Stop (ab)using system groups for device permissions

Registered by Martin Pitt on 2008-05-26

NSS Groups should solely be for grouping people. They should not be used extensively to assign privileges to local device permissions, since this leads to proliferation of more and more groups, difficulties with maintaining those groups, and even more difficulties with maintaining them centrally in e. g. NIS or LDAP.

Blueprint information

Status:
Complete
Approver:
Scott James Remnant (Canonical)
Priority:
Medium
Drafter:
Martin Pitt
Direction:
Approved
Assignee:
Martin Pitt
Definition:
Approved
Series goal:
Accepted for intrepid
Implementation:
Implemented
Milestone target:
None
Started by
Martin Pitt on 2008-07-21
Completed by
Martin Pitt on 2008-09-03

Related branches

Sprints

Whiteboard

pitti, 20080925: everything implemented

(?)

Work Items

Dependency tree

* Blueprints in grey have been implemented.

This blueprint contains Public information 
Everyone can see this information.