Re: [GMG-Devel] Fwd: Re: Media directory permissions

From: Sebastian Hugentobler
Subject: Re: [GMG-Devel] Fwd: Re: Media directory permissions
Date: Tue, 19 May 2015 09:34:46 +0200
> I talked about it with Chris today, and we decided to go with the first
> option. I've updated the docs to create the mediagoblin system / user
> account with 'mediagoblin:www-data' / 'mediagoblin:nginx' permissions.
> It almost works. I think I've discovered that the user_dev directory
> does not give any permissions to group/other by default. It only gives
> permissions to the owner, and I think that is blocking the web server
> from accessing the media:
> drwx------.  4 mediagoblin nginx        4096 May 19 03:01 user_dev
> I understand that user_dev/crypto is important to keep private (so that
> would be appropriate to be set as 700), but the above default permission
> prevents access to user_dev/media (which is where all of the beautiful
> pictures get stored).  Somehow that permission is getting set by default
> in that manner during installation. I think that resolving that will fix
> media issues.
It definitely does, I am running my instance with these permissions
(sorry for not coming forward earlier, I overlooked this thread).
I will take a look at my ansible role to see if there's more I forgot to

