From: Jim McNamara <nefariousscheme@gmail.com>
To: Cygwin <cygwin@cygwin.com>
Subject: Fwd: Switching to posix with no acl
Date: Sat, 14 Nov 2020 14:07:14 -0500 [thread overview]
Message-ID: <CAEMWCRt3abuM3qPq+qxf0xCo+ztARNXkmU9rbdN6Bf_y5NOxEg@mail.gmail.com> (raw)
In-Reply-To: <CAEMWCRv8QTjp3Wrw5oobW-JT4gi71U5kdAx0xf=sMWuyKug5=Q@mail.gmail.com>
---------- Forwarded message ---------
From: Jim McNamara <nefariousscheme@gmail.com>
Date: Sat, Nov 14, 2020, 1:37 PM
Subject: Fwd: Switching to posix with no acl
To: Cygwin <cygwin@cygwin.com>
---------- Forwarded message ---------
From: Jim McNamara <nefariousscheme@gmail.com>
Date: Sat, Nov 14, 2020, 12:57 AM
Subject: Switching to posix with no acl
To: Cygwin <cygwin@cygwin.com>
Hi all
Since there are no adduser or addgroup, I guess I'd create those files
manually off /etc.
Then I'd run passwd.
After that put in /etc/fstab
none /cygdrive cygdrive binary, posix=0, noacl, user 0 0
Close all processes.
That would give me a posix permission set up, right?
I read something about windows ignoring some dos bit with a file permission
but that is outside of cygwin...right?
Lastly, with acl you open an administrator cmd shell. With posix can I
escalate to root and stay away from admin cmd shell?
Is anyone else using posfix setup in general or mostly acl?
Thanks for any help!
Roboloki
Sat. Nov. 14 1:35 pm
Hi all-
I found in the manual about the execute bit permission being ignored in
filesystems with acl. That answered one question above. I can just take
advantage of how exe heuristics work.
If I find myself in a position where it needs administrator rights via a
shell, will it interfere with my posix permissions, users, or groups once
the /etc/groups and /etc/password and fstab are already setup?
Did the fstab entry above look okay for posix permission?
Thanks for any assistance !
Roboloki
Sat. Nov. 14, 1:45 PM
HI all -
I had a privilege escalation window come up for instance when running a
system supplied configure script for sshd ( I think ). It gave the choices
yes or no prompting to choose carefully for noacl permission mode or acl
translation setup. I think that prompt is very good. Will it (administrator
mode) always at least ask or identify which type of setup if required?
Thanks as always,
Robo-loki
next prev parent reply other threads:[~2020-11-14 19:07 UTC|newest]
Thread overview: 5+ messages / expand[flat|nested] mbox.gz Atom feed top
2020-11-14 5:57 Jim McNamara
2020-11-14 18:37 ` Fwd: " Jim McNamara
2020-11-14 19:07 ` Jim McNamara [this message]
2020-11-15 0:18 ` René Berber
[not found] ` <CAEMWCRsjXGomTpavtqPp9frmPUmaNUr28v8eBngNtJk3P3j68w@mail.gmail.com>
2020-11-15 2:08 ` Fwd: " Jim McNamara
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=CAEMWCRt3abuM3qPq+qxf0xCo+ztARNXkmU9rbdN6Bf_y5NOxEg@mail.gmail.com \
--to=nefariousscheme@gmail.com \
--cc=cygwin@cygwin.com \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for read-only IMAP folder(s) and NNTP newsgroup(s).