trafficserver and raw disk access in FreeBSD

Daniel O'Connor doconnor at gsoft.com.au
Mon Jul 23 02:19:05 UTC 2012


On 23/07/2012, at 11:17, ming.zym at gmail.com wrote:
> yeah, rules in devfs always work. and it may introduce more challenge on
> operation management, is there any way that we can do it more clean?
> 
> should we set the permission for :operator g+w on disks and partitions?
> then we can put a dedicate user for trafficserver into operator group.

I would change the ownership of the disk you want to use to trafficserver.

This does mean you have double configuration (ie in devfs and ATS) but I think it's more sensible than giving operator write perms.

AFAIK operator has read access so it can run dump.

--
Daniel O'Connor software and network engineer
for Genesis Software - http://www.gsoft.com.au
"The nice thing about standards is that there
are so many of them to choose from."
  -- Andrew Tanenbaum
GPG Fingerprint - 5596 B766 97C0 0E94 4347 295E E593 DC20 7B3F CE8C








More information about the freebsd-hackers mailing list