On Sat, Apr 19, 2014 at 02:15:52PM -0800, I wrote:
Wow, I always thought that *was* the "safe" way to run arm. I wonder where we both got the advice to do it the dangerous way.
from ARM [ARM_NOTICE] Arm is currently running with root permissions. This is not a good idea, and will still work perfectly well if it's run with the same user as Tor (ie, starting with "sudo -u debian-tor arm").
Yep.
https://trac.torproject.org/projects/tor/ticket/10702
Damian is planning to revise arm at some point, but at least this part of it has been frozen without much development for a long time now.
If you want to help out, this might be a good opportunity. :)
--Roger