From owner-freebsd-questions Thu Mar 26 08:27:27 1998 Return-Path: Received: (from majordom@localhost) by hub.freebsd.org (8.8.8/8.8.8) id IAA09243 for freebsd-questions-outgoing; Thu, 26 Mar 1998 08:27:27 -0800 (PST) (envelope-from owner-freebsd-questions@FreeBSD.ORG) Received: from relay01.indigo.ie (relay01.indigo.ie [194.125.133.225]) by hub.freebsd.org (8.8.8/8.8.8) with SMTP id IAA09226 for ; Thu, 26 Mar 1998 08:27:11 -0800 (PST) (envelope-from relyod@indigo.ie) Received: (qmail 29347 messnum 238110 invoked from network[194.125.134.91/ts01-081.dublin.indigo.ie]); 26 Mar 1998 16:27:10 -0000 Received: from ts01-081.dublin.indigo.ie (HELO nt?dublin) (194.125.134.91) by relay01.indigo.ie (qp 29347) with SMTP; 26 Mar 1998 16:27:10 -0000 Message-Id: <3.0.5.32.19980326160049.00944930@pop.indigo.ie> X-Sender: relyod@pop.indigo.ie X-Mailer: QUALCOMM Windows Eudora Light Version 3.0.5 (32) Date: Thu, 26 Mar 1998 16:00:49 +0000 To: Robert Jackson From: Michael Doyle Subject: Re: chown vs chmod Cc: freebsd-questions@FreeBSD.ORG In-Reply-To: References: <199803242153.LAA12275@rocksalt.mui.net> Mime-Version: 1.0 Content-Type: text/plain; charset="us-ascii" Sender: owner-freebsd-questions@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.ORG At 10:15 26/03/1998 -0500, you wrote: >Try SU > >> I'm going nuts over these "rights" issues. >> >> how in the world do I get these chown and chmod stuff straight? >> >> I sort of understand it, finally but haven't the faintest idea of >> what's good and what's not. For instance, I need to be able to >> maintain the web pages and stuff. root obviously has the rights to >> everything, and can do whatever. not a good idea to use root all the >> time -- i get that part. "nobody" and "nogroup" is what apache uses >> to get into whatever is needed. ok, I'm with it so far. I >> understand that I need to use chmod to allow and disallow to various ..... What I do on my server is to allow 770 (i.e. owner, and group read/write/exec) to all the directory tree at and below the /usr/local/www/data directory Then, since my login ID is in group wheel, I can read/write/create files and folders in the directories necessary for apache to serve them as web pages. Another option I used for a less trusted user was to create a sub-directory below their home directory and create a sym-link to it in the /usr/local/www/data directory. Hope these suggestions help Mike <><=====================================================><> Michael Doyle phone: +353-1-661-0588 Network Administrator http://www.co-operation-north.ie/ Co-Operation North E-mail: relyod@co-operation-north.ie (0ffice) relyod@indigo.ie (Personal) To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-questions" in the body of the message