[tor-bugs] #8452 [Ooni]: ooni: create virtualenv bootstrap script that allows us to create raw sockets without sudo

Tor Bug Tracker & Wiki blackhole at torproject.org
Mon Apr 1 20:21:27 UTC 2013


#8452: ooni: create virtualenv bootstrap script that allows us to create raw
sockets without sudo
----------------------------+-----------------------------------------------
    Reporter:  isis         |       Owner:  isis                
        Type:  enhancement  |      Status:  reopened            
    Priority:  normal       |   Milestone:                      
   Component:  Ooni         |     Version:                      
  Resolution:               |    Keywords:  ooni, SponsorH201210
      Parent:               |      Points:                      
Actualpoints:               |  
----------------------------+-----------------------------------------------

Comment(by hellais):

 Replying to [comment:3 isis]:
 > Wait, this is one of the things we all agreed we wanted to have in our
 meetings at Harvard. Remember that the user still has to have sudo
 privileges to setcap the interpreter binary -- so this doesn't mean that
 we are obtaining extra privileges that were not there before, instead it
 means that we are restricting what permissions the interpreter is given.

 On all of our target platforms we don't have the ability to install a
 special python binary (on which we can setcap). So, for example, on debian
 this feature will not be possible.

 I would suggest we postpone this since none of the target platforms
 support this feature.

-- 
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/8452#comment:4>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list