Package: denyhosts Version: 2.6-5 Severity: normal Hello!
I would like to see denyhosts not running as root. I think this should be relatively easy to implement by simply using the include mechanism that is native to hosts.deny (just list a filename). Using a "denyhosts" user and running the daemon as group adm, it would have access to its own file that was being included in hosts.deny and would still have access to read the /var/log files it needs. Thanks, -Kees -- Kees Cook @outflux.net -- To UNSUBSCRIBE, email to [email protected] with a subject of "unsubscribe". Trouble? Contact [email protected]

