Conversation

I think you're looking at it backward. Elevation to root already lets you escape those things if you try (and for seccomp, keeping it is not even an option). OTOH if the program running suid doesn't make effort to escape whatever mess it inherited from before exec...
1
1
I'm not saying the daemon approach is fundamentally flawed, but it changes many assumptions that have been established with sudo. And if it's about creating a replacement for sudo, please consider those instead of telling me how my opinion doesn't matter.
1
1
It's pretty easy to wrap into something useful. I just don't think the whole restricted shell or sudo policy concept is a good idea. Main usage of sudo is simply to delegate full access to an account in which case you might as well just add that SSH key to the authorized_keys.
2
Show replies