public inbox for cygwin@cygwin.com
 help / color / mirror / Atom feed
From: Jim McNamara <nefariousscheme@gmail.com>
To: Cygwin <cygwin@cygwin.com>
Subject: Fwd: Switching to posix with no acl
Date: Sat, 14 Nov 2020 14:07:14 -0500	[thread overview]
Message-ID: <CAEMWCRt3abuM3qPq+qxf0xCo+ztARNXkmU9rbdN6Bf_y5NOxEg@mail.gmail.com> (raw)
In-Reply-To: <CAEMWCRv8QTjp3Wrw5oobW-JT4gi71U5kdAx0xf=sMWuyKug5=Q@mail.gmail.com>

---------- Forwarded message ---------
From: Jim McNamara <nefariousscheme@gmail.com>
Date: Sat, Nov 14, 2020, 1:37 PM
Subject: Fwd: Switching to posix with no acl
To: Cygwin <cygwin@cygwin.com>




---------- Forwarded message ---------
From: Jim McNamara <nefariousscheme@gmail.com>
Date: Sat, Nov 14, 2020, 12:57 AM
Subject: Switching to posix with no acl
To: Cygwin <cygwin@cygwin.com>


Hi all

Since there are no adduser or addgroup, I guess I'd create those files
manually off /etc.

Then I'd run passwd.

After that put in /etc/fstab

none /cygdrive cygdrive binary, posix=0, noacl, user 0 0

Close all processes.

That would give me a posix permission set up, right?

I read something about windows ignoring some dos bit with a file permission
but that is outside of cygwin...right?

Lastly, with acl you open an administrator cmd shell. With posix can I
escalate to root and stay away from admin cmd shell?

Is anyone else using posfix setup in general or mostly acl?

Thanks for any help!
Roboloki

Sat. Nov. 14 1:35 pm

Hi all-

I found in the manual about the execute bit permission being ignored in
filesystems with acl. That answered one question above. I can just take
advantage of how exe heuristics work.

If I find myself in a position where it needs administrator rights via a
shell, will it interfere with my posix permissions, users, or groups once
the /etc/groups and /etc/password and fstab are already setup?

Did the fstab entry above look okay for posix permission?

Thanks for any assistance !
Roboloki

Sat. Nov. 14, 1:45 PM

HI all -

I had a privilege escalation window come up for instance when running a
system supplied configure script for sshd ( I think ). It gave the choices
yes or no prompting to choose carefully for noacl permission mode or acl
translation setup. I think that prompt is very good. Will it (administrator
mode) always at least ask or identify which type of setup if required?

Thanks as always,
Robo-loki

  reply	other threads:[~2020-11-14 19:07 UTC|newest]

Thread overview: 5+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2020-11-14  5:57 Jim McNamara
2020-11-14 18:37 ` Fwd: " Jim McNamara
2020-11-14 19:07   ` Jim McNamara [this message]
2020-11-15  0:18   ` René Berber
     [not found]     ` <CAEMWCRsjXGomTpavtqPp9frmPUmaNUr28v8eBngNtJk3P3j68w@mail.gmail.com>
2020-11-15  2:08       ` Fwd: " Jim McNamara

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=CAEMWCRt3abuM3qPq+qxf0xCo+ztARNXkmU9rbdN6Bf_y5NOxEg@mail.gmail.com \
    --to=nefariousscheme@gmail.com \
    --cc=cygwin@cygwin.com \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for read-only IMAP folder(s) and NNTP newsgroup(s).