Skip to content

Comment on Bringing Memory Safety to sudo and su

Comments

Will this replace the current sudo ?

There's always doas[1] if you want a simpler, safer version.

[1] https://en.wikipedia.org/wiki/Doas

Still written in an insecure language.

No such thing as an insecure language, only insecure programmers.

Imagine applying that same line of logic to any other kind of safety. "Airbags are pointless, just don't crash"

The reality is that all programmers are insecure programmers. The ones arrogant enough to think they are not insecure are the most dangerous.

The ones arrogant enough to think they are not insecure

To be fair, I think the OpenBSD people have demonstrated they're pretty capable at writing decently secure software in C.

Lord... name checks out though.

It’s a separate project. We’ll see if/when these new Rust-based versions become good enough for people to adopt as their daily driver sudo/su.

I am sure they'll use the same name, though. Hard to come up with a name for this one.

rsu, rsudo

surs, sudors (and then /etc/sudorsers as the cherry on top)

endorse surrogate

I don't know. But if its a drop-in replacement, which aims compatibility, then the same name seems OK. And for most use-cases, this will be a drop-in replacement. Except for obscure configs. But I think that's OK. If your goal is world domination, you aim for the low hanging fruit first.

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.