Re: Permissions with 3.06 Linux

This WebDNA talk-list message is from

2000


It keeps the original formatting.
numero = 28660
interpreted = N
texte = In most cases, write permissions for nobody are only needed for directories where the carts and .db are.As a general rule, write permissions are needed where WC writes files. So, if you use [writefile] somewhere, you have to make that directory hierarchy writable by nobody. Q to John: How do you support users that have to FTP files in their accounts if everything belongs to nobody:nobody?Clem. At 11:07 3/7/00, jpeacock@univpress.com wrote: >Peter - > >Under all Unix variants, file rights are not inherited in the same >fashion as NT >or Netware. Directory rights override file rights, as you have discovered. >What is especially wild is that you can have a file which a user >cannot read or >write to, yet that user can delete it or rename it if the directory rights >allow. > >The easiest thing to do for now, until WebCat 4.0 comes out with multiuser >security (Ha, Ha!), is to make sure that all files and directories >are owned by >nobody and all are RW user only. Try these commands from the top of your >WebCat directories: > > chown --recursive nobody:nobody * > chmod --recursive u=rw * > >The first line will walk the directory tree and make all files owned >by nobody >and the second will make sure that the _only_ file rights are RW by that user. >This is the most secure mode and should always work. Other less limited >security models may work as well. YMMV > >HTH > >John Peacock > > >____________________Reply Separator____________________ >Subject: Permissions with 3.06 Linux >Author: (WebCatalog Talk) >Date: 3/7/00 4:44 PM > >We just discovererd, that with WebCat 3.06/Linux we have to set write >permissions for each folder which containes a database. Otherwise we cannot >write to this db's. We call them relative like ../db/my.db > >This was not necessary with the beta version. Was it a bug in the beta, or >is it a bug now? > >What happens with such a structure: >folder1 > folder2 > folder3 > one.db > two.db > three.db >and a call like ../folder1/folder2/folder3/one.db > >Can we be sure that a writeable folder3 is enough? >This is very important to know, because 5 customers complained today about >malfunction of the server... > > >TIA, >Peter > > >++++++++++++++++++++++++++++++++++++++++++++++++ >Ostry & Partner - Vienna/Austria - www.ostry.com >Fon ++43-1-877 74 54 Fax ++43-1-877 74 54-21 >++++++++++++++++++++++++++++++++++++++++++++++++------------------------------------------------------------- This message is sent to you because you are subscribed to the mailing list . To unsubscribe, E-mail to: To switch to the DIGEST mode, E-mail to Associated Messages, from the most recent to the oldest:

    
  1. Re: Permissions with 3.06 Linux (Peter Ostry 2000)
  2. Re: Permissions with 3.06 Linux (Clement Ross 2000)
  3. Re: Permissions with 3.06 Linux (jpeacock@univpress.com 2000)
  4. Permissions with 3.06 Linux (Peter Ostry 2000)
In most cases, write permissions for nobody are only needed for directories where the carts and .db are.As a general rule, write permissions are needed where WC writes files. So, if you use [writefile] somewhere, you have to make that directory hierarchy writable by nobody. Q to John: How do you support users that have to FTP files in their accounts if everything belongs to nobody:nobody?Clem. At 11:07 3/7/00, jpeacock@univpress.com wrote: >Peter - > >Under all Unix variants, file rights are not inherited in the same >fashion as NT >or Netware. Directory rights override file rights, as you have discovered. >What is especially wild is that you can have a file which a user >cannot read or >write to, yet that user can delete it or rename it if the directory rights >allow. > >The easiest thing to do for now, until WebCat 4.0 comes out with multiuser >security (Ha, Ha!), is to make sure that all files and directories >are owned by >nobody and all are RW user only. Try these commands from the top of your >WebCat directories: > > chown --recursive nobody:nobody * > chmod --recursive u=rw * > >The first line will walk the directory tree and make all files owned >by nobody >and the second will make sure that the _only_ file rights are RW by that user. >This is the most secure mode and should always work. Other less limited >security models may work as well. YMMV > >HTH > >John Peacock > > >____________________Reply Separator____________________ >Subject: Permissions with 3.06 Linux >Author: (WebCatalog Talk) >Date: 3/7/00 4:44 PM > >We just discovererd, that with WebCat 3.06/Linux we have to set write >permissions for each folder which containes a database. Otherwise we cannot >write to this db's. We call them relative like ../db/my.db > >This was not necessary with the beta version. Was it a bug in the beta, or >is it a bug now? > >What happens with such a structure: >folder1 > folder2 > folder3 > one.db > two.db > three.db >and a call like ../folder1/folder2/folder3/one.db > >Can we be sure that a writeable folder3 is enough? >This is very important to know, because 5 customers complained today about >malfunction of the server... > > >TIA, >Peter > > >++++++++++++++++++++++++++++++++++++++++++++++++ >Ostry & Partner - Vienna/Austria - www.ostry.com >Fon ++43-1-877 74 54 Fax ++43-1-877 74 54-21 >++++++++++++++++++++++++++++++++++++++++++++++++------------------------------------------------------------- This message is sent to you because you are subscribed to the mailing list . To unsubscribe, E-mail to: To switch to the DIGEST mode, E-mail to Clement Ross

DOWNLOAD WEBDNA NOW!

Top Articles:

Talk List

The WebDNA community talk-list is the best place to get some help: several hundred extremely proficient programmers with an excellent knowledge of WebDNA and an excellent spirit will deliver all the tips and tricks you can imagine...

Related Readings:

Web Commerce thoughts and needs.. (1996) The List is Changing (1997) RE: protect tag not working (1998) Mime-Version in email header (1997) Setting up WebCatalog with Retail Pro data (1996) Secure Server (1997) [WebDNA] current thinking on architecture of mass email scripts? (2011) Deleting Orders (1997) ImageMap (1997) Looking for a Manual (1997) [WebDNA] help with [ReturnRaw] - why is it killing the parse of the [include] file? (2009) webDNA and flash UTF8 translation (2003) RE: Missing contexts on NT (1997) psst (1997) [DOS]/DOS query perhaps OT (2003) Displaying raw values (1998) Ampersand (1997) Can this be done? (1997) RE: WebDNA-Talk searchable? (1997) Running 2 two WebCatalog.acgi's (1996)