Wireshark-dev: Re: [Wireshark-dev] [Fwd: [Wireshark-bugs] [Bug 1741] New: Privilege separation
From: Joerg Mayer <[email protected]>
Date: Tue, 14 Aug 2007 09:03:36 +0200
On Mon, Aug 13, 2007 at 02:58:10PM -0700, Gerald Combs wrote:
> I've submitted a patch which implements some of the changes discussed at
> http://wiki.wireshark.org/Development/PrivilegeSeparation . If no one
> has any objections I'd like to check it in later this week.

I'm afraid you lost me with this patch: 

I understand the wireshark capture model correctly, wireshark
doesn't need root privileges even now because capturing can be done by
dumpcap, and thus wireshark should never be installed suid root. This
is reflected by configure.in. Is there a specific reason why this line
of work isn't enforced and adapted to tshark as well?

Joerg Mayer                                           <[email protected]>
We are stuck with technology when what we really want is just stuff that
works. Some say that should read Microsoft instead of technology.