I guess the best thing (security wise) i can think of is, to create a group or user say cherokee and make cherokee webserver to run and this user should have read per on all the root file system and only write on certain paths where it has to write some thing like log, settings, etc.
This isolation will not favor the remote hacker in corrupting the filesystem via a loop hole of cherokee. Just my 2 cents. I may be wrong. On Sat, Oct 17, 2009 at 3:11 AM, Arvind Rangan < [email protected]> wrote: > what is the recommended way to run cherokee ? as root or as an > unprivilidged user ? > > > Arvind > > > Yahoo! India has a new look. Take a sneak peek > http://in.yahoo.com/trynew > _______________________________________________ > Cherokee mailing list > [email protected] > http://lists.octality.com/listinfo/cherokee > -- ---------------------- “Live your life honestly—if you don’t, you always have to remember to not be yourself” "Ever tried Zen Computing?" visit: www.zenwalk.org
_______________________________________________ Cherokee mailing list [email protected] http://lists.octality.com/listinfo/cherokee
