If you ran ftp as user foo, you could only ftp files that foo could see.
That works fine until bar wants to ftp stuff to his home directory (which
foo can't see).
On Fri, 1 Jan 1999, Omer Ansari wrote:
> can anyone tell me why it has to be root running all the standard
> inet services...more explicitly, the inetd.conf file has the uid of
> root for telnet, ftp and many other services.....this seems to be a
> security threat, and there are many exploits which take advantage of this.
>
> so why has it been implemented this way?
_Deirdre * #include <disclaimer.deirdre.org> * http://www.deirdre.net
"I did rather well myself this past Christmas. The nicest present I
received was a gift certificate good at any hospital for a lobotomy.
Rather thoughtful." --Tom Lehrer