I think a more common case is programmer error, you may yourself harm the
system because of a bug you introduced, I once deleted a folder one level
too high (deleted the parent folder of the folder I intended to delete)
if the user only had permissions to only what it is supposed to do I would
just see an error instead of silently losing data

On Sun, Jun 14, 2015 at 10:54 PM, Carlos A. Carnero Delgado <
[email protected]> wrote:

> > ... Should I try to use a user that is not a sudoer or does it not
> really matter?
>
> You should use the least privileged user you can. In the (unlikely or not)
> event of an exploit and the user can gain access to console, what can
> happen? Do you trust the system's configuration?
>
> I think that in a production settings you should go for privilege
> separation as far as possible. Besides, you could always host more than one
> service in the same box with different credentials quite nicely.
>
> HTH,
> Carlos.
>
> --
> You received this message because you are subscribed to the Google Groups
> "Django users" group.
> To unsubscribe from this group and stop receiving emails from it, send an
> email to [email protected].
> To post to this group, send email to [email protected].
> Visit this group at http://groups.google.com/group/django-users.
> To view this discussion on the web visit
> https://groups.google.com/d/msgid/django-users/CAPjvz2%3D6SVOB7CpePNU4M-zk9q0Qh%2B2bY%2BUjpdpFBjVZKHwy3g%40mail.gmail.com
> <https://groups.google.com/d/msgid/django-users/CAPjvz2%3D6SVOB7CpePNU4M-zk9q0Qh%2B2bY%2BUjpdpFBjVZKHwy3g%40mail.gmail.com?utm_medium=email&utm_source=footer>
> .
>
> For more options, visit https://groups.google.com/d/optout.
>

-- 
You received this message because you are subscribed to the Google Groups 
"Django users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
To post to this group, send email to [email protected].
Visit this group at http://groups.google.com/group/django-users.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/django-users/CAFWa6tL1irCV76VQLckS-B0tEH%2BMjEmDYBDN2NU8LULM-CqWXg%40mail.gmail.com.
For more options, visit https://groups.google.com/d/optout.

Reply via email to