Re: [mod-security-users] mod-security, SecChroot & suexec
Brought to you by:
victorhora,
zimmerletw
From: Jinn K. <mod...@ma...> - 2005-10-17 22:56:05
|
I read somewhere from google that strace doesn't work because of the mod-security chroot setup. Would it be any use to provide the end of the strace output for others to review and see why it may not be working? It's only when I add the SecChrootDir that strace apache bombs out when it's strace'd. I understand if you don't want to go that far. Thanks for your help so far. Jinn Ivan Ristic wrote: > Jinn Koriech wrote: > >> No luck, I even tried all the other libs on p46 (PDF p33). These >> included: >> >> "/usr/lib/apache2/suexec2", "/lib/libnss_files.so*", "/bin/ls", >> "/etc/nsswitch.conf", "/etc/passwd", "/etc/group", "/etc/shadow", >> "/lib/libnss_dns*", "/etc/hosts", "/etc/resolv.conf", "/etc/localtime" >> >> plus: >> >> packages=["perl", "perl-base", "perl-modules", "rcs", "imagemagick", >> "libnss-db"] >> >> >> Same error appears: >> >> [Mon Oct 17 23:40:45 2005] [error] [client w.x.y.z] Premature end of >> script headers: test >> >> *** suexec.log ***[2005-10-17 23:40:45]: crit: invalid uid: (33) >> >> Any other ideas? > > > No. You should try to get strace to work, and then you would be > able to see what is that suexec is attempting (and failing) > to access. > |