[Bug 270] PrivSep breaks sshd on AIX for non-root users

Dan Kaminsky dan at doxpara.com
Mon Jun 10 16:43:46 EST 2002


> I'll close this out when bugzilla will accept my login. =)  But PrivSep
> can't be ran by a non-root user.
>
> 1. All network code runs a non-prived user.. ALA 'sshd' user.
> 2. chroot() can not be done by a normal user.

I would be very unhappy if I was required to expose *any* root functionality
to sshd.

I quite like the ability to spawn an SSHD tied to a specific account.

--Dan





More information about the openssh-unix-dev mailing list