Commit b1ea672c authored by Stratos Psomadakis's avatar Stratos Psomadakis
Browse files

Suggest running vncauthproxy as nobody:www-data

Running vncauthproxy as nobody:www-data makes more sense. We have better
privilege separation between apache2/gunicorn and vncauthproxy, while
gunicorn can still to connect to the vncauthproxy's control socket.

When/if vncauthproxy starts using TCP ctrl sockets instead of UNIX, this
could be omitted entirely.

We could also consider adding a separate user/group for vncauhtproxy.
parent 8e368892
......@@ -1801,7 +1801,7 @@ Edit ``/etc/default/vncauthproxy``:
.. code-block:: console
CHUID="www-data:nogroup"
CHUID="nobody:www-data"
We have now finished with the basic Cyclades and Plankton configuration.
......
Markdown is supported
0% or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment