[tor-bugs] #15220 [Tor]: Allow SocksSockets writable by arbitrary user

Tor Bug Tracker & Wiki blackhole at torproject.org
Tue Mar 10 21:59:42 UTC 2015


#15220: Allow SocksSockets writable by arbitrary user
-----------------------------+-----------------
     Reporter:  sysrqb       |      Owner:
         Type:  enhancement  |     Status:  new
     Priority:  normal       |  Milestone:
    Component:  Tor          |    Version:
   Resolution:               |   Keywords:
Actual Points:               |  Parent ID:
       Points:               |
-----------------------------+-----------------
Description changed by sysrqb:

Old description:

> #12585 implemented SocksSocket, thus allowing proxying INET connections
> over a unix socket. Unfortunately, the only options allows this
> SocksSocket to be accessable to the Tor user, or at best, the Tor group
> (i.e. debian-tor). This makes is quite unuseful for normal users who
> aren't usually members of that group. Perhaps a new config option should
> be added which specifies the socket ownership, or append it to the end of
> the SocksSocket line.

New description:

 #12585 implemented SOCKSPort unix socket support, thus allowing proxying
 inet connections over a unix socket. Unfortunately, the config options
 only this SOCKSPort to be accessable for the Tor user, or at best, the Tor
 group (i.e. debian-tor). This makes it quite unuseful for normal users who
 aren't usually members of that group. Perhaps a new config option should
 be added which specifies the file socket ownership.

 (dgoulet reminded me SocksSocket was merged into SocksPort)

--

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/15220#comment:5>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list