From owner-freebsd-questions@FreeBSD.ORG Wed Nov 26 05:10:03 2003 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id F258A16A4CE for ; Wed, 26 Nov 2003 05:10:02 -0800 (PST) Received: from mail.caraldi.com (caraldi.com [62.212.102.95]) by mx1.FreeBSD.org (Postfix) with ESMTP id C989B43FD7 for ; Wed, 26 Nov 2003 05:10:01 -0800 (PST) (envelope-from jbq@caraldi.com) Received: from watt.intra.caraldi.com (watt.intra.caraldi.com [192.168.100.101]) by mail.caraldi.com (Postfix) with ESMTP id E158D20EC for ; Wed, 26 Nov 2003 14:10:00 +0100 (CET) Received: by watt.intra.caraldi.com (Postfix, from userid 1001) id 97DEAC6; Wed, 26 Nov 2003 14:10:00 +0100 (CET) Date: Wed, 26 Nov 2003 14:10:00 +0100 From: Jean-Baptiste Quenot To: FreeBSD-questions Message-ID: <20031126130958.GD2634@watt.intra.caraldi.com> Mail-Followup-To: FreeBSD-questions References: <000701c3b41d$5684f070$0901a8c0@bloodlust> Mime-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="DIOMP1UsTsWJauNi" Content-Disposition: inline In-Reply-To: <000701c3b41d$5684f070$0901a8c0@bloodlust> User-Agent: Mutt/1.5.5.1i Subject: Re: Running processes as no root... X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 26 Nov 2003 13:10:03 -0000 --DIOMP1UsTsWJauNi Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable * Xpression: > Hi list, I've recently installed some services (WWW, Proxy, FTP) on a > FreeBSD-4.8 server, I read all documentation about running processes > as no root, ok I agree about it, but every process still running with > some user and group but each one have one process running like root, > this is ok, or I dismiss something ??? Thanks... Usually there is one process owned by root, that is used for critical operation, but the others are forked from it and have their owner switched, to user 'www' as of Apache. To be able to write the log files, to switch user, and a few more operations, this is indeed achieved as root. All child processes are typically non-root. Cheers, --=20 Jean-Baptiste Quenot http://caraldi.com/jbq/ --DIOMP1UsTsWJauNi Content-Type: application/pgp-signature Content-Disposition: inline -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.3 (FreeBSD) iD8DBQE/xKYm9xx3BCMc9gsRAjIHAJ4p0/Y7J0FOSYeyIpJIYKCEG/t7gACaAsX3 SOaPrHKY0iLt/Oj+3d7MExM= =qnle -----END PGP SIGNATURE----- --DIOMP1UsTsWJauNi--