Changes in BOOK/boot/common/pwdgroup.xml [c3b54fac:688b33d]
- File:
-
- 1 edited
Legend:
- Unmodified
- Added
- Removed
-
BOOK/boot/common/pwdgroup.xml
rc3b54fac r688b33d 9 9 <?dbhtml filename="pwdgroup.html"?> 10 10 11 <title>Creating the passwd and groupFiles</title>11 <title>Creating the passwd, group, and log Files</title> 12 12 13 13 <indexterm zone="ch-boot-pwdgroup"> … … 17 17 <indexterm zone="ch-boot-pwdgroup"> 18 18 <primary sortas="e-/etc/group">/etc/group</primary> 19 </indexterm> 20 21 <indexterm zone="ch-boot-pwdgroup"> 22 <primary sortas="e-/var/run/utmp">/var/run/utmp</primary> 23 </indexterm> 24 25 <indexterm zone="ch-boot-pwdgroup"> 26 <primary sortas="e-/var/log/btmp">/var/log/btmp</primary> 27 </indexterm> 28 29 <indexterm zone="ch-boot-pwdgroup"> 30 <primary sortas="e-/var/log/lastlog">/var/log/lastlog</primary> 31 </indexterm> 32 33 <indexterm zone="ch-boot-pwdgroup"> 34 <primary sortas="e-/var/log/wtmp">/var/log/wtmp</primary> 19 35 </indexterm> 20 36 … … 29 45 <screen><userinput>cat > ${CLFS}/etc/passwd << "EOF" 30 46 <literal>root::&uid-root;:&gid-root;:root:/root:/bin/bash</literal> 31 <literal>bin:x:&uid-bin;:&gid-bin;:/bin:/bin/false</literal>32 <literal>daemon:x:&uid-daemon;:&gid-daemon;:/sbin:/bin/false</literal>33 <literal>messagebus:x:&uid-messagebus;:&gid-messagebus;:D-Bus Message Daemon User:/dev/null:/bin/false</literal>34 <literal>nobody:x:&uid-nobody;:&gid-nogroup;:Unprivileged User:/dev/null:/bin/false</literal>35 47 EOF</userinput></screen> 36 48 … … 41 53 <variablelist os="c"> 42 54 43 <title>Additional users you may want to add if not already included:</title> 44 55 <title>Additional users you may want to add:</title> 56 57 <varlistentry> 58 <term><literal>bin:x:&uid-bin;:&gid-bin;:bin:/bin:/bin/false</literal></term> 59 <listitem> 60 <para>Can be useful for compatibility with legacy applications.</para> 61 </listitem> 62 </varlistentry> 63 <varlistentry> 64 <term><literal>daemon:x:&uid-daemon;:&gid-daemon;:daemon:/sbin:/bin/false</literal></term> 65 <listitem> 66 <para>It is often recommended to use an unprivileged User ID/Group ID 67 for daemons to run as, in order to limit their access to the system.</para> 68 </listitem> 69 </varlistentry> 45 70 <varlistentry> 46 71 <term><literal>adm:x:&uid-adm;:&gid-adm;:adm:/var/adm:/bin/false</literal></term> … … 77 102 <listitem> 78 103 <para>Generally used as an account that receives all the information of troubles with the mail server</para> 104 </listitem> 105 </varlistentry> 106 <varlistentry> 107 <term><literal>nobody:x:&uid-nobody;:&gid-nobody;:nobody:/:/bin/false</literal></term> 108 <listitem> 109 <para>Used by NFS</para> 79 110 </listitem> 80 111 </varlistentry> … … 100 131 utmp:x:&gid-utmp;: 101 132 usb:x:&gid-usb;: 102 cdrom:x:&gid-cdrom;: 103 adm:x:&gid-adm;: 104 messagebus:x:&gid-messagebus;: 105 systemd-journal:x:&gid-systemd-journal;: 106 mail:x:&gid-mail;: 107 wheel:x:&gid-wheel;: 108 nogroup:x:&gid-nogroup;:</literal> 133 cdrom:x:&gid-cdrom;:</literal> 109 134 EOF</userinput></screen> 110 135 111 136 <variablelist os="d"> 112 137 113 <title>Additional groups you may want to add if not already included:</title> 114 138 <title>Additional groups you may want to add</title> 139 140 <varlistentry> 141 <term><literal>adm:x:&gid-adm;:root,adm,daemon</literal></term> 142 <listitem> 143 <para>All users in this group are allowed to do administrative tasks</para> 144 </listitem> 145 </varlistentry> 115 146 <varlistentry> 116 147 <term><literal>console:x:&gid-console;:</literal></term> … … 126 157 </varlistentry> 127 158 <varlistentry> 159 <term><literal>mail:x:&gid-mail;:mail</literal></term> 160 <listitem> 161 <para>Used by MTAs (Mail Transport Agents)</para> 162 </listitem> 163 </varlistentry> 164 <varlistentry> 128 165 <term><literal>news:x:&gid-news;:news</literal></term> 129 166 <listitem> … … 138 175 </varlistentry> 139 176 <varlistentry> 140 <term><literal>nobody:x:&gid-nogroup;:</literal></term> 177 <term><literal>nogroup:x:&gid-nogroup;:</literal></term> 178 <listitem> 179 <para>This is a default group used by some programs that do not 180 require a group</para> 181 </listitem> 182 </varlistentry> 183 <varlistentry> 184 <term><literal>nobody:x:&gid-nobody;:</literal></term> 141 185 <listitem> 142 186 <para>This is used by NFS</para> … … 146 190 147 191 <para os="e">The created groups are not part of any standard—they are 148 groups decided on in part by the requirements of the Systemdconfiguration192 groups decided on in part by the requirements of the Eudev configuration 149 193 in the final system, and in part by common convention employed by a 150 194 number of existing Linux distributions. The Linux Standard Base (LSB, … … 156 200 group's name.</para> 157 201 202 <para os="f">The <command>login</command>, <command>agetty</command>, and 203 <command>init</command> programs (and others) use a number of log 204 files to record information such as who was logged into the system and 205 when. However, these programs will not write to the log files if they 206 do not already exist. Initialize the log files and give them 207 proper permissions:</para> 208 209 <screen><userinput>touch ${CLFS}/var/run/utmp ${CLFS}/var/log/{btmp,lastlog,wtmp} 210 chmod -v 664 ${CLFS}/var/run/utmp ${CLFS}/var/log/lastlog 211 chmod -v 600 ${CLFS}/var/log/btmp</userinput></screen> 212 213 <para>The <filename>/var/run/utmp</filename> file records the users 214 that are currently logged in. The <filename>/var/log/wtmp</filename> 215 file records all logins and logouts. The 216 <filename>/var/log/lastlog</filename> file records when 217 each user last logged in. The <filename>/var/log/btmp</filename> file 218 records the bad login attempts.</para> 219 158 220 </sect1>
Note:
See TracChangeset
for help on using the changeset viewer.