From: Wilfredo Sanchez Date: Thu, 21 Jul 2005 10:46:31 +0000 (+0000) Subject: Using the user nobody (or similar accounts on other systems like X-Git-Tag: 2.1.7~5^2~87 X-Git-Url: https://granicus.if.org/sourcecode?a=commitdiff_plain;h=18aa2b57f8487435a5c2a9802c733164d85b4b83;p=apache Using the user nobody (or similar accounts on other systems like nouser) violates the purpose of that user. User nobody exists specifically as a user that no process runs as and that owns no files on disk. Same for nogroup. The user and group daemon are the generic system services user and group. Use those instead. git-svn-id: https://svn.apache.org/repos/asf/httpd/httpd/trunk@220032 13f79535-47bb-0310-9956-ffa450edef68 --- diff --git a/docs/conf/httpd.conf.in b/docs/conf/httpd.conf.in index 286b20dbb4..cc5c22e93b 100644 --- a/docs/conf/httpd.conf.in +++ b/docs/conf/httpd.conf.in @@ -60,15 +60,11 @@ Listen @@Port@@ # httpd as root initially and it will switch. # # User/Group: The name (or #number) of the user/group to run httpd as. -# . On SCO (ODT 3) use "User nouser" and "Group nogroup". -# . On HPUX you may not be able to use shared memory as nobody, and the -# suggested workaround is to create a user www and use that user. -# NOTE that some kernels refuse to setgid(Group) or semctl(IPC_SET) -# when the value of (unsigned)Group is above 60000; -# don't use Group #-1 on these systems! -# -User nobody -Group #-1 +# It is usually good practice to create a dedicated user and group for +# running httpd, as with most system services. +# +User daemon +Group daemon