* Kilian Krause:

> yes, that's due to the fact that some other users complained about the
> -U and -G not working effectively enough for their needs. The dilemma is
> that either we let asterisk drop privileges *AFTER* setting realtime
> prio (launching as root and being limited to one group), or we switch to
> that asterisk user *BEFORE* launching asterisk (and getting all the
> groups, but asterisk user cannot set realtime-prio).
>
> Any solution that does address both issues is welcome.

In the process of dropping privileges, you should call initgroups to
set the supplemental groups list.


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to