On Tue, 30 Sep 2003, Pavel Gulchouck wrote:
> I understand reasons to drop root privilegies when -C specified
> (but ALT_CONFIG_PREFIX and ALT_CONFIG_ROOT_ONLY makes this safe)
> but what's reasons of drop privilegies when macros defined? It's
> a branch of default config, and if I wrote it, I think that its
> using is safe, isn't it?
Depends on what you wrote and how you want it to be used. I did not
think it safe to allow ordinary users to make *any* changes to the Exim
configuration. That's why -D and -C are treated the same.
> IMHO options like MACROS_DROP_PRIVS and ALT_CONFIG_DROP_PRIVS
> (on by default) in the Local/Makefile would be helpful.
Noted. (The CONFIG_PREFIX stuff is very new.)
--
Philip Hazel University of Cambridge Computing Service,
ph10@??? Cambridge, England. Phone: +44 1223 334714.
Get the Exim 4 book: http://www.uit.co.uk/exim-book