Re: IMMUTABLE and APPEND-ONLY rationales

From: Andi Kleen (ak@suse.de)
Date: Sat Jun 24 2000 - 15:34:40 EST


On Sat, Jun 24, 2000 at 01:15:12PM -0700, Linda Walsh wrote:
> I could see a reason to deny IMMUTABLE to a user -- root might want to
> freeze a user file as 'evidence' of something, but that is a stretch.
>
> Other than that, why was setting IMMUTABLE and APPEND-ONLY made to be a
> privileged operation? I could see end users wanting to protect certain
> files with those modes. Also, APPEND-ONLY seems a bit of a misnomer
> as a file with APPEND-ONLY can still be readable as well.
>
>
> Just wondering about the rationale for things being the way they are...?

Even root cannot delete immutable and append-only files again. So if every
user was allowed to do that he/she could create a lot of problems for root
(like creating undeletable files in /tmp)

-Andi

-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.rutgers.edu
Please read the FAQ at http://www.tux.org/lkml/



This archive was generated by hypermail 2b29 : Mon Jun 26 2000 - 21:00:05 EST