Re: [gentoo-user] Re: Cdrtools installation without suid root

2013-04-30 Thread Joerg Schilling
Nikos Chantziaras rea...@gmail.com wrote: Would you call someone who shoots himself into the foot smart? Recent Linux kernels support fcaps in the filesystems and somebody evil, who knows what he does may even set up fcaps on executable files when the related support-software is

[gentoo-user] Re: Cdrtools installation without suid root

2013-04-30 Thread Nikos Chantziaras
On 30/04/13 11:50, Joerg Schilling wrote: Nikos Chantziaras rea...@gmail.com wrote: Would you call someone who shoots himself into the foot smart? Recent Linux kernels support fcaps in the filesystems and somebody evil, who knows what he does may even set up fcaps on executable files when the

Re: [gentoo-user] Re: Cdrtools installation without suid root

2013-04-30 Thread Daniel Pielmeier
Joerg Schilling schrieb am 29.04.2013 18:36: Daniel Pielmeier bil...@gentoo.org wrote: 2013/4/29 Joerg Schilling joerg.schill...@fokus.fraunhofer.de Do you like people to be able to open security holes? Adding an option to enable/disable linkage to libcap does not hurt anybody it just

Re: [gentoo-user] Re: Cdrtools installation without suid root

2013-04-29 Thread Joerg Schilling
Daniel Pielmeier bil...@gentoo.org wrote: Nikos Chantziaras schrieb am 27.04.2013 08:07: On 26/04/13 23:20, Joerg Schilling wrote: The only problem I see is that you are able to remove important software on a Linux installation while the kernel still supports the feature by default.

[gentoo-user] Re: Cdrtools installation without suid root

2013-04-29 Thread Nikos Chantziaras
On 29/04/13 14:33, Joerg Schilling wrote: Daniel Pielmeier bil...@gentoo.org wrote: with the situation I have here. In my opinion it is a good idea to add such an option. If you think otherwise I am fine with it and I have to use other means to make cdrtools compatible with Gentoo. Cdrtools

Re: [gentoo-user] Re: Cdrtools installation without suid root

2013-04-29 Thread Joerg Schilling
Nikos Chantziaras rea...@gmail.com wrote: But please first explain what option you are talking about. An option to forcibly enable and disable support. If enabled, the build system assumes the library is there. If disabled, it assumes the library is not there (even if it is). If not

[gentoo-user] Re: Cdrtools installation without suid root

2013-04-29 Thread Nikos Chantziaras
On 29/04/13 16:09, Joerg Schilling wrote: Nikos Chantziaras rea...@gmail.com wrote: But please first explain what option you are talking about. An option to forcibly enable and disable support. If enabled, the build system assumes the library is there. If disabled, it assumes the library

Re: [gentoo-user] Re: Cdrtools installation without suid root

2013-04-29 Thread Joerg Schilling
Nikos Chantziaras rea...@gmail.com wrote: This may be an option for things that really are optional. Libcap however is not something optional but needed to support a basic security feature. I thought it is optional, since it was mentioned that cdrtools can be built and ran without

Re: [gentoo-user] Re: Cdrtools installation without suid root

2013-04-29 Thread Daniel Pielmeier
2013/4/29 Joerg Schilling joerg.schill...@fokus.fraunhofer.de Nikos Chantziaras rea...@gmail.com wrote: This may be an option for things that really are optional. Libcap however is not something optional but needed to support a basic security feature. I thought it is optional,

Re: [gentoo-user] Re: Cdrtools installation without suid root

2013-04-29 Thread Joerg Schilling
Daniel Pielmeier bil...@gentoo.org wrote: 2013/4/29 Joerg Schilling joerg.schill...@fokus.fraunhofer.de Do you like people to be able to open security holes? Adding an option to enable/disable linkage to libcap does not hurt anybody it just eases maintaining the package. You can enable it

[gentoo-user] Re: Cdrtools installation without suid root

2013-04-29 Thread Nikos Chantziaras
On 29/04/13 17:22, Joerg Schilling wrote: Nikos Chantziaras rea...@gmail.com wrote: You don't know what my intentions are. I might be doing testing, debugging, who knows what. It's the trying to be smarter than the user thing. The defaults of course would be to built the software in a sane,

Re: [gentoo-user] Re: Cdrtools installation without suid root

2013-04-28 Thread Daniel Pielmeier
Nikos Chantziaras schrieb am 27.04.2013 08:07: On 26/04/13 23:20, Joerg Schilling wrote: The only problem I see is that you are able to remove important software on a Linux installation while the kernel still supports the feature by default. You are not able to remove it if something

[gentoo-user] Re: Cdrtools installation without suid root

2013-04-27 Thread Nikos Chantziaras
On 26/04/13 23:20, Joerg Schilling wrote: The only problem I see is that you are able to remove important software on a Linux installation while the kernel still supports the feature by default. You are not able to remove it if something actually uses it. If you remove the automagic