X-Git-Url: https://iankelling.org/git/?a=blobdiff_plain;f=filesystem%2Fetc%2Fprofile.d%2Fenvironment.sh;h=4c5794f4fc918219cc18131e9e5e22f3f0f14f0e;hb=b5152768e90016afe8ff2d55cc9f38d08396b0fc;hp=95dce05679534846aad55c42eff9b722136822d5;hpb=9a067ce7270718043c0a725aa8c97ea75afdf96c;p=distro-setup diff --git a/filesystem/etc/profile.d/environment.sh b/filesystem/etc/profile.d/environment.sh index 95dce05..4c5794f 100644 --- a/filesystem/etc/profile.d/environment.sh +++ b/filesystem/etc/profile.d/environment.sh @@ -55,16 +55,20 @@ if [ -f /etc/fedora-release ]; then fi fi +# background: # ubuntu has 002 for non-system users, debian has 022. 002 makes groups -# be rw instead of r. One security concern is where some unixes put -# every user in a same group, so if you copy files there with exact -# perms, that is probably not what you want. I don't use a system like -# that. I don't care much either way, but the ubuntu one seems a bit -# more user friendly, and copying files between them is a annoying with -# different umasks. However, it also makes it so if you create a file as -# a regular user then move it to become a system file, it's got slightly -# wrong permissions, and sometimes thing break. So, this outweighs the -# other things, stick with 022 umask always. +# be rw instead of r. +# +# ubuntu is more user friendly when using multiple users. However, +# it also makes it so if you create a file as a regular user then move +# it to become a system file, it's got slightly wrong permissions, and +# sometimes thing break. Also, copying files between ubuntu and debian +# makes things inconsistent. So stick with 022 umask always. +# +# One security concern is where some unixes put every user in a same +# group, so if you copy files there with exact perms, that is probably +# not what you want. I don't use a system like that, so I don't +# care. umask 022 # this is how we could test for non-system user