[cups.development] [RFE] STR #2445: Web Interface shouldindicate serious errors

Michael Sweet mike at easysw.com
Tue Jul 17 08:25:22 PDT 2007


Florian Liekweg wrote:
> ...
> Well, it should be :-)  It would follow the principle of least privilege and
> would limit the consequences of possible malfunctions and exploits to files
> and devices owned by the 'cups' user.

Well, come up with a way for cupsd to still support Kerberos, PAM,
LPD, and proxy authentication for jobs and the web interface without
running as root and without hacks like setuid programs that are run
every time someone authenticates and we'll be happy to incorporate it
into CUPS.

-- 
______________________________________________________________________
Michael Sweet, Easy Software Products           mike at easysw dot com
Internet Printing and Publishing Software        http://www.easysw.com




More information about the cups-devel mailing list