¼ÓÈëÊÕ²Ø | ÉèΪÊ×Ò³ | »áÔ±ÖÐÐÄ | ÎÒҪͶ¸å À³ÎßÕ¾³¤Íø £¨https://www.0634zz.com/£©- ÔÆÁ¬½Ó¡¢½¨Õ¾¡¢ÖÇÄܱßÔµÔÆ¡¢É豸¹ÜÀí¡¢´óÊý¾Ý!
µ±Ç°Î»Ö㺠Ê×Ò³ > ×ۺϾ۽¹ > Linux > ÕýÎÄ

Ϊʲôchrootϵͳµ÷ÓöԷÇrootÓû§²»¿ÉÓã¿

·¢²¼Ê±¼ä£º2020-07-16 07:03:08 ËùÊôÀ¸Ä¿£ºLinux À´Ô´£º»¥ÁªÍø
µ¼¶Á£ºÎÒÔÚά»ù°Ù¿ÆÉÏÔĶÁÓйØsetuidµÄÃèÊö http://en.wikipedia.org/wiki/Setuid ÎÒÎÞ·¨Àí½âchrootÓësetuidÓÐʲô¹ØÏµ,Èçά»ù°Ù¿ÆµÄÒÔ϶ÎÂäËùÊö The presence of setuid executables explains why the chroot system call is not available to non-root users

ÎÒÔÚά»ù°Ù¿ÆÉÏÔĶÁÓйØsetuidµÄÃèÊö
http://en.wikipedia.org/wiki/Setuid

ÎÒÎÞ·¨Àí½âchrootÓësetuidÓÐʲô¹ØÏµ,Èçά»ù°Ù¿ÆµÄÒÔ϶ÎÂäËùÊö

The presence of setuid executables explains why the chroot system call
is not available to non-root users on Unix. See limitations of chroot
for more details.

½â¾ö·½·¨

Èç¹û·ÇÌØÈ¨Óû§¿ÉÒÔÔÚchroot jailÖÐÖ´ÐÐsetuid³ÌÐò,ËûÃÇ¿ÉÒÔСÐĵع¹Ôì¸Ã¼àÓüÒÔÆÛÆ­³ÌÐòÉý¼¶ÌØÈ¨.ÀýÈç,ÎÒ¿ÉÒÔ¹¹½¨Ò»¸öchroot jail,ÎÒ¿ÉÒÔÔÚÆäÖÐʹÓÃsudo,ÒòΪÎÒ¿ÉÒÔ¿ØÖƸÃjailÖеÄÿ¸öÅäÖÃÎļþ.

£¨±à¼­£ºÀ³ÎßÕ¾³¤Íø£©

¡¾ÉùÃ÷¡¿±¾Õ¾ÄÚÈݾùÀ´×ÔÍøÂ磬ÆäÏà¹ØÑÔÂÛ½ö´ú±í×÷Õ߸öÈ˹۵㣬²»´ú±í±¾Õ¾Á¢³¡¡£ÈôÎÞÒâÇÖ·¸µ½ÄúµÄȨÀû£¬Ç뼰ʱÓëÁªÏµÕ¾³¤É¾³ýÏà¹ØÄÚÈÝ!

    ÍÆ¼öÎÄÕÂ
      ÈȵãÔĶÁ