[master] ca9829339 Fix mode for JAIL_FIXFD_FILE in the unix jail

Dridi Boukelmoune dridi at varni.sh
Wed Mar 6 08:50:14 UTC 2024


On Tue, Mar 5, 2024 at 6:01 PM Nils Goroll <nils.goroll at uplex.de> wrote:
>
> On 05.03.24 16:30, Dridi Boukelmoune wrote:
> > Spotted by Stéphane Cance on our end, why 600 and not 640?
>
> The use cases in the v-c tree are for the file and deprecated persistent storage
> engines (via STV_GetFile()). For storage engines, group permissions make no sense.
>
> Also, the code before ede8c3dbe84b131d7e1240f28f2eb16c2818c309 used 0600.
>
> If there are other use cases, we should introduce another JAIL_FIXFD_* type.

I should have looked harder, thanks!


More information about the varnish-commit mailing list