as well. YMMV > >HTH > >John Peacock > > >____________________Reply Separator____________________ >Subject: Permissions with 3.06 Linux >Author: (WebCatalog Talk) >Date: 3/7/00 4:44 PM > >We just discovererd, that with WebCat 3.06/Linux we have to set write >permissions for each folder which containes a database. Otherwise we cannot >write to this db's. We call them relative like ../db/my.db > >This was not necessary with the beta version. Was it a bug in the beta, or >is it a bug now? > >What happens with such a structure: >folder1 > folder2 > folder3 > one.db > two.db > three.db >and a call like ../folder1/folder2/folder3/one.db > >Can we be sure that a writeable folder3 is enough? >This is very important to know, because 5 customers complained today about >malfunction of the server... > > >TIA, >Peter > > >++++++++++++++++++++++++++++++++++++++++++++++++ >Ostry & Partner - Vienna/Austria - www.ostry.com >Fon ++43-1-877 74 54 Fax ++43-1-877 74 54-21 >++++++++++++++++++++++++++++++++++++++++++++++++------------------------------------------------------------- This message is sent to you because you are subscribed to the mailing list . To unsubscribe, E-mail to: To switch to the DIGEST mode, E-mail to Associated Messages, from the most recent to the oldest:

    
  1. Re: Permissions with 3.06 Linux (Peter Ostry 2000)
  2. Re: Permissions with 3.06 Linux (Clement Ross 2000)
  3. Re: Permissions with 3.06 Linux (jpeacock@univpress.com 2000)
  4. Permissions with 3.06 Linux (Peter Ostry 2000)
In most cases, write permissions for nobody are only needed for directories where the carts and .db are.As a general rule, write permissions are needed where WC writes files. So, if you use [writefile] somewhere, you have to make that directory hierarchy writable by nobody. Q to John: How do you support users that have to FTP files in their accounts if everything belongs to nobody:nobody?Clem. At 11:07 3/7/00, jpeacock@univpress.com wrote: >Peter - > >Under all Unix variants, file rights are not inherited in the same >fashion as NT >or Netware. Directory rights override file rights, as you have discovered. >What is especially wild is that you can have a file which a user >cannot read or >write to, yet that user can delete it or rename it if the directory rights >allow. > >The easiest thing to do for now, until WebCat 4.0 comes out with multiuser >security (Ha, Ha!), is to make sure that all files and directories >are owned by >nobody and all are RW user only. Try these commands from the top of your >WebCat directories: > > chown --recursive nobody:nobody * > chmod --recursive u=rw * > >The first line will walk the directory tree and make all files owned >by nobody >and the second will make sure that the _only_ file rights are RW by that user. >This is the most secure mode and should always work. Other less limited >security models may work as well. YMMV > >HTH > >John Peacock > > >____________________Reply Separator____________________ >Subject: Permissions with 3.06 Linux >Author: (WebCatalog Talk) >Date: 3/7/00 4:44 PM > >We just discovererd, that with WebCat 3.06/Linux we have to set write >permissions for each folder which containes a database. Otherwise we cannot >write to this db's. We call them relative like ../db/my.db > >This was not necessary with the beta version. Was it a bug in the beta, or >is it a bug now? > >What happens with such a structure: >folder1 > folder2 > folder3 > one.db > two.db > three.db >and a call like ../folder1/folder2/folder3/one.db > >Can we be sure that a writeable folder3 is enough? >This is very important to know, because 5 customers complained today about >malfunction of the server... > > >TIA, >Peter > > >++++++++++++++++++++++++++++++++++++++++++++++++ >Ostry & Partner - Vienna/Austria - www.ostry.com >Fon ++43-1-877 74 54 Fax ++43-1-877 74 54-21 >++++++++++++++++++++++++++++++++++++++++++++++++------------------------------------------------------------- This message is sent to you because you are subscribed to the mailing list . To unsubscribe, E-mail to: To switch to the DIGEST mode, E-mail to Clement Ross

DOWNLOAD WEBDNA NOW!

Top Articles:

Talk List

The WebDNA community talk-list is the best place to get some help: several hundred extremely proficient programmers with an excellent knowledge of WebDNA and an excellent spirit will deliver all the tips and tricks you can imagine...

Related Readings:

Tab Charactor (1997) RE: [setcookie] & [redirect] (1998) WebCat virtual postcard is done! Thanks for the help! (1998) [WebDNA] How to go into old WebCatalog? (2009) problems with WebCat-Plugin () WebDNA maxing out processor (2008) Sku numbers (1997) Hummm .... (2002) passing along TextB (1999) Re:E-Mailer (WebCatb15acgiMac) (1997) Arrays (2000) Banner DNA (1997) Getting total number of items ordered (1997) weight based shipping cost questions (1997) Calendar (1997) looping table rows (1999) Grep issue (2003) taxTotal (1997) [Webcat 2]Next (1997) setting taxable to true (1997)