TCLUG Archive
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [TCLUG:14407] secure text editor
On Mon, Mar 06, 2000 at 11:17:39AM -0600, Dan Debertin wrote:
> On Mon, 6 Mar 2000, Scott wrote:
> 
> >      Couldn't this problem be solved by adding a new group
> > (ie. sudokids), making those unlucky few who have to deal with
> > them a member of said group, then chown the files as necessary?
> 
> Yeah, that's what I'm looking into right now. Thing is, I'm unsure if BIND
> is picky about perms/ownerships on its zone files. If I start playing
> around with perms, and named starts dying & complaining about bad perms,
> then obviously we have a problem :). We've had similar a problem with
> sendmail here, so that is why I am cautious.
A better solution would be to use RCS or CVS.  (This also gives you a
history of changes...)  Allow those certain users write access to the RCS or
CVS tree, and have a script in cron which periodically checks out changed
files and puts them in the 'real' location(s).  This way, there's no need to
give sudo privs to anyone.
-- 
David Carter ** dcarter@visi.com
Network Engineer -- VISI.com
PGP Key 581CBE61: E07EE199C767C752 8A8B1A9F015BF2EA 
Key available by finger or www.keyserver.net.