Re[4]: [users@httpd] suexec improvement suggestion

2005-05-20 Thread Alexander Kolesnik
>> Could you please tell what security implications do you mean? And >> what's the difference between original suexec's security and the one I >> suggested? > I can't say that I'm a real expert here either, but one important > issue is that you would need to remove an suexec security check: >

Re[2]: [users@httpd] suexec improvement suggestion

2005-05-20 Thread Alexander Kolesnik
Hello Joshua, Friday, May 20, 2005, 6:16:25 PM, you wrote: > (Even if you do have the knowledge to impliment this, you still may > not have the knowledge to understand the security implications, so you > probably still shouldn't do it.) Could you please tell what security implications do yo

[users@httpd] suexec improvement suggestion

2005-05-20 Thread Alexander Kolesnik
Hello All, Here is a brief of the problem: --- http://issues.apache.org/bugzilla/show_bug.cgi?id=34863 There is a real problem if one needs to set for a certain CGI-script permissions as REMOTE_USER has on the system. This happens, for example, if we need to organize web access to a CVS reposi