[Date Prev][Date Next]
(ITS#7948) mdb_copy insecure permissions
Full_Name: Geert Hendrickx
Submission from: (NULL) (22.214.171.124)
mdb_copy creates a copy using the default umask. This usually leads to insecure
(world readable) copies, as typically an LDAP databse is 600 owned by some
unprivileged ldap user.
I suggest to copy the behaviour of cp, scp, rsync etc: preserve mode by default,
preserve all metadata (uid:gid, mode, mtime, atime ...) when invoked with -p ?