Article: 597
From: Anthony Howe
Date: 2005-06-02 17:46:44 -0400
Subject: Re: Milter-Gris issue

Bedard, Joe wrote:
> P.S.
> The "minimum desired file ownership and permissions" section of your
> page still shows smmsp 
> http://www.milter.info/sendmail/milter-gris/#Installation 

Thats because when sendmaail is started as a MSA, it needs to read 
access.db too and sendmail-msa runs as smmsp. This is why access.db is 
typically read-only by smmsp and in the comments just above the summary 
of permissions I explain that a milter user is created and added to the 
group smmsp.

Process user ``milter'' is primary member of group ``milter'' and 
secondary member of group ``smmsp''. Note that the milter should be 
started as root, so that it can create a .pid file and .socket file in 
/var/run; after which it will switch process ownership to milter:milter 
before starting the accept socket thread.

	make install

which runs install.sh takes care of all this. At least it should. The 
process was tested on an old RH Linux and OpenBSD by myself, and a 
FreeBSD by some others.

