rdiff-backup-bugs
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[Rdiff-backup-bugs] [bug #30663] umask of backup user will not be proces


From: anonymous
Subject: [Rdiff-backup-bugs] [bug #30663] umask of backup user will not be processed correctly
Date: Thu, 05 Aug 2010 20:11:55 +0000
User-agent: Mozilla/5.0 (Macintosh; U; Intel Mac OS X 10.5; en-US; rv:1.9.1.11) Gecko/20100701 Firefox/3.5.11

URL:
  <http://savannah.nongnu.org/bugs/?30663>

                 Summary: umask of backup user will not be processed
correctly
                 Project: rdiff-backup
            Submitted by: None
            Submitted on: Do 05 Aug 2010 20:11:55 UTC
                Category: None
                Severity: 3 - Normal
              Item Group: None
                  Status: None
                 Privacy: Public
             Assigned to: None
             Open/Closed: Open
         Discussion Lock: Any

    _______________________________________________________

Details:

Hello,

To make the backup strategy more secure, it is often useful to make one user
for doing the backups, and other users only are in some read only groups which
can restore backups but not change the backed up files.

This can in general easily accomplished by having a umask of the backup
creation user of 0027, so the group has only execute and read rights.

The Problem is, that rdiff backup changes the default linux users umask, and
give most files in the backup NO permissions to the group. So all restoring
users which were in the restoring group which should normaly have read only
permissions have due to this behavior NO permissions.

So this, IMHO, more secure strategy of seperating backup user and restore
user is not supportet in rdiff-backup version 1.2.8

regards,
Christian




    _______________________________________________________

Reply to this item at:

  <http://savannah.nongnu.org/bugs/?30663>

_______________________________________________
  Nachricht geschickt von/durch Savannah
  http://savannah.nongnu.org/




reply via email to

[Prev in Thread] Current Thread [Next in Thread]