Re: proc hidepid=2 and SGID programs

From: Eric W. Biederman
Date: Mon Sep 09 2013 - 02:42:18 EST


Christian Kujau <lists@xxxxxxxxxxxxxxx> writes:

> Hi,
>
> I was wondering why I cannot see processes that were started from SGID
> programs:

I don't have a clue why anyone would want to hide processes, and make
their own lives more difficult.

The check with hidepid is can you ptrace the process. I expect there
is something with those sgid processes that keeps you from ptracing
them.

Of course if you don't like the silly behavior you can always disable
it.

Eric
--
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/