Comment 15 for bug 654065

Revision history for this message
Seth Arnold (seth-arnold) wrote :

I strongly dislike adding a new setgid binary to the system, writing these requires care and diligence. Adding setgid after the fact is extremely dangerous.

Re-using an existing group is also dangerous; group mail for example has write access to /var/mail.

This might just be the limit of what this tool is prepared to handle; systems with untrusted users maybe should stick to exim or postfix or similar.

Thanks