Amanda-Users

Re: amanda's rights on a client

2003-05-23 12:47:01
Subject: Re: amanda's rights on a client
From: Joshua Baker-LePain <jlb17 AT duke DOT edu>
To: chuck shick <chuck.shick AT manchotnetworks DOT net>
Date: Fri, 23 May 2003 12:44:32 -0400 (EDT)
On 23 May 2003 at 6:09pm, chuck shick wrote

> studying amanda's last dump -- wasn't pretty -- and something smelled
> funny.

Letting us see it would be helpful.

> if you specify mount points rather than device names in a server's
> disklist, and amanda is not root equivallent on the client, than files
> on those client mount points (and their subdirectories) must have read
> privillages for amanda?

No.

> is there a quick and secure solution to this, that is, to give amanda
> the rights to read everything without getting into a bunch of acl stuff?

If you're using a vendor dump, it reads the raw device, which the amanda 
user must have read access to.  If you're using tar, amanda runs it via 
the setuid root 'runtar' wrapper.

What problems did you see.

-- 
Joshua Baker-LePain
Department of Biomedical Engineering
Duke University


<Prev in Thread] Current Thread [Next in Thread>