Local provider - isolating sudo usage

roger peppe roger.peppe at canonical.com
Fri Jan 24 10:38:00 UTC 2014


On 24 January 2014 01:14, Andrew Wilkins <andrew.wilkins at canonical.com> wrote:
> I removed this bits that chown to the user from the local provider. I can't,
> unfortunately, easily remove the only other remaining part: chowning the
> ~/.juju/ssh dir and keys. Suggestions welcome.

There's also a Chown in environs/configstore that I'd very much like to see go.

Could you expand on why it's hard to avoid chowning the ~/.juju/ssh dir
for someone that's not that familiar with this area?

AFAICS the writeAuthorizedKeys function that creates the directory
is called by AddKeys, which is called directly from cmd/juju, which
will be running as the correct user. What am I missing?

  cheers,
    rog.



More information about the Juju-dev mailing list