mirror of https://lore.kernel.org/lkml/
 help / color / mirror / Atom feed
* FS possible security exposure ?
@ 2005-12-25  9:29 regatta
  2005-12-25  9:40 ` Arjan van de Ven
  2005-12-25  9:45 ` Trond Myklebust
  0 siblings, 2 replies; 7+ messages in thread
From: regatta @ 2005-12-25  9:29 UTC (permalink / raw)
  To: linux-kernel

Hi everyone,

I have a question regarding how Linux handle the files permission ,
here is what I found

When logged on to a Linux workstation a user can edit a file (even if
the file on an NFS-mounted NAS directory) if he has write access at
the directory level, even if the file is owned by root (or any other
user) and is read-only.

I tried this in local file system (ext3) and in remote home directory
(autofs) in (NetApp nfs NAS storage)

this is not the case with Solaris , the user will get permission
denied if he try to write any thing to the file.


My question is, what is happening ? and is it correct ? is it possible
to change it to behave to be like Solaris ?

(when you have hundred of users and hundred of NFS and thousand of 
net groups you don't want a user to edit other file just because he
has write permission in the patent dir).

Thanks

Best Regards,
--------------------
-*- If Linux doesn't have the solution, you have the wrong problem -*-

^ permalink raw reply	[flat|nested] 7+ messages in thread

end of thread, other threads:[~2005-12-25 11:42 UTC | newest]

Thread overview: 7+ messages (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2005-12-25  9:29 FS possible security exposure ? regatta
2005-12-25  9:40 ` Arjan van de Ven
2005-12-25 10:10   ` regatta
2005-12-25 10:12     ` Wichert Akkerman
2005-12-25 10:17     ` Arjan van de Ven
2005-12-25 11:42       ` regatta
2005-12-25  9:45 ` Trond Myklebust

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox

all inboxes | Powered by JetHome®