From owner-freebsd-questions Sun Dec 30 18: 8:20 2001 Delivered-To: freebsd-questions@freebsd.org Received: from hawk-systems.com (hawk-systems.com [161.58.152.235]) by hub.freebsd.org (Postfix) with ESMTP id 2DDB237B41C for ; Sun, 30 Dec 2001 18:08:17 -0800 (PST) Received: from cr159591a (CPE00a00cc12af5.cpe.net.cable.rogers.com [24.102.18.54]) by hawk-systems.com (8.11.6) id fBV28G479527 for ; Sun, 30 Dec 2001 19:08:16 -0700 (MST) From: dave@hawk-systems.com (Dave) To: Subject: RE: Getting Apache to run as user www only Date: Sun, 30 Dec 2001 21:12:28 -0500 Message-ID: MIME-Version: 1.0 Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: 7bit X-Priority: 3 (Normal) X-MSMail-Priority: Normal X-Mailer: Microsoft Outlook IMO, Build 9.0.2416 (9.0.2911.0) X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2600.0000 Importance: Normal In-Reply-To: <1009759250.60bc5ff9tdrake@myrealbox.com> Sender: owner-freebsd-questions@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.ORG root is required for binding and spawning... though the instances are run as the www user, that with some sensible security constraints locks apache up pretty good against breaches. Is there a specific security concern that needs to be addressed? Dave >-----Original Message----- >From: owner-freebsd-questions@FreeBSD.ORG >[mailto:owner-freebsd-questions@FreeBSD.ORG]On Behalf Of Troy >Sent: Sunday, December 30, 2001 7:41 PM >To: freebsd-questions@FreeBSD.ORG >Subject: Getting Apache to run as user www only > > >Hi all, >I've been running Apache for quite a while, but I'm trying to secure >my system and keep as many things from running as root as possible. I >have the Apache config set to the default www as the user to run >under, but the initial httpd process runs as root. Is there a way to >get all the httpd processes to run as www? > > >To Unsubscribe: send mail to majordomo@FreeBSD.org >with "unsubscribe freebsd-questions" in the body of the message > > To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-questions" in the body of the message