[Vserver] host and guest UID and GID

From: Nikolay Kichukov <hijacker_at_oldum.net>
Date: Sun 26 Mar 2006 - 11:31:47 BST
Message-ID: <000b01c650c0$7f4d8ed0$0600a8c0@hpa>

Hello Guys,
I have the following situation, where users on the host become owners of the
home directories of the users of the guest.

root@nevir:/var/lib/vservers/vn/home# ls -alh
total 44K
drwxr-xr-x 11 root root 4.0K Mar 25 18:42 .
drwxr-xr-x 20 root root 4.0K Mar 17 00:39 ..
drwxr-xr-x 3 services services 4.0K Mar 24 00:16 agra
drwxr-xr-x 6 spectre spectre 4.0K Mar 25 13:30 cipri
...

As you can see user services on the HOST can now have full access to the
home directory of user agra on the guest.

Is there a way this can be solved, or do I have to start numbering the UIDs
and GIDs on the Guest from higher numbers?

Regards,
-Nikolay Kichukov

p.s. Some useful information would be:

root@nevir:/usr/sbin# vserver-info
Versions:
                   Kernel: 2.6.14.4-vs2.1.0nevir
                   VS-API: 0x00020001
             util-vserver: 0.30.209; Jan 8 2006, 12:24:41

Features:
         CC: gcc, gcc (GCC) 4.0.3 20051201 (prerelease) (Debian 4.0.2-5)
                      CXX: g++, g++ (GCC) 4.0.3 20051201 (prerelease)
(Debian 4.0.2-5)
                 CPPFLAGS: ''
                   CFLAGS:
'-Wall -g -O2 -std=c99 -Wall -pedantic -W -funit-at-a-time'
                 CXXFLAGS:
'-g -O2 -ansi -Wall -pedantic -W -fmessage-length=0 -funit-at-a-time'
               build/host: i486-pc-linux-gnu/i486-pc-linux-gnu
             Use dietlibc: yes
       Build C++ programs: yes
       Build C99 programs: yes
           Available APIs: compat,v11,v13,fscompat,net,oldproc,olduts
            ext2fs Source: e2fsprogs
    syscall(2) invocation: alternative
      vserver(2) syscall#: 273/glibc

Paths:
                   prefix: /usr
        sysconf-Directory: /etc
            cfg-Directory: /etc/vservers
         initrd-Directory: $(sysconfdir)/init.d
       pkgstate-Directory: /var/run/vservers
          vserver-Rootdir: /var/lib/vservers

Assumed 'SYSINFO' as no other option given; try '--help' for more
information.
root@nevir:/usr/sbin#

_______________________________________________
Vserver mailing list
Vserver@list.linux-vserver.org
http://list.linux-vserver.org/mailman/listinfo/vserver
Received on Sun Mar 26 11:46:55 2006

[Next/Previous Months] [Main vserver Project Homepage] [Howto Subscribe/Unsubscribe] [Paul Sladen's vserver stuff]
Generated on Sun 26 Mar 2006 - 11:47:01 BST by hypermail 2.1.8