[Author Prev][Author Next][Thread Prev][Thread Next][Author Index][Thread Index]

Re: [tor-bugs] #8452 [Ooni]: ooni: create virtualenv bootstrap script that allows us to create raw sockets without sudo



#8452: ooni: create virtualenv bootstrap script that allows us to create raw
sockets without sudo
----------------------------+-----------------------------------------------
    Reporter:  isis         |       Owner:  isis                
        Type:  enhancement  |      Status:  reopened            
    Priority:  normal       |   Milestone:                      
   Component:  Ooni         |     Version:                      
  Resolution:               |    Keywords:  ooni, SponsorH201210
      Parent:               |      Points:                      
Actualpoints:               |  
----------------------------+-----------------------------------------------

Comment(by hellais):

 Replying to [comment:3 isis]:
 > Wait, this is one of the things we all agreed we wanted to have in our
 meetings at Harvard. Remember that the user still has to have sudo
 privileges to setcap the interpreter binary -- so this doesn't mean that
 we are obtaining extra privileges that were not there before, instead it
 means that we are restricting what permissions the interpreter is given.

 On all of our target platforms we don't have the ability to install a
 special python binary (on which we can setcap). So, for example, on debian
 this feature will not be possible.

 I would suggest we postpone this since none of the target platforms
 support this feature.

-- 
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/8452#comment:4>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online
_______________________________________________
tor-bugs mailing list
tor-bugs@xxxxxxxxxxxxxxxxxxxx
https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-bugs