NetBSD-Bugs archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

bin/44267: LVM devices have wrong permissions



>Number:         44267
>Category:       bin
>Synopsis:       LVM devices have wrong permissions
>Confidential:   no
>Severity:       serious
>Priority:       low
>Responsible:    bin-bug-people
>State:          open
>Class:          sw-bug
>Submitter-Id:   net
>Arrival-Date:   Thu Dec 23 11:20:00 +0000 2010
>Originator:     Michael van Elst
>Release:        NetBSD 5.99.41
>Organization:
-- 
                                Michael van Elst
Internet: mlelstv%serpens.de@localhost
                                "A potential Snark may lurk in every tree."
>Environment:
        
        
System: NetBSD pussyfoot 5.99.41 NetBSD 5.99.41 (PUSSYFOOT) #14: Thu Dec 23 09:4
8:56 CET 2010 mlelstv@henery:/home/netbsd-current/obj.amd64/home/netbsd-current/
src/sys/arch/amd64/compile/PUSSYFOOT amd64
Architecture: x86_64
Machine: amd64
>Description:
dmsetup and the lvm utilities create device nodes in /dev/mapper/
with Ownership root:wheel and permission 600 like:

crw-------  1 root  wheel  194, 0 Jan 30  2010 control
brw-------  1 root  wheel  169, 1 Dec 23 11:11 foo
crw-------  1 root  wheel  194, 1 Dec 23 11:12 rfoo

However, the standard for disk devices is to give read access to the
operator group to allow for backups from a non-root account. E.g.:

crw-r-----  1 root  operator       3, 0 Jan  6  2010 /dev/rwd0a
brw-r-----  1 root  operator       0, 0 Jan 12  2008 /dev/wd0a

LVM should follow this convention.

>How-To-Repeat:
Create a device mapper device.

>Fix:

>Unformatted:
        
        


Home | Main Index | Thread Index | Old Index