Repository navigation
Replies: 1 comment
|
Thanks for the detailed writeup! I'd go with option 2 (
Not fond of option 1: a world-readable file carrying the server password is bad hygiene, even if the practical impact is only "any local user can use your proxy". If any packager sees a problem with the v245 floor, please speak up. |
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Uh oh!
There was an error while loading. Please reload this page.
shadowsocks-rust/debian/shadowsocks-rust-server@.service
Line 18 in f23366d
Currently in order to have access to the config file when it's run as
DynamicUser, it's kinda assumed that the config will be readable by anyone. This is uncommon for files that contain secrets (e.g. WG / SSH private keys), in this case thepassword.So far I've found 3 solutions.
LoadCredential=. This will copy the config to the private credential store and make it accessible to theDynamicUSer. But this has a 1MB file size limit. And I'm not too confident that this won't break if someone didn't install some component of systemd.DynamicUserbut add back its hardening. This requires downstream packaging to create a dedicated user, and make it more troublesome to use the systemd unit manually (on distros that don't package ss-rust).Pls share if you have better ideas!
All reactions