Mailinglist Archive: opensuse (1165 mails)

< Previous Next >
Re: [opensuse] Re: Should openSUSE review it's Security Policies?
  • From: Roger Oberholtzer <roger@xxxxxx>
  • Date: Thu, 01 Mar 2012 16:18:26 +0100
  • Message-id: <1330615107.23308.86.camel@acme.pacific>
On Thu, 2012-03-01 at 15:34 +0100, Carlos E. R. wrote:
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On 2012-03-01 09:24, lynn wrote:

Wireshark uses promiscuous mode and should be root only.

But on ubuntu, I can run it as a user. Can I do that on 12.1?

You can probably suid the binary.

Yikes. To get perhaps one root capability, you give the application the
world. Quite generous. As they say, with great power comes great
responsibility. I just don't trust the general non-buggy-ness of things.
Fine grained permissions seem a bit more secure.


Yours sincerely,

Roger Oberholtzer

OPQ Systems / Ramböll RST

Office: Int +46 10-615 60 20
Mobile: Int +46 70-815 1696
roger.oberholtzer@xxxxxxxxxx
________________________________________

Ramböll Sverige AB
Krukmakargatan 21
P.O. Box 17009
SE-104 62 Stockholm, Sweden
www.rambollrst.se


--
To unsubscribe, e-mail: opensuse+unsubscribe@xxxxxxxxxxxx
To contact the owner, e-mail: opensuse+owner@xxxxxxxxxxxx

< Previous Next >
This Thread
Follow Ups