I guess the best thing (security wise) i can think of is, to create a group
or user say cherokee and make cherokee webserver to run and this user should
have read per on all the root file system and only write on certain paths
where it has to write some thing like log, settings, etc.

This isolation will not favor the remote hacker in corrupting the filesystem
via a loop hole of cherokee.

Just my 2 cents. I may be wrong.

On Sat, Oct 17, 2009 at 3:11 AM, Arvind Rangan <
[email protected]> wrote:

> what is the recommended way to run cherokee ?  as root or as an
> unprivilidged user ?
>
>
> Arvind
>
>
>      Yahoo! India has a new look. Take a sneak peek
> http://in.yahoo.com/trynew
> _______________________________________________
> Cherokee mailing list
> [email protected]
> http://lists.octality.com/listinfo/cherokee
>



-- 
----------------------
“Live your life honestly—if you don’t, you always have
to remember to not be yourself”

"Ever tried Zen Computing?"
visit: www.zenwalk.org
_______________________________________________
Cherokee mailing list
[email protected]
http://lists.octality.com/listinfo/cherokee

Reply via email to