Thus said Warren Young on Wed, 20 Dec 2017 21:02:01 -0700:

> Linux  containers  aren't  foolproof   when  it  comes  to  permission
> isolation. Better  to not  let Fossil  have root  privs even  inside a
> container.

Fossil  does chroot  first  and  then drop  root  privileges which  then
changes to  the user that owns  the directory of fossils  (or the fossil
repository if serving only one).

Andy
-- 
TAI64 timestamp: 400000005a3b45c6


_______________________________________________
fossil-users mailing list
fossil-users@lists.fossil-scm.org
http://lists.fossil-scm.org:8080/cgi-bin/mailman/listinfo/fossil-users

Reply via email to