From: Ingo Molnar <mingo@elte.hu>
To: Kay Sievers <kay.sievers@vrfy.org>
Cc: Greg KH <greg@kroah.com>,
Linus Torvalds <torvalds@linux-foundation.org>,
"Eric W. Biederman" <ebiederm@xmission.com>,
linux-kernel@vger.kernel.org
Subject: Re: [bug] /etc/profile: line 30: /dev/null: Permission denied (Was: Re: [PATCH] Remove broken by design and by implementation devtmpfs maintenance disaster)
Date: Fri, 18 Sep 2009 21:50:05 +0200 [thread overview]
Message-ID: <20090918195005.GA11726@elte.hu> (raw)
In-Reply-To: <ac3eb2510909181235m33846928sa8c790758c66233@mail.gmail.com>
* Kay Sievers <kay.sievers@vrfy.org> wrote:
> On Fri, Sep 18, 2009 at 17:37, Kay Sievers <kay.sievers@vrfy.org> wrote:
> > On Fri, Sep 18, 2009 at 17:05, Greg KH <greg@kroah.com> wrote:
> >> On Fri, Sep 18, 2009 at 07:18:54AM -0700, Linus Torvalds wrote:
> >>>
> >>> On Thu, 17 Sep 2009, Greg KH wrote:
> >>> >
> >>> > I think the udev version in older Fedora releases can't handle this
> >>> > kernel option, which is fine, just don't enable it. ??Newer versions can
> >>> > handle it, right?
> >>>
> >>> .. conversely, if you can't be bothered to set up /dev/null and /dev/zero
> >>> correctly, I would suggest that you not set them up AT ALL in devtmpfs.
> >>
> >> Fair enough.
> >>
> >>> The thing is, 0600 for those nodes is just _wrong_. Don't do it.
> >>
> >> Ok, Kay, care to just treat these as "special"?
> >
> > Sure, the patch I sent yesterday does that. We might want to drop the
> > USB device node permissions (same as the proc nodes), but they are
> > probably not needed?
> >
> > Ingo, do you possibly have a chance to test if your setup comes up
> > with that? That would be great to know.
>
> With that patch, I can login as a normal user without any udev ever
> started, and no static content copied to /dev.
Great. Please merge this without waiting me to clear up any of my (way
too much) backlog and get it tested. The only hickup i had was the
/dev/zero & /dev/null permission stuff that prevented ssh logins. With
that fixed i'm a happy camper.
Self-contained /dev is great, udev is a total PITA on older distros (on
this box it sometimes takes 3 minutes for udev to boot ...) so turning
on devtmpfs and getting something functional in exchange is a big
selling point IMO.
Btw., i never understood the separation of udev from the kernel. It's
not like it makes any sense without a Linux kernel - and the separation
just increases release cycle pain and causes (unnecessary) detachment
from the actual kernel. Should be hosted in tools/udev/ or so ;-)
Ingo
next prev parent reply other threads:[~2009-09-18 19:50 UTC|newest]
Thread overview: 61+ messages / expand[flat|nested] mbox.gz Atom feed top
2009-09-17 8:23 [PATCH] Remove broken by design and by implementation devtmpfs maintenance disaster Eric W. Biederman
2009-09-17 12:03 ` Kay Sievers
2009-09-17 13:13 ` Alan Cox
2009-09-17 16:35 ` Scott James Remnant
2009-09-17 17:47 ` Arjan van de Ven
2009-09-17 18:59 ` Scott James Remnant
2009-09-17 19:11 ` Arjan van de Ven
2009-09-18 12:57 ` Eric W. Biederman
2009-09-18 13:16 ` Eric W. Biederman
2009-09-18 13:54 ` Eric W. Biederman
2009-09-18 14:09 ` Arjan van de Ven
2009-09-18 14:11 ` Kay Sievers
2009-09-18 14:25 ` Arjan van de Ven
2009-09-18 14:32 ` Kay Sievers
2009-09-18 14:43 ` Arjan van de Ven
2009-09-18 14:58 ` Kay Sievers
2009-09-18 15:13 ` Arjan van de Ven
2009-09-18 15:32 ` Kay Sievers
2009-09-18 19:33 ` Eric W. Biederman
2009-09-18 14:42 ` Eric W. Biederman
2009-09-17 12:57 ` Greg KH
2009-09-17 13:05 ` Alan Cox
2009-09-17 13:29 ` Greg KH
2009-09-17 15:43 ` Alan Cox
2009-09-18 6:03 ` Greg KH
2009-09-18 9:25 ` Alan Cox
2009-09-18 15:05 ` Greg KH
2009-09-17 17:29 ` Eric W. Biederman
2009-09-17 18:53 ` [bug] /etc/profile: line 30: /dev/null: Permission denied (Was: Re: [PATCH] Remove broken by design and by implementation devtmpfs maintenance disaster) Ingo Molnar
2009-09-17 19:18 ` Kay Sievers
2009-09-17 20:26 ` Linus Torvalds
2009-09-17 20:31 ` Ingo Molnar
2009-09-18 5:58 ` Greg KH
2009-09-25 20:49 ` Pavel Machek
2009-09-27 22:52 ` Greg KH
2009-09-17 22:26 ` Kay Sievers
2009-09-17 22:41 ` Alan Cox
2009-09-18 0:18 ` Linus Torvalds
2009-09-18 1:50 ` Kay Sievers
2009-09-18 6:02 ` Greg KH
2009-09-18 11:50 ` Kay Sievers
2009-09-18 14:18 ` Linus Torvalds
2009-09-18 15:05 ` Greg KH
2009-09-18 15:37 ` Kay Sievers
2009-09-18 19:35 ` Kay Sievers
2009-09-18 19:41 ` Linus Torvalds
2009-09-18 19:50 ` Ingo Molnar [this message]
2009-09-20 1:43 ` Dave Airlie
2009-09-20 15:08 ` Greg KH
2009-09-21 2:58 ` Dave Airlie
[not found] ` <ac3eb2510909200912o76e0d4e4l2dcaf352fe6b4e19@mail.gmail.com>
[not found] ` <ac3eb2510909200914g1ed6a47cydc0edec6fff96ef4@mail.gmail.com>
2009-09-21 2:59 ` Dave Airlie
2009-10-20 20:32 ` Scott James Remnant
2009-09-20 17:33 ` Ingo Molnar
2009-09-18 20:58 ` [bug] /etc/profile: line 30: /dev/null: Permission denied Eric W. Biederman
2009-09-18 21:09 ` Linus Torvalds
2009-09-18 21:19 ` Kay Sievers
2009-09-18 22:06 ` Linus Torvalds
2009-09-18 21:31 ` Kay Sievers
2009-09-18 22:03 ` Eric W. Biederman
2009-09-18 5:54 ` [PATCH] Remove broken by design and by implementation devtmpfs maintenance disaster Greg KH
2009-09-18 12:24 ` Eric W. Biederman
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=20090918195005.GA11726@elte.hu \
--to=mingo@elte.hu \
--cc=ebiederm@xmission.com \
--cc=greg@kroah.com \
--cc=kay.sievers@vrfy.org \
--cc=linux-kernel@vger.kernel.org \
--cc=torvalds@linux-foundation.org \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox