From: Mark H Weaver <mhw@netris.org>
To: "Ludovic Courtès" <ludo@gnu.org>
Cc: Brendan Tildesley <btild@mailbox.org>, 36508@debbugs.gnu.org
Subject: bug#36508: GDM files have incorrect owner after temporarily removing service
Date: Thu, 15 Apr 2021 18:22:49 -0400 [thread overview]
Message-ID: <87zgxzgpbf.fsf@netris.org> (raw)
In-Reply-To: <878s5j8ga7.fsf@gnu.org>
Hi Ludovic,
Ludovic Courtès <ludo@gnu.org> wrote:
>>> Note that the ID allocation strategy in (gnu build accounts) ensures
>>> UIDs/GIDs aren’t reused right away (same strategy as implemented by
>>> Shadow, etc.). So if you remove “bob”, then add “alice”, “alice” won’t
>>> be able to access the left-behind /home/bob because it has a different
>>> UID.
I replied:
>> This mechanism is insufficient, because it only avoids the problem if
>> you add "alice" at the same time that "bob" is removed. If you remove
>> "bob" during one system activation, and then later add "alice", then
>> "alice" might well be able to access bob's left-behind files.
Ludovic Courtès <ludo@gnu.org> responded:
> To be clear, it’s doing the same as any other GNU/Linux distro.
I don't think that's quite right.
It's true that if you delete a user or group on another distro and then
re-add it, it might not be assigned the same UID/GID. That much is the
same as any other distro.
The key difference is this: On Debian, at least in my experience, users
and groups are *never* deleted automatically. They are only added
automatically, but never removed unless you explicitly ask to remove
them. So, this problem does not arise in practice.
Thanks,
Mark
next prev parent reply other threads:[~2021-04-15 22:25 UTC|newest]
Thread overview: 20+ messages / expand[flat|nested] mbox.gz Atom feed top
2019-07-05 8:36 bug#36508: GDM files have incorrect owner after temporarily replacing with SDDM ison
2021-04-13 13:24 ` bug#36508: GDM files have incorrect owner after temporarily removing service Brendan Tildesley via Bug reports for GNU Guix
2021-04-13 20:51 ` Mark H Weaver
2021-04-14 4:31 ` Brendan Tildesley via Bug reports for GNU Guix
2021-04-15 18:09 ` Mark H Weaver
2021-04-14 10:32 ` Ludovic Courtès
2021-04-14 12:21 ` Brendan Tildesley via Bug reports for GNU Guix
2021-04-15 14:24 ` Ludovic Courtès
2021-04-15 18:30 ` Mark H Weaver
2021-04-15 20:05 ` Ludovic Courtès
2021-04-15 22:22 ` Mark H Weaver [this message]
2021-04-16 15:18 ` Ludovic Courtès
2021-04-17 16:16 ` Mark H Weaver
2021-04-15 23:04 ` Mark H Weaver
2021-04-16 15:14 ` Ludovic Courtès
2021-04-15 18:35 ` Mark H Weaver
2021-04-15 18:58 ` Mark H Weaver
2021-04-16 10:42 ` Maxime Devos
2021-04-17 16:28 ` Mark H Weaver
2022-09-18 12:22 ` bug#36508: [DRAFT PATCH] Stable allocation of uids, by keeping a historical mapping Maxime Devos
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
List information: https://guix.gnu.org/
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=87zgxzgpbf.fsf@netris.org \
--to=mhw@netris.org \
--cc=36508@debbugs.gnu.org \
--cc=btild@mailbox.org \
--cc=ludo@gnu.org \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
Code repositories for project(s) associated with this public inbox
https://git.savannah.gnu.org/cgit/guix.git
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for read-only IMAP folder(s) and NNTP newsgroup(s).