IdP 3.2 installation - conf file permissions
Peter Schober
peter.schober at univie.ac.at
Thu Nov 19 10:15:32 EST 2015
* John Horne <john.horne at plymouth.ac.uk> [2015-11-19 16:07]:
> > To be safe you should probaly chown all those files to root:tomcat
> > (where 'tomcat' is the user the servlet container runs as) and make
> > them 0640, so only the servlet container user can accsess those, and
> > only read-only.
> >
> Thanks. Yes, I actually set the directory permissions to 750 and owned
> by root:jetty. So access to the files (with 644 permissions) and owned
> root:root should be safe in that case.
Making files containing passwords world-readable is hardly "safe" but
YMMV.
-peter
More information about the users
mailing list