Req #68526 [PATCH]: Implement POSIX Access Control List for UDS
| From: | remi@php.net | Date: | Sun, 30 Nov 2014 09:21:20 +0000 |
| Subject: | Req #68526 [PATCH]: Implement POSIX Access Control List for UDS | ||
| References: | 1 | Groups: | php.bugs |
| Request: | Send a blank email to php-bugs+get-188848@lists.php.net to get a copy of this message | ||
Edit report at https://bugs.php.net/bug.php?id=68526&edit=1
ID: 68526
Patch added by: remi@php.net
Reported by: remi@php.net
Summary: Implement POSIX Access Control List for UDS
Status: Assigned
Type: Feature/Change Request
Package: FPM related
Operating System: GNU/LInux
PHP Version: 5.6.4RC1
Assigned To: remi
Block user comment: N
Private report: N
New Comment:
The following patch has been added/updated:
Patch Name: posix-acl.patch
Revision: 1417339279
URL: https://bugs.php.net/patch-display.php?bug=68526&patch=posix-acl.patch&revision=1417339279
Previous Comments:
------------------------------------------------------------------------
[2014-11-30 08:35:40] remi@php.net
The following patch has been added/updated:
Patch Name: posix-acl.patch
Revision: 1417336540
URL: https://bugs.php.net/patch-display.php?bug=68526&patch=posix-acl.patch&revision=1417336540
------------------------------------------------------------------------
[2014-11-30 08:34:55] remi@php.net
Description:
------------
When FPM listen to an UDS socket, security is set by changing the owner/group of the socket, ex:
listen.owner = foo
listen.group = bar
Proposal, keep with behavior and add an optional configuration to use Posix ACL instead:
listen.users = apache,nginx,lighttpd
listen.groups = webserver
Test script:
---------------
$ getfacl /path/to/fpm.sock
Expected result:
----------------
# file: /path/to/fpm.sock
# owner: foo
# group: foo
user::rw-
user:apache:rw-
user:nginx:rw-
user:lighttpd:rw-
group::rw-
group:webserver:rw-
mask::rw-
other::---
------------------------------------------------------------------------
--
Edit this bug report at https://bugs.php.net/bug.php?id=68526&edit=1