>>>>> On Fri, 20 Feb 2015, Daniel Campbell wrote: > When this becomes more widespread, what action are users urged to > take in order to "migrate" to the new system? Should our everyday > user account be removed from the `games` group, and the group should > be removed altogether?
Currently, users need not take any action. In the hypothetical case that games.eclass would be abandoned, the "games" group would likely go away and should then be removed from users' systems. However, with about 1000 ebuilds currently inheriting games.eclass, I don't see that happening any time soon. There's a long discussion on this topic in the nethack bug [1]. Personally, I think that controlling who is allowed to run certain types of applications via group membership is a great idea. We should introduce that approach for other applications too. How about an "editors" group? Text editors are potentially dangerous because they allow users to modify files. Therefore, the system administrator should add only trusted users to the "editors" group so they can run programs like emacs, nano, or vim from the app-editors category. Ulrich [1] https://bugs.gentoo.org/125902
pgpsR_EXD9KPv.pgp
Description: PGP signature