Re: Permissions with 3.06 Linux
This WebDNA talk-list message is from 2000
It keeps the original formatting.
numero = 28660
interpreted = N
texte = In most cases, write permissions for nobody are only needed for directories where the carts and .db are.As a general rule, write permissions are needed where WC writes files. So, if you use [writefile] somewhere, you have to make that directory hierarchy writable by nobody.Q to John: How do you support users that have to FTP files in their accounts if everything belongs to nobody:nobody?Clem.At 11:07 3/7/00, jpeacock@univpress.com wrote:>Peter ->>Under all Unix variants, file rights are not inherited in the same >fashion as NT>or Netware. Directory rights override file rights, as you have discovered.>What is especially wild is that you can have a file which a user >cannot read or>write to, yet that user can delete it or rename it if the directory rights>allow.>>The easiest thing to do for now, until WebCat 4.0 comes out with multiuser>security (Ha, Ha!), is to make sure that all files and directories >are owned by>nobody and all are RW user only. Try these commands from the top of your>WebCat directories:>> chown --recursive nobody:nobody *> chmod --recursive u=rw *>>The first line will walk the directory tree and make all files owned >by nobody>and the second will make sure that the _only_ file rights are RW by that user.>This is the most secure mode and should always work. Other less limited>security models may work as well. YMMV>>HTH>>John Peacock>>>____________________Reply Separator____________________>Subject: Permissions with 3.06 Linux>Author:
(WebCatalog Talk)>Date: 3/7/00 4:44 PM>>We just discovererd, that with WebCat 3.06/Linux we have to set write>permissions for each folder which containes a database. Otherwise we cannot>write to this db's. We call them relative like ../db/my.db>>This was not necessary with the beta version. Was it a bug in the beta, or>is it a bug now?>>What happens with such a structure:>folder1> folder2> folder3> one.db> two.db> three.db>and a call like ../folder1/folder2/folder3/one.db>>Can we be sure that a writeable folder3 is enough?>This is very important to know, because 5 customers complained today about>malfunction of the server...>>>TIA,>Peter>>>++++++++++++++++++++++++++++++++++++++++++++++++>Ostry & Partner - Vienna/Austria - www.ostry.com>Fon ++43-1-877 74 54 Fax ++43-1-877 74 54-21>++++++++++++++++++++++++++++++++++++++++++++++++-------------------------------------------------------------This message is sent to you because you are subscribed to the mailing list .To unsubscribe, E-mail to: To switch to the DIGEST mode, E-mail to
Associated Messages, from the most recent to the oldest:
In most cases, write permissions for nobody are only needed for directories where the carts and .db are.As a general rule, write permissions are needed where WC writes files. So, if you use [writefile] somewhere, you have to make that directory hierarchy writable by nobody.Q to John: How do you support users that have to FTP files in their accounts if everything belongs to nobody:nobody?Clem.At 11:07 3/7/00, jpeacock@univpress.com wrote:>Peter ->>Under all Unix variants, file rights are not inherited in the same >fashion as NT>or Netware. Directory rights override file rights, as you have discovered.>What is especially wild is that you can have a file which a user >cannot read or>write to, yet that user can delete it or rename it if the directory rights>allow.>>The easiest thing to do for now, until WebCat 4.0 comes out with multiuser>security (Ha, Ha!), is to make sure that all files and directories >are owned by>nobody and all are RW user only. Try these commands from the top of your>WebCat directories:>> chown --recursive nobody:nobody *> chmod --recursive u=rw *>>The first line will walk the directory tree and make all files owned >by nobody>and the second will make sure that the _only_ file rights are RW by that user.>This is the most secure mode and should always work. Other less limited>security models may work as well. YMMV>>HTH>>John Peacock>>>____________________Reply Separator____________________>Subject: Permissions with 3.06 Linux>Author: (WebCatalog Talk)>Date: 3/7/00 4:44 PM>>We just discovererd, that with WebCat 3.06/Linux we have to set write>permissions for each folder which containes a database. Otherwise we cannot>write to this db's. We call them relative like ../db/my.db>>This was not necessary with the beta version. Was it a bug in the beta, or>is it a bug now?>>What happens with such a structure:>folder1> folder2> folder3> one.db> two.db> three.db>and a call like ../folder1/folder2/folder3/one.db>>Can we be sure that a writeable folder3 is enough?>This is very important to know, because 5 customers complained today about>malfunction of the server...>>>TIA,>Peter>>>++++++++++++++++++++++++++++++++++++++++++++++++>Ostry & Partner - Vienna/Austria - www.ostry.com>Fon ++43-1-877 74 54 Fax ++43-1-877 74 54-21>++++++++++++++++++++++++++++++++++++++++++++++++-------------------------------------------------------------This message is sent to you because you are subscribed to the mailing list .To unsubscribe, E-mail to: To switch to the DIGEST mode, E-mail to
Clement Ross
DOWNLOAD WEBDNA NOW!
Top Articles:
Talk List
The WebDNA community talk-list is the best place to get some help: several hundred extremely proficient programmers with an excellent knowledge of WebDNA and an excellent spirit will deliver all the tips and tricks you can imagine...
Related Readings:
Web Commerce thoughts and needs.. (1996)
The List is Changing (1997)
RE: protect tag not working (1998)
Mime-Version in email header (1997)
Setting up WebCatalog with Retail Pro data (1996)
Secure Server (1997)
[WebDNA] current thinking on architecture of mass email scripts? (2011)
Deleting Orders (1997)
ImageMap (1997)
Looking for a Manual (1997)
[WebDNA] help with [ReturnRaw] - why is it killing the parse of the [include] file? (2009)
webDNA and flash UTF8 translation (2003)
RE: Missing contexts on NT (1997)
psst (1997)
[DOS]/DOS query perhaps OT (2003)
Displaying raw values (1998)
Ampersand (1997)
Can this be done? (1997)
RE: WebDNA-Talk searchable? (1997)
Running 2 two WebCatalog.acgi's (1996)