Report forwarded to debian-bugs-dist@lists.debian.org, Michael Stone <mstone@debian.org>:
Bug#68603; Package shellutils.   debian-bugs-dist@lists.debian.orgMichael Stone  Subject: Bug#68603: chroot does not allow changing uid/gid Reply-To: Lightning , 68603@bugs.debian.org Resent-From: Lightning Resent-To: debian-bugs-dist@lists.debian.org Resent-CC: Michael Stone Resent-Date: Sat, 05 Aug 2000 15:48:14 GMT Resent-Message-ID: Resent-Sender: owner@bugs.debian.org X-Debian-PR-Message: report 68603 X-Debian-PR-Package: shellutils X-Debian-PR-Keywords: X-Loop: owner@bugs.debian.org Received: via spool by bugs@bugs.debian.org id=B.96548037026544 (code B ref -1); Sat, 05 Aug 2000 15:48:14 GMT X-Authentication-Warning: linux.lightspeed.cx: Host samuel.lightspeed.cx [192.168.1.2] claimed to be Lightspeed.cx Message-ID: <398C0F8B.D10F546A@Lightspeed.cx> Date: Sat, 05 Aug 2000 08:58:51 -0400 From: Lightning X-Mailer: Mozilla 4.73 [en] (Win98; I) X-Accept-Language: en MIME-Version: 1.0 To: submit@bugs.debian.org Content-Type: multipart/mixed; boundary="------------CD50D95C5112D95351EDCFDD" Delivered-To: submit@bugs.debian.org This is a multi-part message in MIME format. --------------CD50D95C5112D95351EDCFDD Content-Type: text/plain; charset=us-ascii Content-Transfer-Encoding: 7bit Package: shellutils Version: 2.0-7 Severtiy: wishlist Currently chroot does not allow for the changing of the UID and GID that an application runs under but runs the application as root and lets the application change this. I created a patch that would allow for passing the UID and/or GID on the command line to setresuid/setresgid and setgroups to. --------------CD50D95C5112D95351EDCFDD Content-Type: application/x-gzip; name="chroot.diff.gz" Content-Transfer-Encoding: base64 Content-Disposition: inline; filename="chroot.diff.gz" H4sICJzJizkCA2Nocm9vdC5kaWZmAK1WbW/bNhD+PP+Kq4ptViTZlvPWwE0QLw3SYnZcOAn6 oQ08RaJlAjIpkJSdYOh/35GibNlJ3WWYPujlePfc3XN3IoMgADkjWVYomsmg2+q0uKBpW4q4 Hc8E56oVNzzPWysRo7WpcH4OQXjkhyfg4aN7DOfnDcDrE4tbPhyewC2Z5xmBz1kUEwjgpqCK wP5+x4c/uFSc+TDsQ6cbhmEQ7neOfbi76bcA9toNaEB7D74IqhRh8PAEY55FLIFhfCUiNSuV PFQZ8oROKUm0zk00L0gGNyR6Mssa5S1lcVYkBN7HnE1p2pqd1YVSJZRvy55kWz3lRGq5V9cV lKXPhElGHwxCDcNBDEXmrZlTF2acpQHPFeVMbi0RIbgwsjp4wSjib3nMl9uSVORGYji7nRHg 0ymNaZQBi+b6C9SMSsgFT0U0hyZppVgfxuGv9HeUkil9dC3tbxP8Yliy8ehq3B9OrvvDS3DK iuvggkqhf3f7cTS+AWezMA7GtVvDr5fJsYXWQZtYNwJdRhJEwWBJtdmUCzA0wZxIGaVYHxNy PIsE7FmbiUbpmc48eOcfgXd45L+r+hKvHEuoptCcNJ1vDRgj+MVoOOxffzBOQKcJCRUkVlw8 gSQNChSH68sv49HotvWNoY2+eQBBDQqp4EUO1YVhsFQnQOzCV4t8r3OQULCECGNZQCGJgJcs zcKLhlY3CHAgK6cJlXmGvW5IM3LNM3mkykRaWSyIkNhy+oMXKi8UVBLKkNR5pBty01TfNIdH oebwOPTDA0MikteAeUQZNPEVIpHGvi3AHn4s3Ab8rXOsFnnBVK8S5Fh9FJ52VhLySOK1BOer iLWalMsE9uKZZqO+YgnHFfNmlg0KmkyU5hBfLE5aiVIrapjCr/sDTnVwi6+d+55ewipnPI7w R9UcXEz6g4EPjuOapQfKEkUeVcLLpD/3L/7sX136MBhd9AeXHz6N3bLZjg/87iF4J13/+KTW boXuU2iGJRrAdz1CmDt2YDlT0DSRhPeuqxfAdngz9PUb4z5gp8YRY6hq+2SrR7E/f5WO60MF ZDjAujarApyGvVUx4L15XQs8z9X6pmplYEh2PM/LuCqtex/ACQ0Kx4XTU+i4pbK1gRpWrxKV xUOiU6LyJZK+heeuNEsujPabU7i+GwzcamnlwNYX4UrN4CxfTlCwAvlevZBMkh3mkeL0h5FY EPvQSLv4cIL0NXSUvWv4SMXP+SjVdxKSWkKManCWikn6KkbS/8yIHeQXk1+tbc7/BsiWif0L /MAEb+Z3sT0y1pEeHO9/GJwVXE9vSZU/1Iam03bQCfzUiVZG0E03aNpbD71OUNPWddc56Tq8 qZiszyFRgkhcLXV8qD+qrHdFpHcvVDUR1FFNw0ht8tvrsLRdhbZRlmJnDQqFSaEoY18//q3b okwBYOW2crxqHOPadrjtbzxUXHOI+XyOGxsebvRWH+kdTxERxYouSHm2teee1U6MO5mRl6NK 2ALrf/PxcjBwqn+4Ta1UqgYUfqmsnDZuGm05c3q1/8ECvLK7IeiuYOwehDbGdlMearkTUGe9 c9jheZanPjxNeZbxJR5PtXUxJ0xJrP2iPFWsWcBUg82gus/CtKzWdqzSzSXKC2VPOAjNNnH/ ASGqoExTDAAA --------------CD50D95C5112D95351EDCFDD--   Acknowledgement sent to Lightning <Lightning@lightspeed.cx>:
New Bug report received and forwarded. Copy sent to Michael Stone <mstone@debian.org>.   -t  From: owner@bugs.debian.org (Debian Bug Tracking System) To: Lightning Subject: Bug#68603: Acknowledgement (chroot does not allow changing uid/gid) Message-ID: In-Reply-To: <398C0F8B.D10F546A@Lightspeed.cx> References: <398C0F8B.D10F546A@Lightspeed.cx> X-Debian-PR-Message: ack 68603 Thank you for the problem report you have sent regarding Debian. This is an automatically generated reply, to let you know your message has been received. It is being forwarded to the developers mailing list for their attention; they will reply in due course. Your message has been sent to the package maintainer(s): Michael Stone If you wish to submit further information on your problem, please send it to 68603@bugs.debian.org (and *not* to bugs@bugs.debian.org). Please do not reply to the address at the top of this message, unless you wish to report a problem with the Bug-tracking system. Darren Benham (administrator, Debian Bugs database)   Received: (at submit) by bugs.debian.org; 5 Aug 2000 12:59:30 +0000 From Lightning@lightspeed.cx Sat Aug 05 07:59:30 2000 Return-path: Received: from dsl081-025-193-sea1.dsl-isp.net (linux.lightspeed.cx) [64.81.25.193] (root) by master.debian.org with esmtp (Exim 3.12 2 (Debian)) id 13L3Y1-0006u5-00; Sat, 05 Aug 2000 07:59:30 -0500 Received: from Lightspeed.cx (samuel.lightspeed.cx [192.168.1.2]) by linux.lightspeed.cx (8.9.3/8.9.3/Debian 8.9.3-21) with ESMTP id EAA21461 for ; Sat, 5 Aug 2000 04:07:10 -0400 X-Authentication-Warning: linux.lightspeed.cx: Host samuel.lightspeed.cx [192.168.1.2] claimed to be Lightspeed.cx Message-ID: <398C0F8B.D10F546A@Lightspeed.cx> Date: Sat, 05 Aug 2000 08:58:51 -0400 From: Lightning X-Mailer: Mozilla 4.73 [en] (Win98; I) X-Accept-Language: en MIME-Version: 1.0 To: submit@bugs.debian.org Subject: chroot does not allow changing uid/gid Content-Type: multipart/mixed; boundary="------------CD50D95C5112D95351EDCFDD" Delivered-To: submit@bugs.debian.org This is a multi-part message in MIME format. --------------CD50D95C5112D95351EDCFDD Content-Type: text/plain; charset=us-ascii Content-Transfer-Encoding: 7bit Package: shellutils Version: 2.0-7 Severtiy: wishlist Currently chroot does not allow for the changing of the UID and GID that an application runs under but runs the application as root and lets the application change this. I created a patch that would allow for passing the UID and/or GID on the command line to setresuid/setresgid and setgroups to. --------------CD50D95C5112D95351EDCFDD Content-Type: application/x-gzip; name="chroot.diff.gz" Content-Transfer-Encoding: base64 Content-Disposition: inline; filename="chroot.diff.gz" H4sICJzJizkCA2Nocm9vdC5kaWZmAK1WbW/bNhD+PP+Kq4ptViTZlvPWwE0QLw3SYnZcOAn6 oQ08RaJlAjIpkJSdYOh/35GibNlJ3WWYPujlePfc3XN3IoMgADkjWVYomsmg2+q0uKBpW4q4 Hc8E56oVNzzPWysRo7WpcH4OQXjkhyfg4aN7DOfnDcDrE4tbPhyewC2Z5xmBz1kUEwjgpqCK wP5+x4c/uFSc+TDsQ6cbhmEQ7neOfbi76bcA9toNaEB7D74IqhRh8PAEY55FLIFhfCUiNSuV PFQZ8oROKUm0zk00L0gGNyR6Mssa5S1lcVYkBN7HnE1p2pqd1YVSJZRvy55kWz3lRGq5V9cV lKXPhElGHwxCDcNBDEXmrZlTF2acpQHPFeVMbi0RIbgwsjp4wSjib3nMl9uSVORGYji7nRHg 0ymNaZQBi+b6C9SMSsgFT0U0hyZppVgfxuGv9HeUkil9dC3tbxP8Yliy8ehq3B9OrvvDS3DK iuvggkqhf3f7cTS+AWezMA7GtVvDr5fJsYXWQZtYNwJdRhJEwWBJtdmUCzA0wZxIGaVYHxNy PIsE7FmbiUbpmc48eOcfgXd45L+r+hKvHEuoptCcNJ1vDRgj+MVoOOxffzBOQKcJCRUkVlw8 gSQNChSH68sv49HotvWNoY2+eQBBDQqp4EUO1YVhsFQnQOzCV4t8r3OQULCECGNZQCGJgJcs zcKLhlY3CHAgK6cJlXmGvW5IM3LNM3mkykRaWSyIkNhy+oMXKi8UVBLKkNR5pBty01TfNIdH oebwOPTDA0MikteAeUQZNPEVIpHGvi3AHn4s3Ab8rXOsFnnBVK8S5Fh9FJ52VhLySOK1BOer iLWalMsE9uKZZqO+YgnHFfNmlg0KmkyU5hBfLE5aiVIrapjCr/sDTnVwi6+d+55ewipnPI7w R9UcXEz6g4EPjuOapQfKEkUeVcLLpD/3L/7sX136MBhd9AeXHz6N3bLZjg/87iF4J13/+KTW boXuU2iGJRrAdz1CmDt2YDlT0DSRhPeuqxfAdngz9PUb4z5gp8YRY6hq+2SrR7E/f5WO60MF ZDjAujarApyGvVUx4L15XQs8z9X6pmplYEh2PM/LuCqtex/ACQ0Kx4XTU+i4pbK1gRpWrxKV xUOiU6LyJZK+heeuNEsujPabU7i+GwzcamnlwNYX4UrN4CxfTlCwAvlevZBMkh3mkeL0h5FY EPvQSLv4cIL0NXSUvWv4SMXP+SjVdxKSWkKManCWikn6KkbS/8yIHeQXk1+tbc7/BsiWif0L /MAEb+Z3sT0y1pEeHO9/GJwVXE9vSZU/1Iam03bQCfzUiVZG0E03aNpbD71OUNPWddc56Tq8 qZiszyFRgkhcLXV8qD+qrHdFpHcvVDUR1FFNw0ht8tvrsLRdhbZRlmJnDQqFSaEoY18//q3b okwBYOW2crxqHOPadrjtbzxUXHOI+XyOGxsebvRWH+kdTxERxYouSHm2teee1U6MO5mRl6NK 2ALrf/PxcjBwqn+4Ta1UqgYUfqmsnDZuGm05c3q1/8ECvLK7IeiuYOwehDbGdlMearkTUGe9 c9jheZanPjxNeZbxJR5PtXUxJ0xJrP2iPFWsWcBUg82gus/CtKzWdqzSzSXKC2VPOAjNNnH/ ASGqoExTDAAA --------------CD50D95C5112D95351EDCFDD--   Severity set to `wishlist'. Request was from Thomas Hood <jdthood@yahoo.co.uk> to control@bugs.debian.org.   Received: (at control) by bugs.debian.org; 16 Dec 2005 13:41:08 +0000 From jdthood@yahoo.co.uk Fri Dec 16 05:41:08 2005 Return-path: Received: from mailservice.tudelft.nl ([130.161.131.5]) by spohr.debian.org with esmtp (Exim 4.50) id 1EnFpc-0005DN-Ju for control@bugs.debian.org; Fri, 16 Dec 2005 05:41:08 -0800 Received: from localhost (localhost [127.0.0.1]) by rav.antivirus (Postfix) with ESMTP id B670522EFE6; Fri, 16 Dec 2005 14:40:37 +0100 (CET) Received: from snurk.tiscali.nl (x111.decis.nl [130.161.177.111]) by mx1.tudelft.nl (Postfix) with ESMTP id 23A4422EFB8; Fri, 16 Dec 2005 14:40:37 +0100 (CET) Received: from [127.0.0.1] (localhost [127.0.0.1]) by snurk.tiscali.nl (Postfix) with ESMTP id D56C6C01BE; Fri, 16 Dec 2005 15:40:58 +0100 (CET) Message-ID: <43A2D1FA.7050108@yahoo.co.uk> Date: Fri, 16 Dec 2005 15:40:58 +0100 From: Thomas Hood User-Agent: Mozilla Thunderbird 1.0.7 (X11/20051013) X-Accept-Language: en-us, en MIME-Version: 1.0 To: 68603-submitter@yahoo.co.uk Subject: Motivation? X-Enigmail-Version: 0.92.1.0 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: 7bit X-Virus-Scanned: by amavisd-new at tudelft.nl Delivered-To: control@bugs.debian.org X-Spam-Checker-Version: SpamAssassin 2.60-bugs.debian.org_2005_01_02 (1.212-2003-09-23-exp) on spohr.debian.org X-Spam-Level: X-Spam-Status: No, hits=-5.0 required=4.0 tests=BAYES_00,VALID_BTS_CONTROL autolearn=no version=2.60-bugs.debian.org_2005_01_02 severity 68603 wishlist tags 68603 patch retitle 68603 coreutils: chroot: Please add option for changing uid/gid stop Hi. Can you motivate this wish further? Why should this be implemented as a chroot option? -- Thomas Hood   Tags added: patch Request was from Thomas Hood <jdthood@yahoo.co.uk> to control@bugs.debian.org.   Received: (at control) by bugs.debian.org; 16 Dec 2005 13:41:08 +0000 From jdthood@yahoo.co.uk Fri Dec 16 05:41:08 2005 Return-path: Received: from mailservice.tudelft.nl ([130.161.131.5]) by spohr.debian.org with esmtp (Exim 4.50) id 1EnFpc-0005DN-Ju for control@bugs.debian.org; Fri, 16 Dec 2005 05:41:08 -0800 Received: from localhost (localhost [127.0.0.1]) by rav.antivirus (Postfix) with ESMTP id B670522EFE6; Fri, 16 Dec 2005 14:40:37 +0100 (CET) Received: from snurk.tiscali.nl (x111.decis.nl [130.161.177.111]) by mx1.tudelft.nl (Postfix) with ESMTP id 23A4422EFB8; Fri, 16 Dec 2005 14:40:37 +0100 (CET) Received: from [127.0.0.1] (localhost [127.0.0.1]) by snurk.tiscali.nl (Postfix) with ESMTP id D56C6C01BE; Fri, 16 Dec 2005 15:40:58 +0100 (CET) Message-ID: <43A2D1FA.7050108@yahoo.co.uk> Date: Fri, 16 Dec 2005 15:40:58 +0100 From: Thomas Hood User-Agent: Mozilla Thunderbird 1.0.7 (X11/20051013) X-Accept-Language: en-us, en MIME-Version: 1.0 To: 68603-submitter@yahoo.co.uk Subject: Motivation? X-Enigmail-Version: 0.92.1.0 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: 7bit X-Virus-Scanned: by amavisd-new at tudelft.nl Delivered-To: control@bugs.debian.org X-Spam-Checker-Version: SpamAssassin 2.60-bugs.debian.org_2005_01_02 (1.212-2003-09-23-exp) on spohr.debian.org X-Spam-Level: X-Spam-Status: No, hits=-5.0 required=4.0 tests=BAYES_00,VALID_BTS_CONTROL autolearn=no version=2.60-bugs.debian.org_2005_01_02 severity 68603 wishlist tags 68603 patch retitle 68603 coreutils: chroot: Please add option for changing uid/gid stop Hi. Can you motivate this wish further? Why should this be implemented as a chroot option? -- Thomas Hood   Changed Bug title. Request was from Thomas Hood <jdthood@yahoo.co.uk> to control@bugs.debian.org.   Received: (at control) by bugs.debian.org; 16 Dec 2005 13:41:08 +0000 From jdthood@yahoo.co.uk Fri Dec 16 05:41:08 2005 Return-path: Received: from mailservice.tudelft.nl ([130.161.131.5]) by spohr.debian.org with esmtp (Exim 4.50) id 1EnFpc-0005DN-Ju for control@bugs.debian.org; Fri, 16 Dec 2005 05:41:08 -0800 Received: from localhost (localhost [127.0.0.1]) by rav.antivirus (Postfix) with ESMTP id B670522EFE6; Fri, 16 Dec 2005 14:40:37 +0100 (CET) Received: from snurk.tiscali.nl (x111.decis.nl [130.161.177.111]) by mx1.tudelft.nl (Postfix) with ESMTP id 23A4422EFB8; Fri, 16 Dec 2005 14:40:37 +0100 (CET) Received: from [127.0.0.1] (localhost [127.0.0.1]) by snurk.tiscali.nl (Postfix) with ESMTP id D56C6C01BE; Fri, 16 Dec 2005 15:40:58 +0100 (CET) Message-ID: <43A2D1FA.7050108@yahoo.co.uk> Date: Fri, 16 Dec 2005 15:40:58 +0100 From: Thomas Hood User-Agent: Mozilla Thunderbird 1.0.7 (X11/20051013) X-Accept-Language: en-us, en MIME-Version: 1.0 To: 68603-submitter@yahoo.co.uk Subject: Motivation? X-Enigmail-Version: 0.92.1.0 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: 7bit X-Virus-Scanned: by amavisd-new at tudelft.nl Delivered-To: control@bugs.debian.org X-Spam-Checker-Version: SpamAssassin 2.60-bugs.debian.org_2005_01_02 (1.212-2003-09-23-exp) on spohr.debian.org X-Spam-Level: X-Spam-Status: No, hits=-5.0 required=4.0 tests=BAYES_00,VALID_BTS_CONTROL autolearn=no version=2.60-bugs.debian.org_2005_01_02 severity 68603 wishlist tags 68603 patch retitle 68603 coreutils: chroot: Please add option for changing uid/gid stop Hi. Can you motivate this wish further? Why should this be implemented as a chroot option? -- Thomas Hood   Message sent on to Lightning <Lightning@lightspeed.cx>:
Bug#68603.   Lightning  X-Loop: owner@bugs.debian.org Subject: Bug#68603: Motivation? Reply-To: Thomas Hood , 68603-quiet@bugs.debian.org Resent-To: Lightning Resent-Date: Fri, 16 Dec 2005 13:48:15 UTC Resent-Message-ID: Resent-Sender: owner@bugs.debian.org X-Debian-PR-Message: report 68603 X-Debian-PR-Package: shellutils X-Debian-PR-Keywords: patch Received: via spool by 68603-submitter@bugs.debian.org id=U68603.113474070221621 (code U ref 68603); Fri, 16 Dec 2005 13:48:15 UTC Received: (at 68603-submitter) by bugs.debian.org; 16 Dec 2005 13:45:02 +0000 Received: from mailservice.tudelft.nl ([130.161.131.5]) by spohr.debian.org with esmtp (Exim 4.50) id 1EnFtO-0005bh-AB for 68603-submitter@bugs.debian.org; Fri, 16 Dec 2005 05:45:02 -0800 Received: from localhost (localhost [127.0.0.1]) by rav.antivirus (Postfix) with ESMTP id A29D380172 for <68603-submitter@bugs.debian.org>; Fri, 16 Dec 2005 14:44:31 +0100 (CET) Received: from snurk.tiscali.nl (x111.decis.nl [130.161.177.111]) by mx4.tudelft.nl (Postfix) with ESMTP id 6FD2080146 for <68603-submitter@bugs.debian.org>; Fri, 16 Dec 2005 14:44:31 +0100 (CET) Received: from [127.0.0.1] (localhost [127.0.0.1]) by snurk.tiscali.nl (Postfix) with ESMTP id 190BEC01BE for <68603-submitter@bugs.debian.org>; Fri, 16 Dec 2005 15:44:53 +0100 (CET) Message-ID: <43A2D2E4.9010304@yahoo.co.uk> Date: Fri, 16 Dec 2005 15:44:52 +0100 From: Thomas Hood User-Agent: Mozilla Thunderbird 1.0.7 (X11/20051013) X-Accept-Language: en-us, en MIME-Version: 1.0 To: 68603-submitter@bugs.debian.org X-Enigmail-Version: 0.92.1.0 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: 7bit X-Virus-Scanned: by amavisd-new at tudelft.nl X-Spam-Checker-Version: SpamAssassin 2.60-bugs.debian.org_2005_01_02 (1.212-2003-09-23-exp) on spohr.debian.org X-Spam-Level: X-Spam-Status: No, hits=-3.0 required=4.0 tests=BAYES_00 autolearn=no version=2.60-bugs.debian.org_2005_01_02 Hi. Can you motivate this wish further? Why should this be implemented as a chroot option? -- Thomas Hood   Received: (at 68603-submitter) by bugs.debian.org; 16 Dec 2005 13:45:02 +0000 From jdthood@yahoo.co.uk Fri Dec 16 05:45:02 2005 Return-path: Received: from mailservice.tudelft.nl ([130.161.131.5]) by spohr.debian.org with esmtp (Exim 4.50) id 1EnFtO-0005bh-AB for 68603-submitter@bugs.debian.org; Fri, 16 Dec 2005 05:45:02 -0800 Received: from localhost (localhost [127.0.0.1]) by rav.antivirus (Postfix) with ESMTP id A29D380172 for <68603-submitter@bugs.debian.org>; Fri, 16 Dec 2005 14:44:31 +0100 (CET) Received: from snurk.tiscali.nl (x111.decis.nl [130.161.177.111]) by mx4.tudelft.nl (Postfix) with ESMTP id 6FD2080146 for <68603-submitter@bugs.debian.org>; Fri, 16 Dec 2005 14:44:31 +0100 (CET) Received: from [127.0.0.1] (localhost [127.0.0.1]) by snurk.tiscali.nl (Postfix) with ESMTP id 190BEC01BE for <68603-submitter@bugs.debian.org>; Fri, 16 Dec 2005 15:44:53 +0100 (CET) Message-ID: <43A2D2E4.9010304@yahoo.co.uk> Date: Fri, 16 Dec 2005 15:44:52 +0100 From: Thomas Hood User-Agent: Mozilla Thunderbird 1.0.7 (X11/20051013) X-Accept-Language: en-us, en MIME-Version: 1.0 To: 68603-submitter@bugs.debian.org Subject: Motivation? X-Enigmail-Version: 0.92.1.0 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: 7bit X-Virus-Scanned: by amavisd-new at tudelft.nl X-Spam-Checker-Version: SpamAssassin 2.60-bugs.debian.org_2005_01_02 (1.212-2003-09-23-exp) on spohr.debian.org X-Spam-Level: X-Spam-Status: No, hits=-3.0 required=4.0 tests=BAYES_00 autolearn=no version=2.60-bugs.debian.org_2005_01_02 Hi. Can you motivate this wish further? Why should this be implemented as a chroot option? -- Thomas Hood   Information stored:
Bug#68603; Package shellutils.   -t  X-Loop: owner@bugs.debian.org Subject: Bug#68603: Motivation? Reply-To: Samuel , 68603-quiet@bugs.debian.org Resent-From: Samuel Resent-To: Resent-Date: Fri, 16 Dec 2005 23:18:21 UTC Resent-Message-ID: Resent-Sender: owner@bugs.debian.org X-Debian-PR-Message: report 68603 X-Debian-PR-Package: shellutils X-Debian-PR-Keywords: patch Received: via spool by 68603-quiet@bugs.debian.org id=Q68603.113477349517384 (code Q ref 68603); Fri, 16 Dec 2005 23:18:21 UTC Received: (at 68603-quiet) by bugs.debian.org; 16 Dec 2005 22:51:35 +0000 Received: from matrix.lightspeed.cx ([69.17.4.166] ident=postfix) by spohr.debian.org with esmtp (Exim 4.50) id 1EnOLu-0002Ps-KD for 68603-quiet@bugs.debian.org; Fri, 16 Dec 2005 14:47:02 -0800 Received: from [192.168.1.2] (208-244.119-70.tampabay.res.rr.com [70.119.244.208]) by matrix.lightspeed.cx (Postfix) with ESMTP id 10D062983; Fri, 16 Dec 2005 17:33:56 -0500 (EST) Message-ID: <43A347CA.8090207@Lightspeed.cx> Date: Fri, 16 Dec 2005 18:03:38 -0500 From: Samuel User-Agent: Mozilla Thunderbird 1.0.2 (Windows/20050317) X-Accept-Language: en-us, en MIME-Version: 1.0 To: Thomas Hood , 68603-quiet@bugs.debian.org References: <43A2D2E4.9010304@yahoo.co.uk> In-Reply-To: <43A2D2E4.9010304@yahoo.co.uk> Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit X-Spam-Checker-Version: SpamAssassin 2.60-bugs.debian.org_2005_01_02 (1.212-2003-09-23-exp) on spohr.debian.org X-Spam-Level: X-Spam-Status: No, hits=-3.5 required=4.0 tests=BAYES_30,HAS_BUG_NUMBER autolearn=no version=2.60-bugs.debian.org_2005_01_02 I had completely forgotten about this submission being it is 5 years old. The issue I had at the time was the desire to chroot various programs. Some of the programs I was chroot'ing did not allow for changing the user once chroot executed the program yet I was executing chroot from a root user. The whole user that was running chroot'd was setup in the jail type system for all paths. The idea was for chroot to shed being a root level program so that the program it ran would be of a normal user and even further limit potential attacks if there was a security issue with the chroot'd program. Alot of security has improved since then and it may not be needed but it was a way to limit a root program from being exploited and then for the potential of the program to leave the chroot. In the end, the change allowed for the same functionality you have as jail under freebsd. Samuel Seay Thomas Hood wrote: >Hi. Can you motivate this wish further? Why should this be implemented >as a chroot option? > > >   Acknowledgement sent to Samuel <Samuel@Lightspeed.cx>:
Extra info received and filed, but not forwarded.   -t  X-Loop: owner@bugs.debian.org From: owner@bugs.debian.org (Debian Bug Tracking System) To: Samuel Subject: Bug#68603: Info received and FILED only (was Bug#68603: Motivation?) Message-ID: In-Reply-To: <43A347CA.8090207@Lightspeed.cx> References: <43A347CA.8090207@Lightspeed.cx> Precedence: bulk X-Debian-PR-Message: ack-info-quiet 68603 X-Debian-PR-Package: shellutils X-Debian-PR-Keywords: patch Reply-To: 68603-quiet@bugs.debian.org Thank you for the additional information you have supplied regarding this problem report. It has NOT been forwarded to the package maintainers, but will accompany the original report in the Bug tracking system. Please ensure that you yourself have sent a copy of the additional information to any relevant developers or mailing lists. If you wish to continue to submit further information on your problem, please send it to 68603-quiet@bugs.debian.org, as before. Please do not reply to the address at the top of this message, unless you wish to report a problem with the Bug-tracking system. Debian bug tracking system administrator (administrator, Debian Bugs database)   Received: (at 68603-quiet) by bugs.debian.org; 16 Dec 2005 22:51:35 +0000 From Samuel@Lightspeed.cx Fri Dec 16 14:51:35 2005 Return-path: Received: from matrix.lightspeed.cx ([69.17.4.166] ident=postfix) by spohr.debian.org with esmtp (Exim 4.50) id 1EnOLu-0002Ps-KD for 68603-quiet@bugs.debian.org; Fri, 16 Dec 2005 14:47:02 -0800 Received: from [192.168.1.2] (208-244.119-70.tampabay.res.rr.com [70.119.244.208]) by matrix.lightspeed.cx (Postfix) with ESMTP id 10D062983; Fri, 16 Dec 2005 17:33:56 -0500 (EST) Message-ID: <43A347CA.8090207@Lightspeed.cx> Date: Fri, 16 Dec 2005 18:03:38 -0500 From: Samuel User-Agent: Mozilla Thunderbird 1.0.2 (Windows/20050317) X-Accept-Language: en-us, en MIME-Version: 1.0 To: Thomas Hood , 68603-quiet@bugs.debian.org Subject: Re: Bug#68603: Motivation? References: <43A2D2E4.9010304@yahoo.co.uk> In-Reply-To: <43A2D2E4.9010304@yahoo.co.uk> Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit X-Spam-Checker-Version: SpamAssassin 2.60-bugs.debian.org_2005_01_02 (1.212-2003-09-23-exp) on spohr.debian.org X-Spam-Level: X-Spam-Status: No, hits=-3.5 required=4.0 tests=BAYES_30,HAS_BUG_NUMBER autolearn=no version=2.60-bugs.debian.org_2005_01_02 I had completely forgotten about this submission being it is 5 years old. The issue I had at the time was the desire to chroot various programs. Some of the programs I was chroot'ing did not allow for changing the user once chroot executed the program yet I was executing chroot from a root user. The whole user that was running chroot'd was setup in the jail type system for all paths. The idea was for chroot to shed being a root level program so that the program it ran would be of a normal user and even further limit potential attacks if there was a security issue with the chroot'd program. Alot of security has improved since then and it may not be needed but it was a way to limit a root program from being exploited and then for the potential of the program to leave the chroot. In the end, the change allowed for the same functionality you have as jail under freebsd. Samuel Seay Thomas Hood wrote: >Hi. Can you motivate this wish further? Why should this be implemented >as a chroot option? > > >   Message sent on to Lightning <Lightning@lightspeed.cx>:
Bug#68603.   Lightning  X-Loop: owner@bugs.debian.org Subject: Bug#68603: Does schroot do what you want? Reply-To: Thomas Hood , 68603-quiet@bugs.debian.org Resent-To: Lightning Resent-Date: Wed, 21 Dec 2005 12:33:05 UTC Resent-Message-ID: Resent-Sender: owner@bugs.debian.org X-Debian-PR-Message: report 68603 X-Debian-PR-Package: shellutils X-Debian-PR-Keywords: patch Received: via spool by 68603-submitter@bugs.debian.org id=U68603.11351680595482 (code U ref 68603); Wed, 21 Dec 2005 12:33:05 UTC Received: (at 68603-submitter) by bugs.debian.org; 21 Dec 2005 12:27:39 +0000 Received: from mailservice.tudelft.nl ([130.161.131.5]) by spohr.debian.org with esmtp (Exim 4.50) id 1Ep34E-0001NY-WF for 68603-submitter@bugs.debian.org; Wed, 21 Dec 2005 04:27:39 -0800 Received: from localhost (localhost [127.0.0.1]) by rav.antivirus (Postfix) with ESMTP id A2C148034C for <68603-submitter@bugs.debian.org>; Wed, 21 Dec 2005 13:27:07 +0100 (CET) Received: from 82-171-132-56.dsl.ip.tiscali.nl (x088.decis.nl [130.161.177.88]) by mx4.tudelft.nl (Postfix) with ESMTP id 70FA68029A for <68603-submitter@bugs.debian.org>; Wed, 21 Dec 2005 13:27:07 +0100 (CET) Received: from [127.0.0.1] (localhost [127.0.0.1]) by 82-171-132-56.dsl.ip.tiscali.nl (Postfix) with ESMTP id 40E06C01CE for <68603-submitter@bugs.debian.org>; Wed, 21 Dec 2005 13:27:07 +0100 (CET) Message-ID: <43A94A1A.4050906@yahoo.co.uk> Date: Wed, 21 Dec 2005 13:27:06 +0100 From: Thomas Hood User-Agent: Mozilla Thunderbird 1.0.7 (X11/20051013) X-Accept-Language: en-us, en MIME-Version: 1.0 To: 68603-submitter@bugs.debian.org X-Enigmail-Version: 0.92.1.0 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: 7bit X-Virus-Scanned: by amavisd-new at tudelft.nl X-Spam-Checker-Version: SpamAssassin 2.60-bugs.debian.org_2005_01_02 (1.212-2003-09-23-exp) on spohr.debian.org X-Spam-Level: X-Spam-Status: No, hits=-3.0 required=4.0 tests=BAYES_00 autolearn=no version=2.60-bugs.debian.org_2005_01_02 Does schroot do what you want? http://packages.debian.org/schroot -- Thomas Hood   Received: (at 68603-submitter) by bugs.debian.org; 21 Dec 2005 12:27:39 +0000 From jdthood@yahoo.co.uk Wed Dec 21 04:27:39 2005 Return-path: Received: from mailservice.tudelft.nl ([130.161.131.5]) by spohr.debian.org with esmtp (Exim 4.50) id 1Ep34E-0001NY-WF for 68603-submitter@bugs.debian.org; Wed, 21 Dec 2005 04:27:39 -0800 Received: from localhost (localhost [127.0.0.1]) by rav.antivirus (Postfix) with ESMTP id A2C148034C for <68603-submitter@bugs.debian.org>; Wed, 21 Dec 2005 13:27:07 +0100 (CET) Received: from 82-171-132-56.dsl.ip.tiscali.nl (x088.decis.nl [130.161.177.88]) by mx4.tudelft.nl (Postfix) with ESMTP id 70FA68029A for <68603-submitter@bugs.debian.org>; Wed, 21 Dec 2005 13:27:07 +0100 (CET) Received: from [127.0.0.1] (localhost [127.0.0.1]) by 82-171-132-56.dsl.ip.tiscali.nl (Postfix) with ESMTP id 40E06C01CE for <68603-submitter@bugs.debian.org>; Wed, 21 Dec 2005 13:27:07 +0100 (CET) Message-ID: <43A94A1A.4050906@yahoo.co.uk> Date: Wed, 21 Dec 2005 13:27:06 +0100 From: Thomas Hood User-Agent: Mozilla Thunderbird 1.0.7 (X11/20051013) X-Accept-Language: en-us, en MIME-Version: 1.0 To: 68603-submitter@bugs.debian.org Subject: Does schroot do what you want? X-Enigmail-Version: 0.92.1.0 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: 7bit X-Virus-Scanned: by amavisd-new at tudelft.nl X-Spam-Checker-Version: SpamAssassin 2.60-bugs.debian.org_2005_01_02 (1.212-2003-09-23-exp) on spohr.debian.org X-Spam-Level: X-Spam-Status: No, hits=-3.0 required=4.0 tests=BAYES_00 autolearn=no version=2.60-bugs.debian.org_2005_01_02 Does schroot do what you want? http://packages.debian.org/schroot -- Thomas Hood   Information stored:
Bug#68603; Package shellutils.   -t  X-Loop: owner@bugs.debian.org Subject: Bug#68603: Does schroot do what you want? Reply-To: Samuel , 68603-quiet@bugs.debian.org Resent-From: Samuel Resent-To: Resent-Date: Thu, 22 Dec 2005 23:49:18 UTC Resent-Message-ID: Resent-Sender: owner@bugs.debian.org X-Debian-PR-Message: report 68603 X-Debian-PR-Package: shellutils X-Debian-PR-Keywords: patch Received: via spool by 68603-quiet@bugs.debian.org id=Q68603.113529534127572 (code Q ref 68603); Thu, 22 Dec 2005 23:49:18 UTC Received: (at 68603-quiet) by bugs.debian.org; 22 Dec 2005 23:49:01 +0000 Received: from matrix.lightspeed.cx ([69.17.4.166] ident=postfix) by spohr.debian.org with esmtp (Exim 4.50) id 1EpaBB-0007AX-BZ for 68603-quiet@bugs.debian.org; Thu, 22 Dec 2005 15:49:01 -0800 Received: from [192.168.1.2] (208-244.119-70.tampabay.res.rr.com [70.119.244.208]) by matrix.lightspeed.cx (Postfix) with ESMTP id 13923297E; Thu, 22 Dec 2005 18:28:32 -0500 (EST) Message-ID: <43AB3F5B.3070709@Lightspeed.cx> Date: Thu, 22 Dec 2005 19:05:47 -0500 From: Samuel User-Agent: Mozilla Thunderbird 1.0.2 (Windows/20050317) X-Accept-Language: en-us, en MIME-Version: 1.0 To: Thomas Hood , 68603-quiet@bugs.debian.org References: <43A94A1A.4050906@yahoo.co.uk> In-Reply-To: <43A94A1A.4050906@yahoo.co.uk> Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit X-Spam-Checker-Version: SpamAssassin 2.60-bugs.debian.org_2005_01_02 (1.212-2003-09-23-exp) on spohr.debian.org X-Spam-Level: X-Spam-Status: No, hits=-6.0 required=4.0 tests=BAYES_00,HAS_BUG_NUMBER autolearn=no version=2.60-bugs.debian.org_2005_01_02 Doing a quick read thru schroot, it would appear to do what I was trying to do years ago. I no longer require such a setup now. At the time I was simply trying to emulate jail so I could get chroot to run a program as a different user. It would appear schroot would allow this (based on it's description. I did not install and read thru the whole man page). Samuel Thomas Hood wrote: >Does schroot do what you want? > > http://packages.debian.org/schroot > > >   Acknowledgement sent to Samuel <Samuel@Lightspeed.cx>:
Extra info received and filed, but not forwarded.   -t  X-Loop: owner@bugs.debian.org From: owner@bugs.debian.org (Debian Bug Tracking System) To: Samuel Subject: Bug#68603: Info received and FILED only (was Bug#68603: Does schroot do what you want?) Message-ID: In-Reply-To: <43AB3F5B.3070709@Lightspeed.cx> References: <43AB3F5B.3070709@Lightspeed.cx> Precedence: bulk X-Debian-PR-Message: ack-info-quiet 68603 X-Debian-PR-Package: shellutils X-Debian-PR-Keywords: patch Reply-To: 68603-quiet@bugs.debian.org Thank you for the additional information you have supplied regarding this problem report. It has NOT been forwarded to the package maintainers, but will accompany the original report in the Bug tracking system. Please ensure that you yourself have sent a copy of the additional information to any relevant developers or mailing lists. If you wish to continue to submit further information on your problem, please send it to 68603-quiet@bugs.debian.org, as before. Please do not reply to the address at the top of this message, unless you wish to report a problem with the Bug-tracking system. Debian bug tracking system administrator (administrator, Debian Bugs database)   Received: (at 68603-quiet) by bugs.debian.org; 22 Dec 2005 23:49:01 +0000 From Samuel@Lightspeed.cx Thu Dec 22 15:49:01 2005 Return-path: Received: from matrix.lightspeed.cx ([69.17.4.166] ident=postfix) by spohr.debian.org with esmtp (Exim 4.50) id 1EpaBB-0007AX-BZ for 68603-quiet@bugs.debian.org; Thu, 22 Dec 2005 15:49:01 -0800 Received: from [192.168.1.2] (208-244.119-70.tampabay.res.rr.com [70.119.244.208]) by matrix.lightspeed.cx (Postfix) with ESMTP id 13923297E; Thu, 22 Dec 2005 18:28:32 -0500 (EST) Message-ID: <43AB3F5B.3070709@Lightspeed.cx> Date: Thu, 22 Dec 2005 19:05:47 -0500 From: Samuel User-Agent: Mozilla Thunderbird 1.0.2 (Windows/20050317) X-Accept-Language: en-us, en MIME-Version: 1.0 To: Thomas Hood , 68603-quiet@bugs.debian.org Subject: Re: Bug#68603: Does schroot do what you want? References: <43A94A1A.4050906@yahoo.co.uk> In-Reply-To: <43A94A1A.4050906@yahoo.co.uk> Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit X-Spam-Checker-Version: SpamAssassin 2.60-bugs.debian.org_2005_01_02 (1.212-2003-09-23-exp) on spohr.debian.org X-Spam-Level: X-Spam-Status: No, hits=-6.0 required=4.0 tests=BAYES_00,HAS_BUG_NUMBER autolearn=no version=2.60-bugs.debian.org_2005_01_02 Doing a quick read thru schroot, it would appear to do what I was trying to do years ago. I no longer require such a setup now. At the time I was simply trying to emulate jail so I could get chroot to run a program as a different user. It would appear schroot would allow this (based on it's description. I did not install and read thru the whole man page). Samuel Thomas Hood wrote: >Does schroot do what you want? > > http://packages.debian.org/schroot > > >   Merged 68603 132477. Request was from Thomas Hood <jdthood@yahoo.co.uk> to control@bugs.debian.org.   Received: (at control) by bugs.debian.org; 23 Dec 2005 22:50:41 +0000 From jdthood@yahoo.co.uk Fri Dec 23 14:50:40 2005 Return-path: Received: from smtp-out1.tiscali.nl ([195.241.79.176]) by spohr.debian.org with esmtp (Exim 4.50) id 1EpvkG-0002CW-8O for control@bugs.debian.org; Fri, 23 Dec 2005 14:50:40 -0800 Received: from [82.171.132.56] (helo=82-171-132-56.dsl.ip.tiscali.nl) by smtp-out1.tiscali.nl with esmtp (Tiscali http://www.tiscali.nl) id 1EpvkF-00048z-T9 for ; Fri, 23 Dec 2005 23:50:39 +0100 Received: from [127.0.0.1] (localhost [127.0.0.1]) by 82-171-132-56.dsl.ip.tiscali.nl (Postfix) with ESMTP id 96409BFA67 for ; Fri, 23 Dec 2005 23:50:32 +0100 (CET) Message-ID: <43AC7F38.9040704@yahoo.co.uk> Date: Fri, 23 Dec 2005 23:50:32 +0100 From: Thomas Hood User-Agent: Mozilla Thunderbird 1.0.7 (X11/20051013) X-Accept-Language: en-us, en MIME-Version: 1.0 To: control@bugs.debian.org Subject: housekeeping X-Enigmail-Version: 0.92.1.0 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: 7bit Delivered-To: control@bugs.debian.org X-Spam-Checker-Version: SpamAssassin 2.60-bugs.debian.org_2005_01_02 (1.212-2003-09-23-exp) on spohr.debian.org X-Spam-Level: X-Spam-Status: No, hits=-4.0 required=4.0 tests=BAYES_00,ONEWORD, VALID_BTS_CONTROL autolearn=no version=2.60-bugs.debian.org_2005_01_02 tags 68921 wontfix tags 61011 wontfix merge 224673 55218 tags 69432 wontfix severity 270139 normal merge 270139 317503 merge 162921 97260 merge 173065 146208 tags 132477 patch merge 68603 132477 tags 283638 wontfix tags 263386 wontfix retitle 255678 coreutils: du: Please implement sorted (by size) output option tags 251952 wontfix tags 341912 confirmed upstream tags 261552 wontfix tags 214975 wontfix stop 68921: Users shouldn't ask coreutils maintainers to put work into recognizing options after signed integer operands 61011: date(1) is certainly not the place to discuss architecture dependent issues such as clock implementations. 69432: Maintainer has said he won't fix 283638: Utterly trivial 263386: seq is not likely to be moved to /bin 251952: Very trivial 261552: There is an option that prevents line breaking 214975: No reason put effort into improving devfs support   Tags added: wontfix Request was from Thomas Hood <jdthood@yahoo.co.uk> to control@bugs.debian.org.   Received: (at control) by bugs.debian.org; 1 Jan 2006 01:05:09 +0000 From jdthood@yahoo.co.uk Sat Dec 31 17:05:09 2005 Return-path: Received: from smtp-out3.tiscali.nl ([195.241.79.178]) by spohr.debian.org with esmtp (Exim 4.50) id 1Esrem-0003Ew-St for control@bugs.debian.org; Sat, 31 Dec 2005 17:05:09 -0800 Received: from [82.171.132.56] (helo=82-171-132-56.dsl.ip.tiscali.nl) by smtp-out3.tiscali.nl with esmtp (Tiscali http://www.tiscali.nl) id 1Esrem-0008Ce-4m for ; Sun, 01 Jan 2006 02:05:08 +0100 Received: from [127.0.0.1] (localhost [127.0.0.1]) by 82-171-132-56.dsl.ip.tiscali.nl (Postfix) with ESMTP id 42B20BFEFE for ; Sun, 1 Jan 2006 03:05:10 +0100 (CET) Message-ID: <43B738D5.3080803@yahoo.co.uk> Date: Sun, 01 Jan 2006 03:05:09 +0100 From: Thomas Hood User-Agent: Mozilla Thunderbird 1.0.7 (X11/20051013) X-Accept-Language: en-us, en MIME-Version: 1.0 To: control@bugs.debian.org Subject: tags, etc. X-Enigmail-Version: 0.92.1.0 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: 7bit Delivered-To: control@bugs.debian.org X-Spam-Checker-Version: SpamAssassin 2.60-bugs.debian.org_2005_01_02 (1.212-2003-09-23-exp) on spohr.debian.org X-Spam-Level: X-Spam-Status: No, hits=-5.0 required=4.0 tests=BAYES_00,VALID_BTS_CONTROL autolearn=no version=2.60-bugs.debian.org_2005_01_02 tags 68603 wontfix tags 185152 wontfix tags 17025 wontfix retitle 120650 coreutils: chmod: Please add R, W, S and T options retitle 210475 coreutils: stty: Please add option to force stty to act immediately, not to wait for output to be empty retitle 21750 coreutils: install: Please add option to compress files tags 21750 wontfix tags 48038 upstream retitle 55218 coreutils: ls: Please add option to sort by type (i.e., all directories before all files) tags 56844 wontfix tags 89335 wontfix stop   Reply sent to Michael Stone <mstone@debian.org>:
You have taken responsibility.   -t  MIME-Version: 1.0 X-Mailer: MIME-tools 5.420 (Entity 5.420) X-Loop: owner@bugs.debian.org From: owner@bugs.debian.org (Debian Bug Tracking System) To: Michael Stone Subject: Bug#68603: marked as done (coreutils: chroot: Please add option for changing uid/gid) Message-ID: References: <20080126205522.GK18881@mathom.us> <398C0F8B.D10F546A@Lightspeed.cx> X-Debian-PR-Message: closed 68603 X-Debian-PR-Package: shellutils X-Debian-PR-Keywords: wontfix patch X-Debian-PR-Source: coreutils Content-Type: multipart/mixed; boundary="----------=_1201381233-10047-0" This is a multi-part message in MIME format... ------------=_1201381233-10047-0 Content-Disposition: inline Content-Transfer-Encoding: quoted-printable Content-Type: text/plain; charset=utf-8 Your message dated Sat, 26 Jan 2008 15:55:23 -0500 with message-id <20080126205522.GK18881@mathom.us> and subject line Please add option for changing uid/gid has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what I am talking about this indicates a serious mail system misconfiguration somewhere. Please contact me immediately.) Debian bug tracking system administrator (administrator, Debian Bugs database) ------------=_1201381233-10047-0 Content-Type: message/rfc822 Content-Disposition: inline Content-Transfer-Encoding: 7bit Received: (at submit) by bugs.debian.org; 5 Aug 2000 12:59:30 +0000 Return-path: Received: from dsl081-025-193-sea1.dsl-isp.net (linux.lightspeed.cx) [64.81.25.193] (root) by master.debian.org with esmtp (Exim 3.12 2 (Debian)) id 13L3Y1-0006u5-00; Sat, 05 Aug 2000 07:59:30 -0500 Received: from Lightspeed.cx (samuel.lightspeed.cx [192.168.1.2]) by linux.lightspeed.cx (8.9.3/8.9.3/Debian 8.9.3-21) with ESMTP id EAA21461 for ; Sat, 5 Aug 2000 04:07:10 -0400 X-Authentication-Warning: linux.lightspeed.cx: Host samuel.lightspeed.cx [192.168.1.2] claimed to be Lightspeed.cx Message-ID: <398C0F8B.D10F546A@Lightspeed.cx> Date: Sat, 05 Aug 2000 08:58:51 -0400 From: Lightning X-Mailer: Mozilla 4.73 [en] (Win98; I) X-Accept-Language: en MIME-Version: 1.0 To: submit@bugs.debian.org Subject: chroot does not allow changing uid/gid Content-Type: multipart/mixed; boundary="------------CD50D95C5112D95351EDCFDD" Delivered-To: submit@bugs.debian.org This is a multi-part message in MIME format. --------------CD50D95C5112D95351EDCFDD Content-Type: text/plain; charset=us-ascii Content-Transfer-Encoding: 7bit Package: shellutils Version: 2.0-7 Severtiy: wishlist Currently chroot does not allow for the changing of the UID and GID that an application runs under but runs the application as root and lets the application change this. I created a patch that would allow for passing the UID and/or GID on the command line to setresuid/setresgid and setgroups to. --------------CD50D95C5112D95351EDCFDD Content-Type: application/x-gzip; name="chroot.diff.gz" Content-Transfer-Encoding: base64 Content-Disposition: inline; filename="chroot.diff.gz" H4sICJzJizkCA2Nocm9vdC5kaWZmAK1WbW/bNhD+PP+Kq4ptViTZlvPWwE0QLw3SYnZcOAn6 oQ08RaJlAjIpkJSdYOh/35GibNlJ3WWYPujlePfc3XN3IoMgADkjWVYomsmg2+q0uKBpW4q4 Hc8E56oVNzzPWysRo7WpcH4OQXjkhyfg4aN7DOfnDcDrE4tbPhyewC2Z5xmBz1kUEwjgpqCK wP5+x4c/uFSc+TDsQ6cbhmEQ7neOfbi76bcA9toNaEB7D74IqhRh8PAEY55FLIFhfCUiNSuV PFQZ8oROKUm0zk00L0gGNyR6Mssa5S1lcVYkBN7HnE1p2pqd1YVSJZRvy55kWz3lRGq5V9cV lKXPhElGHwxCDcNBDEXmrZlTF2acpQHPFeVMbi0RIbgwsjp4wSjib3nMl9uSVORGYji7nRHg 0ymNaZQBi+b6C9SMSsgFT0U0hyZppVgfxuGv9HeUkil9dC3tbxP8Yliy8ehq3B9OrvvDS3DK iuvggkqhf3f7cTS+AWezMA7GtVvDr5fJsYXWQZtYNwJdRhJEwWBJtdmUCzA0wZxIGaVYHxNy PIsE7FmbiUbpmc48eOcfgXd45L+r+hKvHEuoptCcNJ1vDRgj+MVoOOxffzBOQKcJCRUkVlw8 gSQNChSH68sv49HotvWNoY2+eQBBDQqp4EUO1YVhsFQnQOzCV4t8r3OQULCECGNZQCGJgJcs zcKLhlY3CHAgK6cJlXmGvW5IM3LNM3mkykRaWSyIkNhy+oMXKi8UVBLKkNR5pBty01TfNIdH oebwOPTDA0MikteAeUQZNPEVIpHGvi3AHn4s3Ab8rXOsFnnBVK8S5Fh9FJ52VhLySOK1BOer iLWalMsE9uKZZqO+YgnHFfNmlg0KmkyU5hBfLE5aiVIrapjCr/sDTnVwi6+d+55ewipnPI7w R9UcXEz6g4EPjuOapQfKEkUeVcLLpD/3L/7sX136MBhd9AeXHz6N3bLZjg/87iF4J13/+KTW boXuU2iGJRrAdz1CmDt2YDlT0DSRhPeuqxfAdngz9PUb4z5gp8YRY6hq+2SrR7E/f5WO60MF ZDjAujarApyGvVUx4L15XQs8z9X6pmplYEh2PM/LuCqtex/ACQ0Kx4XTU+i4pbK1gRpWrxKV xUOiU6LyJZK+heeuNEsujPabU7i+GwzcamnlwNYX4UrN4CxfTlCwAvlevZBMkh3mkeL0h5FY EPvQSLv4cIL0NXSUvWv4SMXP+SjVdxKSWkKManCWikn6KkbS/8yIHeQXk1+tbc7/BsiWif0L /MAEb+Z3sT0y1pEeHO9/GJwVXE9vSZU/1Iam03bQCfzUiVZG0E03aNpbD71OUNPWddc56Tq8 qZiszyFRgkhcLXV8qD+qrHdFpHcvVDUR1FFNw0ht8tvrsLRdhbZRlmJnDQqFSaEoY18//q3b okwBYOW2crxqHOPadrjtbzxUXHOI+XyOGxsebvRWH+kdTxERxYouSHm2teee1U6MO5mRl6NK 2ALrf/PxcjBwqn+4Ta1UqgYUfqmsnDZuGm05c3q1/8ECvLK7IeiuYOwehDbGdlMearkTUGe9 c9jheZanPjxNeZbxJR5PtXUxJ0xJrP2iPFWsWcBUg82gus/CtKzWdqzSzSXKC2VPOAjNNnH/ ASGqoExTDAAA --------------CD50D95C5112D95351EDCFDD-- ------------=_1201381233-10047-0 Content-Type: message/rfc822 Content-Disposition: inline Content-Transfer-Encoding: 7bit Received: (at 68603-done) by bugs.debian.org; 26 Jan 2008 20:55:48 +0000 X-Spam-Checker-Version: SpamAssassin 3.1.4-bugs.debian.org_2005_01_02 (2006-07-26) on rietz.debian.org X-Spam-Level: X-Spam-Status: No, score=-4.4 required=4.0 tests=BAYES_00,FORGED_RCVD_HELO, FROMDEVELOPER,RCVD_IN_NIX1 autolearn=no version=3.1.4-bugs.debian.org_2005_01_02 Return-path: Received: from vms173003pub.verizon.net ([206.46.173.3]) by rietz.debian.org with esmtp (Exim 4.63) (envelope-from ) id 1JIs3i-0001Rn-GC for 68603-done@bugs.debian.org; Sat, 26 Jan 2008 20:55:46 +0000 Received: from osgiliath.mathom.us ([72.83.111.77]) by vms173003.mailsrvcs.net (Sun Java System Messaging Server 6.2-6.01 (built Apr 3 2006)) with ESMTPA id <0JV900ETERBONHD4@vms173003.mailsrvcs.net> for 68603-done@bugs.debian.org; Sat, 26 Jan 2008 14:52:37 -0600 (CST) Received: from localhost (localhost [127.0.0.1]) by osgiliath.mathom.us (Postfix) with ESMTP id 4DD2B1F812 for <68603-done@bugs.debian.org>; Sat, 26 Jan 2008 15:55:25 -0500 (EST) Received: from osgiliath.mathom.us ([127.0.0.1]) by localhost (osgiliath.home.mathom.us [127.0.0.1]) (amavisd-new, port 10024) with LMTP id rKtVrK8uNEhq for <68603-done@bugs.debian.org>; Sat, 26 Jan 2008 15:55:24 -0500 (EST) Received: by osgiliath.mathom.us (Postfix, from userid 1000) id F28941F80E; Sat, 26 Jan 2008 15:55:23 -0500 (EST) Date: Sat, 26 Jan 2008 15:55:23 -0500 From: Michael Stone Subject: Re: Please add option for changing uid/gid To: 68603-done@bugs.debian.org Message-id: <20080126205522.GK18881@mathom.us> MIME-version: 1.0 Content-type: text/plain; charset=us-ascii; format=flowed Content-disposition: inline X-Virus-Scanned: Debian amavisd-new at mathom.us X-Pgp-Fingerprint: 53 FF 38 00 E7 DD 0A 9C 84 52 84 C5 EE DF 7C 88 User-Agent: Mutt/1.5.13 (2006-08-11) It appears that the schroot program is an option for implementing the desired behavior. Mike Stone ------------=_1201381233-10047-0--   Notification sent to Lightning <Lightning@lightspeed.cx>:
Bug acknowledged by developer.   -t  MIME-Version: 1.0 X-Mailer: MIME-tools 5.420 (Entity 5.420) X-Loop: owner@bugs.debian.org From: owner@bugs.debian.org (Debian Bug Tracking System) To: Lightning Subject: Bug#68603 closed by Michael Stone (Re: Please add option for changing uid/gid) Message-ID: References: <20080126205522.GK18881@mathom.us> <398C0F8B.D10F546A@Lightspeed.cx> X-Debian-PR-Message: they-closed 68603 X-Debian-PR-Package: shellutils X-Debian-PR-Keywords: wontfix patch X-Debian-PR-Source: coreutils Reply-To: 68603@bugs.debian.org Content-Type: multipart/mixed; boundary="----------=_1201381261-10047-1" This is a multi-part message in MIME format... ------------=_1201381261-10047-1 Content-Disposition: inline Content-Transfer-Encoding: quoted-printable Content-Type: text/plain; charset="utf-8" This is an automatic notification regarding your Bug report which was filed against the shellutils package: #68603: coreutils: chroot: Please add option for changing uid/gid It has been closed by Michael Stone . Their explanation is attached below. If this explanation is unsatisfactory and you have not received a better one in a separate message then please contact Michael Stone by replying to this email. Debian bug tracking system administrator (administrator, Debian Bugs database) ------------=_1201381261-10047-1 Content-Type: message/rfc822 Content-Disposition: inline Content-Transfer-Encoding: 7bit Received: (at 68603-done) by bugs.debian.org; 26 Jan 2008 20:55:48 +0000 X-Spam-Checker-Version: SpamAssassin 3.1.4-bugs.debian.org_2005_01_02 (2006-07-26) on rietz.debian.org X-Spam-Level: X-Spam-Status: No, score=-4.4 required=4.0 tests=BAYES_00,FORGED_RCVD_HELO, FROMDEVELOPER,RCVD_IN_NIX1 autolearn=no version=3.1.4-bugs.debian.org_2005_01_02 Return-path: Received: from vms173003pub.verizon.net ([206.46.173.3]) by rietz.debian.org with esmtp (Exim 4.63) (envelope-from ) id 1JIs3i-0001Rn-GC for 68603-done@bugs.debian.org; Sat, 26 Jan 2008 20:55:46 +0000 Received: from osgiliath.mathom.us ([72.83.111.77]) by vms173003.mailsrvcs.net (Sun Java System Messaging Server 6.2-6.01 (built Apr 3 2006)) with ESMTPA id <0JV900ETERBONHD4@vms173003.mailsrvcs.net> for 68603-done@bugs.debian.org; Sat, 26 Jan 2008 14:52:37 -0600 (CST) Received: from localhost (localhost [127.0.0.1]) by osgiliath.mathom.us (Postfix) with ESMTP id 4DD2B1F812 for <68603-done@bugs.debian.org>; Sat, 26 Jan 2008 15:55:25 -0500 (EST) Received: from osgiliath.mathom.us ([127.0.0.1]) by localhost (osgiliath.home.mathom.us [127.0.0.1]) (amavisd-new, port 10024) with LMTP id rKtVrK8uNEhq for <68603-done@bugs.debian.org>; Sat, 26 Jan 2008 15:55:24 -0500 (EST) Received: by osgiliath.mathom.us (Postfix, from userid 1000) id F28941F80E; Sat, 26 Jan 2008 15:55:23 -0500 (EST) Date: Sat, 26 Jan 2008 15:55:23 -0500 From: Michael Stone Subject: Re: Please add option for changing uid/gid To: 68603-done@bugs.debian.org Message-id: <20080126205522.GK18881@mathom.us> MIME-version: 1.0 Content-type: text/plain; charset=us-ascii; format=flowed Content-disposition: inline X-Virus-Scanned: Debian amavisd-new at mathom.us X-Pgp-Fingerprint: 53 FF 38 00 E7 DD 0A 9C 84 52 84 C5 EE DF 7C 88 User-Agent: Mutt/1.5.13 (2006-08-11) It appears that the schroot program is an option for implementing the desired behavior. Mike Stone ------------=_1201381261-10047-1--   Received: (at 68603-done) by bugs.debian.org; 26 Jan 2008 20:55:48 +0000 From mstone@mathom.us Sat Jan 26 20:55:48 2008 X-Spam-Checker-Version: SpamAssassin 3.1.4-bugs.debian.org_2005_01_02 (2006-07-26) on rietz.debian.org X-Spam-Level: X-Spam-Status: No, score=-4.4 required=4.0 tests=BAYES_00,FORGED_RCVD_HELO, FROMDEVELOPER,RCVD_IN_NIX1 autolearn=no version=3.1.4-bugs.debian.org_2005_01_02 Return-path: Received: from vms173003pub.verizon.net ([206.46.173.3]) by rietz.debian.org with esmtp (Exim 4.63) (envelope-from ) id 1JIs3i-0001Rn-GC for 68603-done@bugs.debian.org; Sat, 26 Jan 2008 20:55:46 +0000 Received: from osgiliath.mathom.us ([72.83.111.77]) by vms173003.mailsrvcs.net (Sun Java System Messaging Server 6.2-6.01 (built Apr 3 2006)) with ESMTPA id <0JV900ETERBONHD4@vms173003.mailsrvcs.net> for 68603-done@bugs.debian.org; Sat, 26 Jan 2008 14:52:37 -0600 (CST) Received: from localhost (localhost [127.0.0.1]) by osgiliath.mathom.us (Postfix) with ESMTP id 4DD2B1F812 for <68603-done@bugs.debian.org>; Sat, 26 Jan 2008 15:55:25 -0500 (EST) Received: from osgiliath.mathom.us ([127.0.0.1]) by localhost (osgiliath.home.mathom.us [127.0.0.1]) (amavisd-new, port 10024) with LMTP id rKtVrK8uNEhq for <68603-done@bugs.debian.org>; Sat, 26 Jan 2008 15:55:24 -0500 (EST) Received: by osgiliath.mathom.us (Postfix, from userid 1000) id F28941F80E; Sat, 26 Jan 2008 15:55:23 -0500 (EST) Date: Sat, 26 Jan 2008 15:55:23 -0500 From: Michael Stone Subject: Re: Please add option for changing uid/gid To: 68603-done@bugs.debian.org Message-id: <20080126205522.GK18881@mathom.us> MIME-version: 1.0 Content-type: text/plain; charset=us-ascii; format=flowed Content-disposition: inline X-Virus-Scanned: Debian amavisd-new at mathom.us X-Pgp-Fingerprint: 53 FF 38 00 E7 DD 0A 9C 84 52 84 C5 EE DF 7C 88 User-Agent: Mutt/1.5.13 (2006-08-11) It appears that the schroot program is an option for implementing the desired behavior. Mike Stone   Reply sent to Michael Stone <mstone@debian.org>:
You have taken responsibility.   -t  MIME-Version: 1.0 X-Mailer: MIME-tools 5.420 (Entity 5.420) X-Loop: owner@bugs.debian.org From: owner@bugs.debian.org (Debian Bug Tracking System) To: Michael Stone Subject: Bug#132477: marked as done (shellutils: chroot should have userid option) Message-ID: References: <20080126205522.GK18881@mathom.us> <20020205171324.5091A580012@fabulous.u--3.com> X-Debian-PR-Message: closed 132477 X-Debian-PR-Package: shellutils X-Debian-PR-Keywords: wontfix patch X-Debian-PR-Source: coreutils Content-Type: multipart/mixed; boundary="----------=_1201381310-10047-2" This is a multi-part message in MIME format... ------------=_1201381310-10047-2 Content-Disposition: inline Content-Transfer-Encoding: quoted-printable Content-Type: text/plain; charset=utf-8 Your message dated Sat, 26 Jan 2008 15:55:23 -0500 with message-id <20080126205522.GK18881@mathom.us> and subject line Please add option for changing uid/gid has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what I am talking about this indicates a serious mail system misconfiguration somewhere. Please contact me immediately.) Debian bug tracking system administrator (administrator, Debian Bugs database) ------------=_1201381310-10047-2 Content-Type: message/rfc822 Content-Disposition: inline Content-Transfer-Encoding: 7bit Received: (at maintonly) by bugs.debian.org; 5 Feb 2002 17:13:25 +0000 Return-path: Received: from fabulous.u--3.com [212.50.142.250] by master.debian.org with esmtp (Exim 3.12 1 (Debian)) id 16Y99p-0005GU-00; Tue, 05 Feb 2002 11:13:25 -0600 Received: by fabulous.u--3.com (Postfix, from userid 1000) id 5091A580012; Tue, 5 Feb 2002 19:13:24 +0200 (EET) From: Erno Kuusela To: Debian Bug Tracking System Subject: shellutils: chroot should have userid option X-Reportbug-Version: 1.41.14213 X-Mailer: reportbug 1.41.14213 Date: Tue, 05 Feb 2002 19:13:24 +0200 Message-Id: <20020205171324.5091A580012@fabulous.u--3.com> Delivered-To: maintonly@bugs.debian.org Package: shellutils Version: 2.0.11-11 Severity: wishlist hello, it would be useful if the chroot program could do a setuid() after doing the chroot(). that would simplify setup of chroot jails in many cases. eg, if i wanted to run irc in a chroot jail, i could do cp /usr/bin/irc ~fred/irc/bin/ircII # assume it's statically linked chroot -u fred ~fred/irc /bin/ircII -- System Information Debian Release: 3.0 Architecture: i386 Kernel: Linux fabulous 2.4.9-ac5 #3 Wed Sep 5 05:01:06 EEST 2001 i686 Locale: LANG=C, LC_CTYPE=fi_FI Versions of packages shellutils depends on: ii libc6 2.2.4-7 GNU C Library: Shared libraries an ii login 20000902-8 System login tools ------------=_1201381310-10047-2 Content-Type: message/rfc822 Content-Disposition: inline Content-Transfer-Encoding: 7bit Received: (at 68603-done) by bugs.debian.org; 26 Jan 2008 20:55:48 +0000 X-Spam-Checker-Version: SpamAssassin 3.1.4-bugs.debian.org_2005_01_02 (2006-07-26) on rietz.debian.org X-Spam-Level: X-Spam-Status: No, score=-4.4 required=4.0 tests=BAYES_00,FORGED_RCVD_HELO, FROMDEVELOPER,RCVD_IN_NIX1 autolearn=no version=3.1.4-bugs.debian.org_2005_01_02 Return-path: Received: from vms173003pub.verizon.net ([206.46.173.3]) by rietz.debian.org with esmtp (Exim 4.63) (envelope-from ) id 1JIs3i-0001Rn-GC for 68603-done@bugs.debian.org; Sat, 26 Jan 2008 20:55:46 +0000 Received: from osgiliath.mathom.us ([72.83.111.77]) by vms173003.mailsrvcs.net (Sun Java System Messaging Server 6.2-6.01 (built Apr 3 2006)) with ESMTPA id <0JV900ETERBONHD4@vms173003.mailsrvcs.net> for 68603-done@bugs.debian.org; Sat, 26 Jan 2008 14:52:37 -0600 (CST) Received: from localhost (localhost [127.0.0.1]) by osgiliath.mathom.us (Postfix) with ESMTP id 4DD2B1F812 for <68603-done@bugs.debian.org>; Sat, 26 Jan 2008 15:55:25 -0500 (EST) Received: from osgiliath.mathom.us ([127.0.0.1]) by localhost (osgiliath.home.mathom.us [127.0.0.1]) (amavisd-new, port 10024) with LMTP id rKtVrK8uNEhq for <68603-done@bugs.debian.org>; Sat, 26 Jan 2008 15:55:24 -0500 (EST) Received: by osgiliath.mathom.us (Postfix, from userid 1000) id F28941F80E; Sat, 26 Jan 2008 15:55:23 -0500 (EST) Date: Sat, 26 Jan 2008 15:55:23 -0500 From: Michael Stone Subject: Re: Please add option for changing uid/gid To: 68603-done@bugs.debian.org Message-id: <20080126205522.GK18881@mathom.us> MIME-version: 1.0 Content-type: text/plain; charset=us-ascii; format=flowed Content-disposition: inline X-Virus-Scanned: Debian amavisd-new at mathom.us X-Pgp-Fingerprint: 53 FF 38 00 E7 DD 0A 9C 84 52 84 C5 EE DF 7C 88 User-Agent: Mutt/1.5.13 (2006-08-11) It appears that the schroot program is an option for implementing the desired behavior. Mike Stone ------------=_1201381310-10047-2--   Notification sent to Erno Kuusela <erno@iki.fi>:
Bug acknowledged by developer.   -t  MIME-Version: 1.0 X-Mailer: MIME-tools 5.420 (Entity 5.420) X-Loop: owner@bugs.debian.org From: owner@bugs.debian.org (Debian Bug Tracking System) To: Erno Kuusela Subject: Bug#132477 closed by Michael Stone (Re: Please add option for changing uid/gid) Message-ID: References: <20080126205522.GK18881@mathom.us> <20020205171324.5091A580012@fabulous.u--3.com> X-Debian-PR-Message: they-closed 132477 X-Debian-PR-Package: shellutils X-Debian-PR-Keywords: wontfix patch X-Debian-PR-Source: coreutils Reply-To: 132477@bugs.debian.org Content-Type: multipart/mixed; boundary="----------=_1201381405-10047-3" This is a multi-part message in MIME format... ------------=_1201381405-10047-3 Content-Disposition: inline Content-Transfer-Encoding: quoted-printable Content-Type: text/plain; charset="utf-8" This is an automatic notification regarding your Bug report which was filed against the shellutils package: #132477: shellutils: chroot should have userid option It has been closed by Michael Stone . Their explanation is attached below. If this explanation is unsatisfactory and you have not received a better one in a separate message then please contact Michael Stone by replying to this email. Debian bug tracking system administrator (administrator, Debian Bugs database) ------------=_1201381405-10047-3 Content-Type: message/rfc822 Content-Disposition: inline Content-Transfer-Encoding: 7bit Received: (at 68603-done) by bugs.debian.org; 26 Jan 2008 20:55:48 +0000 X-Spam-Checker-Version: SpamAssassin 3.1.4-bugs.debian.org_2005_01_02 (2006-07-26) on rietz.debian.org X-Spam-Level: X-Spam-Status: No, score=-4.4 required=4.0 tests=BAYES_00,FORGED_RCVD_HELO, FROMDEVELOPER,RCVD_IN_NIX1 autolearn=no version=3.1.4-bugs.debian.org_2005_01_02 Return-path: Received: from vms173003pub.verizon.net ([206.46.173.3]) by rietz.debian.org with esmtp (Exim 4.63) (envelope-from ) id 1JIs3i-0001Rn-GC for 68603-done@bugs.debian.org; Sat, 26 Jan 2008 20:55:46 +0000 Received: from osgiliath.mathom.us ([72.83.111.77]) by vms173003.mailsrvcs.net (Sun Java System Messaging Server 6.2-6.01 (built Apr 3 2006)) with ESMTPA id <0JV900ETERBONHD4@vms173003.mailsrvcs.net> for 68603-done@bugs.debian.org; Sat, 26 Jan 2008 14:52:37 -0600 (CST) Received: from localhost (localhost [127.0.0.1]) by osgiliath.mathom.us (Postfix) with ESMTP id 4DD2B1F812 for <68603-done@bugs.debian.org>; Sat, 26 Jan 2008 15:55:25 -0500 (EST) Received: from osgiliath.mathom.us ([127.0.0.1]) by localhost (osgiliath.home.mathom.us [127.0.0.1]) (amavisd-new, port 10024) with LMTP id rKtVrK8uNEhq for <68603-done@bugs.debian.org>; Sat, 26 Jan 2008 15:55:24 -0500 (EST) Received: by osgiliath.mathom.us (Postfix, from userid 1000) id F28941F80E; Sat, 26 Jan 2008 15:55:23 -0500 (EST) Date: Sat, 26 Jan 2008 15:55:23 -0500 From: Michael Stone Subject: Re: Please add option for changing uid/gid To: 68603-done@bugs.debian.org Message-id: <20080126205522.GK18881@mathom.us> MIME-version: 1.0 Content-type: text/plain; charset=us-ascii; format=flowed Content-disposition: inline X-Virus-Scanned: Debian amavisd-new at mathom.us X-Pgp-Fingerprint: 53 FF 38 00 E7 DD 0A 9C 84 52 84 C5 EE DF 7C 88 User-Agent: Mutt/1.5.13 (2006-08-11) It appears that the schroot program is an option for implementing the desired behavior. Mike Stone ------------=_1201381405-10047-3--   Received: (at 68603-done) by bugs.debian.org; 26 Jan 2008 20:55:48 +0000 From mstone@mathom.us Sat Jan 26 20:55:48 2008 X-Spam-Checker-Version: SpamAssassin 3.1.4-bugs.debian.org_2005_01_02 (2006-07-26) on rietz.debian.org X-Spam-Level: X-Spam-Status: No, score=-4.4 required=4.0 tests=BAYES_00,FORGED_RCVD_HELO, FROMDEVELOPER,RCVD_IN_NIX1 autolearn=no version=3.1.4-bugs.debian.org_2005_01_02 Return-path: Received: from vms173003pub.verizon.net ([206.46.173.3]) by rietz.debian.org with esmtp (Exim 4.63) (envelope-from ) id 1JIs3i-0001Rn-GC for 68603-done@bugs.debian.org; Sat, 26 Jan 2008 20:55:46 +0000 Received: from osgiliath.mathom.us ([72.83.111.77]) by vms173003.mailsrvcs.net (Sun Java System Messaging Server 6.2-6.01 (built Apr 3 2006)) with ESMTPA id <0JV900ETERBONHD4@vms173003.mailsrvcs.net> for 68603-done@bugs.debian.org; Sat, 26 Jan 2008 14:52:37 -0600 (CST) Received: from localhost (localhost [127.0.0.1]) by osgiliath.mathom.us (Postfix) with ESMTP id 4DD2B1F812 for <68603-done@bugs.debian.org>; Sat, 26 Jan 2008 15:55:25 -0500 (EST) Received: from osgiliath.mathom.us ([127.0.0.1]) by localhost (osgiliath.home.mathom.us [127.0.0.1]) (amavisd-new, port 10024) with LMTP id rKtVrK8uNEhq for <68603-done@bugs.debian.org>; Sat, 26 Jan 2008 15:55:24 -0500 (EST) Received: by osgiliath.mathom.us (Postfix, from userid 1000) id F28941F80E; Sat, 26 Jan 2008 15:55:23 -0500 (EST) Date: Sat, 26 Jan 2008 15:55:23 -0500 From: Michael Stone Subject: Re: Please add option for changing uid/gid To: 68603-done@bugs.debian.org Message-id: <20080126205522.GK18881@mathom.us> MIME-version: 1.0 Content-type: text/plain; charset=us-ascii; format=flowed Content-disposition: inline X-Virus-Scanned: Debian amavisd-new at mathom.us X-Pgp-Fingerprint: 53 FF 38 00 E7 DD 0A 9C 84 52 84 C5 EE DF 7C 88 User-Agent: Mutt/1.5.13 (2006-08-11) It appears that the schroot program is an option for implementing the desired behavior. Mike Stone   Information forwarded to debian-bugs-dist@lists.debian.org, Michael Stone <mstone@debian.org>:
Bug#68603; Package shellutils.   debian-bugs-dist@lists.debian.orgMichael Stone  X-Loop: owner@bugs.debian.org Subject: Bug#68603: coreutils: chroot does not allow changing uid/gid Reply-To: bob@proulx.com (Bob Proulx), 68603@bugs.debian.org Resent-From: bob@proulx.com (Bob Proulx) Resent-To: debian-bugs-dist@lists.debian.org Resent-CC: Michael Stone Resent-Date: Tue, 29 Jan 2008 06:21:03 +0000 Resent-Message-ID: Resent-Sender: owner@bugs.debian.org X-Debian-PR-Message: report 68603 X-Debian-PR-Package: shellutils X-Debian-PR-Keywords: wontfix patch X-Debian-PR-Source: coreutils Received: via spool by 68603-submit@bugs.debian.org id=B68603.120158760320299 (code B ref 68603); Tue, 29 Jan 2008 06:21:03 +0000 Received: (at 68603) by bugs.debian.org; 29 Jan 2008 06:20:03 +0000 X-Spam-Checker-Version: SpamAssassin 3.1.4-bugs.debian.org_2005_01_02 (2006-07-26) on rietz.debian.org X-Spam-Level: X-Spam-Status: No, score=-4.0 required=4.0 tests=BAYES_00 autolearn=no version=3.1.4-bugs.debian.org_2005_01_02 Received: from joseki.proulx.com ([216.17.153.58]) by rietz.debian.org with esmtp (Exim 4.63) (envelope-from ) id 1JJjpD-0005Go-Le for 68603@bugs.debian.org; Tue, 29 Jan 2008 06:20:03 +0000 Received: from dementia.proulx.com (dementia.proulx.com [192.168.1.115]) by joseki.proulx.com (Postfix) with ESMTP id 51E1CFA5B; Mon, 28 Jan 2008 23:20:03 -0700 (MST) Received: by dementia.proulx.com (Postfix, from userid 1000) id 45FC63CC6A0; Mon, 28 Jan 2008 23:20:03 -0700 (MST) Date: Mon, 28 Jan 2008 23:20:03 -0700 To: Samuel , 68603@bugs.debian.org Cc: Thomas Hood Message-ID: <20080129062003.GA373@dementia.proulx.com> References: <43A2D2E4.9010304@yahoo.co.uk> <43A347CA.8090207@Lightspeed.cx> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <43A347CA.8090207@Lightspeed.cx> User-Agent: Mutt/1.5.13 (2006-08-11) From: bob@proulx.com (Bob Proulx) Samuel wrote: > I had completely forgotten about this submission being it is 5 years > old. The issue I had at the time was the desire to chroot various > programs. Some of the programs I was chroot'ing did not allow for > changing the user once chroot executed the program yet I was executing > chroot from a root user. The whole user that was running chroot'd was > setup in the jail type system for all paths. > > The idea was for chroot to shed being a root level program so that the > program it ran would be of a normal user and even further limit > potential attacks if there was a security issue with the chroot'd > program. Alot of security has improved since then and it may not be > needed but it was a way to limit a root program from being exploited and > then for the potential of the program to leave the chroot. In the end, > the change allowed for the same functionality you have as jail under > freebsd. I realize this is very old but for the archive I wanted to mention that 'su' may also be used to good effect with chroot. # chroot /srv/chroot/newroot su newuser -c "command args here" Also the dchroot and schroot programs are good alternatives too. Bob   Acknowledgement sent to bob@proulx.com (Bob Proulx):
Extra info received and forwarded to list. Copy sent to Michael Stone <mstone@debian.org>.   -t  Content-Disposition: inline Content-Transfer-Encoding: quoted-printable MIME-Version: 1.0 X-Mailer: MIME-tools 5.420 (Entity 5.420) Content-Type: text/plain; charset=utf-8 X-Loop: owner@bugs.debian.org From: owner@bugs.debian.org (Debian Bug Tracking System) To: bob@proulx.com (Bob Proulx) Subject: Bug#68603: Info received (coreutils: chroot does not allow changing uid/gid) Message-ID: References: <20080129062003.GA373@dementia.proulx.com> <398C0F8B.D10F546A@Lightspeed.cx> X-Debian-PR-Message: ack-info 68603 X-Debian-PR-Package: shellutils X-Debian-PR-Keywords: wontfix patch X-Debian-PR-Source: coreutils Reply-To: 68603@bugs.debian.org Thank you for the additional information you have supplied regarding this problem report. It has been forwarded to the package maintainer(s) and to other interested parties to accompany the original report. Your message has been sent to the package maintainer(s): Michael Stone If you wish to continue to submit further information on this problem, please send it to 68603@bugs.debian.org, as before. Please do not reply to the address at the top of this message, unless you wish to report a problem with the Bug-tracking system. Debian bug tracking system administrator (administrator, Debian Bugs database)   Received: (at 68603) by bugs.debian.org; 29 Jan 2008 06:20:03 +0000 From bob@proulx.com Tue Jan 29 06:20:03 2008 X-Spam-Checker-Version: SpamAssassin 3.1.4-bugs.debian.org_2005_01_02 (2006-07-26) on rietz.debian.org X-Spam-Level: X-Spam-Status: No, score=-4.0 required=4.0 tests=BAYES_00 autolearn=no version=3.1.4-bugs.debian.org_2005_01_02 Return-path: Received: from joseki.proulx.com ([216.17.153.58]) by rietz.debian.org with esmtp (Exim 4.63) (envelope-from ) id 1JJjpD-0005Go-Le for 68603@bugs.debian.org; Tue, 29 Jan 2008 06:20:03 +0000 Received: from dementia.proulx.com (dementia.proulx.com [192.168.1.115]) by joseki.proulx.com (Postfix) with ESMTP id 51E1CFA5B; Mon, 28 Jan 2008 23:20:03 -0700 (MST) Received: by dementia.proulx.com (Postfix, from userid 1000) id 45FC63CC6A0; Mon, 28 Jan 2008 23:20:03 -0700 (MST) Date: Mon, 28 Jan 2008 23:20:03 -0700 To: Samuel , 68603@bugs.debian.org Cc: Thomas Hood Subject: Re: coreutils: chroot does not allow changing uid/gid Message-ID: <20080129062003.GA373@dementia.proulx.com> References: <43A2D2E4.9010304@yahoo.co.uk> <43A347CA.8090207@Lightspeed.cx> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <43A347CA.8090207@Lightspeed.cx> User-Agent: Mutt/1.5.13 (2006-08-11) From: bob@proulx.com (Bob Proulx) Samuel wrote: > I had completely forgotten about this submission being it is 5 years > old. The issue I had at the time was the desire to chroot various > programs. Some of the programs I was chroot'ing did not allow for > changing the user once chroot executed the program yet I was executing > chroot from a root user. The whole user that was running chroot'd was > setup in the jail type system for all paths. > > The idea was for chroot to shed being a root level program so that the > program it ran would be of a normal user and even further limit > potential attacks if there was a security issue with the chroot'd > program. Alot of security has improved since then and it may not be > needed but it was a way to limit a root program from being exploited and > then for the potential of the program to leave the chroot. In the end, > the change allowed for the same functionality you have as jail under > freebsd. I realize this is very old but for the archive I wanted to mention that 'su' may also be used to good effect with chroot. # chroot /srv/chroot/newroot su newuser -c "command args here" Also the dchroot and schroot programs are good alternatives too. Bob