[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [cobalt-users] Lost web interface w/ raq4



Ray Symons wrote:

> If the file is owned by admin
> there's no problem -- if it's owned by root, change the ownership to admin
> briefly, do the edit, save and then chown it back to root again.

Bad idea imho; the file is in the normal place but with less security,
for at least a while.  NEVER a good idea.  Instead copy it to somewhere
else, change the ownership of the copy to admin, download the copy, and
delete the copy on your server.

When you're done editing, upload it to somewhere else, change the
ownership, copy it to where it belongs, and delete the upload.  A bit
more security.

If it's ever necessary to edit the /etc/shadow file be sure to make a
backup copy, then edit it as root, in place, using ssh.  If necessary to
move it off your system, always use scp2.

Jeff
-- 
Jeff Lasman <jblists@xxxxxxxxxxxxx>
Linux and Cobalt/Sun/RaQ Consulting
nobaloney.net, P. O. Box 52672, Riverside, CA  92517
voice: +1 909 778-9980  *  fax: +1 909 548-9484