Roger Leigh <[email protected]> (30/12/2010):
> Not sure why this is so restrictive initially.  I think it was
> probably to prevent any access to the chroot environment except via
> sudo/schroot, but the security is minimal at best and probably
> entirely pointless.  I certainly have 0755 perms on all my chroots.

And while we're at it, what about chroot configuration files?
| $ ls -l /etc/schroot/chroot.d
| total 8
| -rw------- 1 root root 216 Dec 30 19:26 experimental-amd64-sbuild
| -rw------- 1 root root 189 Dec 30 19:27 sid-amd64-sbuild

Not sure they should be rw for the sbuild group; but at least readable
by anyone shouldn't hurt..

KiBi.

Attachment: signature.asc
Description: Digital signature

Reply via email to