Monday, March 22, 2021

Re: Documentation on OpenBSD's 3-process privsep model?

misopolemiac <misopolemiac@protonmail.com> wrote:

> I'd appreciate some pointers to documentation or minimal examples of
> the 3-process privilege separation model for OpenBSD's daemons.
> Internet searches pointed to skeleton examples at
> github.com/krwesterback/newd and github.com/krwesterback/newdctl, but
> those repos are now dead and it's unclear how authoritative they were
> in the first place.

This is not difficult: Use the repository.

Go find a privsep daemon. Go look at the earliest revisions, when the
problems were simple. Follow the commits forward.

And learn.

No comments:

Post a Comment