From nobody Thu Feb 9 08:23:32 2023 X-Original-To: questions@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4PC8yv30gCz3n2Hv for ; Thu, 9 Feb 2023 08:23:51 +0000 (UTC) (envelope-from 4250.82.1d4f900059c9326.b50d1e35823c7a9f94ead377c63d1de9@email-od.com) Received: from s1-b0c6.socketlabs.email-od.com (s1-b0c6.socketlabs.email-od.com [142.0.176.198]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 4PC8yt2prFz4Cr0 for ; Thu, 9 Feb 2023 08:23:50 +0000 (UTC) (envelope-from 4250.82.1d4f900059c9326.b50d1e35823c7a9f94ead377c63d1de9@email-od.com) Authentication-Results: mx1.freebsd.org; none DKIM-Signature: v=1; a=rsa-sha256; d=email-od.com;i=@email-od.com;s=dkim; c=relaxed/relaxed; q=dns/txt; t=1675931030; x=1678523030; h=content-transfer-encoding:content-type:mime-version:references:in-reply-to:message-id:subject:cc:to:from:date:x-thread-info:subject:to:from:cc:reply-to; bh=DvtB34lYCYQbXqo91N98249btWJVuMCM+7g9Z4mC998=; b=R5T3Kcj8OH3kiHhPrTEVKyWBO5SABitfJp+e6YKfTp4iu48bqkdwi7GRnKcZ0wAaVKJ1sKDcYb8VVxQGv7ZEOz9pcCW/mMHjHnELziZAZuC2hMVngMyAiOYwkzDTBeSIbhxt3WZAbnhNGrVxV3bY14MPnPFc6QnC3l1GnXRFzZA= X-Thread-Info: NDI1MC4xMi4xZDRmOTAwMDU5YzkzMjYucXVlc3Rpb25zPWZyZWVic2Qub3Jn Received: from r1.us-west-2.aws.in.socketlabs.com (r1.us-west-2.aws.in.socketlabs.com [142.0.190.1]) by mxsg2.email-od.com with ESMTP(version=Tls12 cipher=Aes256 bits=256); Thu, 9 Feb 2023 03:23:37 -0500 Received: from smtp.lan.sohara.org (EMTPY [185.202.17.215]) by r1.us-west-2.aws.in.socketlabs.com with ESMTP(version=Tls12 cipher=Aes256 bits=256); Thu, 9 Feb 2023 03:23:35 -0500 Received: from [192.168.63.1] (helo=steve.lan.sohara.org) by smtp.lan.sohara.org with smtp (Exim 4.95 (FreeBSD)) (envelope-from ) id 1pQ2DM-000IXG-W1; Thu, 09 Feb 2023 08:23:33 +0000 Date: Thu, 9 Feb 2023 08:23:32 +0000 From: Steve O'Hara-Smith To: grarpamp Cc: questions@freebsd.org Subject: Re: Running Apps As Root Considered Unwise [re: # amule, distributed apps] Message-Id: <20230209082332.11c7ca7f0c28a39005c8ff62@sohara.org> In-Reply-To: References: X-Mailer: Sylpheed 3.7.0 (GTK+ 2.24.33; amd64-portbld-freebsd13.0) X-Clacks-Overhead: "GNU Terry Pratchett" List-Id: User questions List-Archive: https://lists.freebsd.org/archives/freebsd-questions List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org Mime-Version: 1.0 Content-Type: text/plain; charset=US-ASCII Content-Transfer-Encoding: 7bit X-Rspamd-Queue-Id: 4PC8yt2prFz4Cr0 X-Spamd-Bar: ---- X-Spamd-Result: default: False [-4.00 / 15.00]; REPLY(-4.00)[]; ASN(0.00)[asn:7381, ipnet:142.0.176.0/22, country:US] X-Rspamd-Pre-Result: action=no action; module=replies; Message is reply to one we originated X-ThisMailContainsUnwantedMimeParts: N On Wed, 8 Feb 2023 18:44:24 -0500 grarpamp wrote: > Users should probably not be running random applications > that they downloaded from the untrustable internet as root. Certainly not in any environment that's doing anything else or is trusted in any way. If the only thing at risk is a dedicated (virtual perhaps) machine connected only to the public internet then being root doesn't matter - otherwise it matters a lot. -- Steve O'Hara-Smith