[Gllug] Is this right? (Permissions question)

Tethys sta296 at astradyne.co.uk
Thu Mar 1 09:25:09 UTC 2007


Adrian McMenamin writes:

>It was created as 755 but as I wanted users to be able to write files to
>it but not to do anything naughty like upload a file that pretended to
>be an image and then execute it I changed it to 766 but then found I
>could not actually cd to it - is that right?

Correct. You need execute permission to be able to CD to a directory.

>Presumably the safe way to do this is to change ownership to www-data
>and make it 700?

That'd probably work (assuming your web server is running as the
www-data user). Or you could have that directory as a separate
filesystem, and mount it noexec.

Tet

PS. Didn't you ask this same question a couple of months ago?
    Or am I just having a case as deja vu?
-------------- next part --------------
-- 
Gllug mailing list  -  Gllug at gllug.org.uk
http://lists.gllug.org.uk/mailman/listinfo/gllug


More information about the GLLUG mailing list