[prev in list] [next in list] [prev in thread] [next in thread] 

List:       debian-devel
Subject:    Re: Technical committee acting in gross violation of the Debian constitution
From:       "Enrico Weigelt, metux IT consult" <enrico.weigelt () gr13 ! net>
Date:       2014-12-04 15:35:36
Message-ID: 54807F48.9060103 () gr13 ! net
[Download RAW message or body]

On 28.11.2014 19:09, Christoph Anton Mitterer wrote:

> For many things, CGI is actually the only way to run them securely,
> since it's the only way to run foreign processes in a container
> environment (chroots, etc.) or with user privilege separation.

Not entirely true. About a decade ago, I've wrote muxmpm, which ran
individual sites under their own uid/gid, chroot, etc. That made things
like cgixec, php's safe_mode etc practically obsolete.

It was even shipped by several large distros, eg. suse (the orignal
one, not novell).


cu
--
Enrico Weigelt,
metux IT consulting
+49-151-27565287


-- 
To UNSUBSCRIBE, email to debian-devel-REQUEST@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmaster@lists.debian.org
Archive: https://lists.debian.org/54807F48.9060103@gr13.net

[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic