From owner-freebsd-questions@FreeBSD.ORG Thu Aug 23 15:26:31 2012 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [69.147.83.52]) by hub.freebsd.org (Postfix) with ESMTP id 83B98106566B for ; Thu, 23 Aug 2012 15:26:31 +0000 (UTC) (envelope-from steve@sohara.org) Received: from uk1rly2283.eechost.net (relay01a.mail.uk1.eechost.net [217.69.40.75]) by mx1.freebsd.org (Postfix) with ESMTP id 40B6B8FC08 for ; Thu, 23 Aug 2012 15:26:30 +0000 (UTC) Received: from [31.186.37.179] (helo=rpi-1.marelmo.com) by uk1rly2283.eechost.net with esmtpa (Exim 4.72) (envelope-from ) id 1T4ZEJ-00051l-VS for freebsd-questions@freebsd.org; Thu, 23 Aug 2012 16:21:56 +0100 Received: from [192.168.63.1] (helo=steve.marelmo.com) by rpi-1.marelmo.com with smtp (Exim 4.72) (envelope-from ) id 1T4ZJ6-0008Dq-Bp for freebsd-questions@freebsd.org; Thu, 23 Aug 2012 16:26:52 +0100 Date: Thu, 23 Aug 2012 16:26:21 +0100 From: Steve O'Hara-Smith To: freebsd-questions@freebsd.org Message-Id: <20120823162621.ae92b733.steve@sohara.org> In-Reply-To: References: X-Mailer: Sylpheed 3.1.3 (GTK+ 2.24.6; amd64-portbld-freebsd9.0) X-Face: %]+HVL}K`P8>+8ZcY-WGHP6j@&mxMo9JH6_WdgIgUGH)JX/usO0%jy7T~IVgqjumD^OBqX, Kv^-GM6mlw(fI^$"QRKyZ$?xx/ Mime-Version: 1.0 Content-Type: text/plain; charset=US-ASCII Content-Transfer-Encoding: 7bit X-Auth-Info: 15567@permanet.ie (plain) Subject: Re: implications of adding root to a group X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 23 Aug 2012 15:26:31 -0000 On Thu, 23 Aug 2012 07:51:10 -0700 Krims G wrote: > Hello, I've been looking at the /etc/group and have noticed that some > groups have root included in them, for example "operator". Is it not > implied that root has access to all things and groups? What is the purpose > of adding root to a group? If I add root to some new arbitrary group, what > does it result in differently than if I do not add root to that group? The root user has the ability to ignore file permissions, but not the ability to subvert group membership tests in scripts or programs. -- Steve O'Hara-Smith | Directable Mirror Arrays C:>WIN | A better way to focus the sun The computer obeys and wins. | licences available see You lose and Bill collects. | http://www.sohara.org/