Amanda-Users

Re: raw device permissions

2002-09-12 12:46:05
Subject: Re: raw device permissions
From: Jon LaBadie <jon AT jgcomp DOT com>
To: amanda <amanda-users AT amanda DOT org>
Date: Thu, 12 Sep 2002 12:26:25 -0400
On Thu, Sep 12, 2002 at 12:42:57PM +0200, Mozzi wrote:
> Hi
> 
> This is my stupid question of the week ;-)
> Sorry but my brain has deflated.
> Please bear with me for when my newbie howto is finished I hope it will 
> stop questions like this.
> 
> This is a direct quote from the INSTALL file
> 
> B.  Set up your raw disk devices so that the dumpuser can read
>         them, and /etc/dumpdates so that the dumpuser can write to it.
>         Normally this is done by making the disk devices readable by
>         (and dumpdates read/writable by) group `operator', and putting
>         the dumpuser into that group.
> 
> Now my problem:
> Getting dumpuser to read the raw devices.
> I see in Red-Hat the default group is disk
> [root@backupserver docs]# ls -ahl /dev/hda
> brw-rw----    1 root     disk       3,   0 Apr 11 16:25 /dev/hda
> 
> I can't just put dumpuser into group disk as that wil give it full read 
> write access.
> I don't think it wil be a good idea to revoke write privelages from disk 
> ;-)and it will not be a good idea to change the group.So what now ?
> 
> This is what stumps me.

Does linux (i.e. your RH version)  support ACL's (access control lists).

If so, they allow much finer granularity.  Like, amanda if they are presently
in group backup can read this file.

-- 
Jon H. LaBadie                  jon AT jgcomp DOT com
 JG Computing
 4455 Province Line Road        (609) 252-0159
 Princeton, NJ  08540-4322      (609) 683-7220 (fax)

<Prev in Thread] Current Thread [Next in Thread>