On 23/07/2012, at 11:17, ming....@gmail.com wrote: > yeah, rules in devfs always work. and it may introduce more challenge on > operation management, is there any way that we can do it more clean? > > should we set the permission for :operator g+w on disks and partitions? > then we can put a dedicate user for trafficserver into operator group.
I would change the ownership of the disk you want to use to trafficserver. This does mean you have double configuration (ie in devfs and ATS) but I think it's more sensible than giving operator write perms. AFAIK operator has read access so it can run dump. -- Daniel O'Connor software and network engineer for Genesis Software - http://www.gsoft.com.au "The nice thing about standards is that there are so many of them to choose from." -- Andrew Tanenbaum GPG Fingerprint - 5596 B766 97C0 0E94 4347 295E E593 DC20 7B3F CE8C