14 Apr '13, 10am

@jcoglan None of that looks wrong to me. What makes you say it is? has details of Passenger user switching support.

2.1. Apache must already be running as root First, let us take a look at the typical Apache setup, in which Apache is bound to port 80, and uses the prefork MPM. Binding to any port lower than 1024 requires root privileges, so Apache is typically run as root. This poses an unacceptable security risk, so Apache’s prefork MPM will, upon receiving an HTTP request, spawn a child process with the privileges of a normal user, typically www-data or nobody . See the documentation for the prefork MPM - in particular the “User” and “Group” directives - for details. The process which is responsible for spawning child processes (also called the control process) is run as root. This is also true for the worker MPM . Since Passenger has access to the control process, in the typical Apache setup, Passenger can already launch Rails applications as a different user. But now we have to ask ...

Full article: http://www.modrails.com/documentation/Security%20of%20use...

Tweets

@jcoglan I use Passenger user switching to run ...

modrails.com 14 Apr '13, 11am

$ rvm use 1.8.7 $ /opt/passenger/bin/passenger-config --ruby-command passenger-config was invoked through the following Ru...

Phusion Passenger users guide, Apache version:

modrails.com 15 Apr '13, 1am

It is very hard to obtain a full list of web applications defined in the Apache configuration file(s). In other words, it’...

Integration testing in the absurd land of Rails...

guides.rubyonrails.org 15 Apr '13, 12pm

Testing support was woven into the Rails fabric from the beginning. It wasn’t an “oh! let’s bolt on support for running te...

@jcoglan And you can override that behaviour in...

modrails.com 14 Apr '13, 10am

$ rvm use 1.8.7 $ /opt/passenger/bin/passenger-config --ruby-command passenger-config was invoked through the following Ru...

#SecDef: “@DeptofDefense is prepared to respond...

defense.gov 16 Apr '13, 5pm

Hagel Says DOD Will Provide Support After ‘Cruel Act of Terror’ By Jim Garamone American Forces Press Service WASHINGTON, ...