ÎÞÂÛÊÇ·þÎñÆ÷¹ÜÀí¡¢Èí¼þ¿ª·¢»¹ÊÇÈÕ³£Ê¹Óã¬Àí½âºÍÊìÁ·ÔËÓÃLinuxµÄÎļþȨÏÞ»úÖÆ£¬¶¼ÊÇÈ·±£ÏµÍ³Îȶ¨ÔËÐкÍÊý¾Ý°²È«µÄ¹Ø¼ü
±¾ÎĽ«ÉîÈë̽ÌÖLinuxÎļþȨÏ޵ĸÅÄî¡¢ÉèÖ÷½·¨¡¢Êµ¼ÊÓ¦ÓÃÒÔ¼°ÈçºÎͨ¹ýȨÏÞ¹ÜÀíÀ´ÌáÉýϵͳ°²È«ÐÔ
Ò»¡¢LinuxÎļþȨÏÞ»ù´¡ LinuxϵͳµÄÎļþȨÏÞÄ£ÐÍ»ùÓÚÓû§£¨User£©¡¢×飨Group£©ºÍÆäËûÈË£¨Others£©Èý¸ö²ã´Î
ÿ¸öÎļþºÍĿ¼¶¼ÓÐÓëÖ®¹ØÁªµÄȨÏÞÉèÖ㬾ö¶¨ÁËË¿ÉÒÔ¶ÁÈ¡£¨read, r£©¡¢Ð´È루write, w£©ºÍÖ´ÐУ¨execute, x£©ÕâЩÎļþºÍĿ¼
1.Óû§£¨User£©£ºÎļþ»òĿ¼µÄËùÓÐÕߣ¬ÓµÓÐ×î¸ßȨÏÞ
2.×飨Group£©£ºÎļþ»òĿ¼ËùÊôµÄÓû§×飬×éÄÚ³ÉÔ±¹²ÏíÌØ¶¨È¨ÏÞ
3.ÆäËûÈË£¨Others£©£ºÏµÍ³ÉϵÄËùÓÐÆäËûÓû§£¬ÓµÓÐ×îµÍµÄȨÏÞ¼¶±ð
ͨ¹ý`ls -l`ÃüÁî¿ÉÒԲ鿴Îļþ»òĿ¼µÄÏêϸȨÏÞÐÅÏ¢
Êä³öʾÀýÈçÏ£º -rwxr-xr-- 1 user group 1234 Jan 1 12:34 example.txt ÕâÀ`-rwxr-xr--`±íʾÎļþµÄȨÏÞÉèÖã¬ÆäÖУº - µÚÒ»¸ö×Ö·û±íʾÎļþÀàÐÍ£¨-±íʾÆÕͨÎļþ£¬`d`±íʾĿ¼£¬`l`±íʾÁ´½ÓµÈ£©
- ½ÓÏÂÀ´µÄÈý×é×Ö·û·Ö±ð¶ÔÓ¦Óû§¡¢×éºÍÆäËûÈ˵ÄȨÏÞ£º -`rwx`£ºÓû§ÓµÓжÁ¡¢Ð´ºÍÖ´ÐÐȨÏÞ
-`r-x`£º×éÓû§ÓµÓжÁºÍÖ´ÐÐȨÏÞ£¬µ«Ã»ÓÐдȨÏÞ
-`r--`£ºÆäËûÈËÖ»ÓжÁȨÏÞ
¶þ¡¢ÉèÖúÍÐÞ¸ÄÎļþȨÏÞ LinuxÌṩÁ˶àÖÖ¹¤¾ßÀ´ÉèÖúÍÐÞ¸ÄÎļþȨÏÞ£¬×î³£ÓõİüÀ¨`chmod`ºÍ`chown`ÃüÁî
1.chmodÃüÁÓÃÓڸıäÎļþ»òĿ¼µÄȨÏÞ
-·ûºÅģʽ£ºÍ¨¹ý·ûºÅ£¨u¡¢g¡¢o·Ö±ð´ú±íÓû§¡¢×é¡¢ÆäËûÈË£©+ȨÏÞ£¨r¡¢w¡¢x£©À´ÉèÖÃ
```bash chmod u+x example.txt ¸øÓû§Ìí¼ÓÖ´ÐÐȨÏÞ chmod g-w example.txt ÒÆ³ý×éµÄдȨÏÞ chmod o=r example.txt ÉèÖÃÆäËûÈËÖ»ÓжÁȨÏÞ ``` -Êý×Öģʽ£ºÊ¹ÓÃÊý×Ö±íʾȨÏÞ£¬Ã¿¸öÊý×ÖÊÇr¡¢w¡¢xÈý¸öȨÏ޵ĺͣ¨4+2+1=7±íʾrwx£©
```bash chmod 755 example.txt Óû§rwx£¬×ér-x£¬ÆäËûÈËr-x ``` 2.chownÃüÁÓÃÓڸıäÎļþ»òĿ¼µÄËùÓÐÕߺÍ×é
bash chown user:group example.txt ¸Ä±äÎļþµÄËùÓÐÕßΪuser£¬×éΪgroup chown user example.txt# ½ö¸Ä±äÎļþµÄËùÓÐÕß 3.ÌØÊâȨÏÞ£º³ýÁË»ù±¾È¨ÏÞÍ⣬Linux»¹Ö§³ÖÒ»Ð©ÌØÊâȨÏÞ£¬ÈçSUID£¨Set User ID£©¡¢SGID£¨Set Group ID£©ºÍSticky Bit
-SUID£ºµ±Ö´ÐÐÎļþʱ£¬½ø³Ì½«ÒÔÎļþËùÓÐÕßµÄȨÏÞÔËÐÐ
```bash chmod u+s executable ÉèÖÃSUID ``` -SGID£º¶ÔÓÚĿ¼£¬SGIDÒâζ×Åд´½¨µÄÎļþ½«¼Ì³Ð¸¸Ä¿Â¼µÄ×飻¶ÔÓÚ¿ÉÖ´ÐÐÎļþ£¬½ø³Ì½«ÒÔÎļþËùÊô×éµÄȨÏÞÔËÐÐ
```bash chmod g+s directory ÉèÖÃSGID£¨Ä¿Â¼£© chmod g+s executable ÉèÖÃSGID£¨¿ÉÖ´ÐÐÎļþ£© ``` -Sticky Bit£º½ö¶ÔĿ¼ÓÐЧ£¬Òâζ×ÅÖ»ÓÐÎļþµÄËùÓÐÕß¡¢Ä¿Â¼µÄËùÓÐÕß»ò³¬¼¶Óû§²ÅÄÜɾ³ý»òÖØÃüÃûĿ¼ÖеÄÎļþ
```bash chmod +t directory ÉèÖÃSticky Bit ``` Èý¡¢Êµ¼ÊÓ¦ÓÃÖеÄȨÏÞ¹ÜÀí ÔÚʵ¼ÊÓ¦ÓÃÖУ¬ºÏÀíµÄȨÏÞÉèÖÃÊÇά»¤ÏµÍ³°²È«ºÍÎȶ¨ÐԵĻùʯ
ÒÔÏÂÊÇһЩ³£¼ûµÄÓ¦Óó¡¾°ºÍ×î¼Ñʵ¼ù£º 1.Web·þÎñÆ÷ÅäÖ㺠- È·±£Web¸ùĿ¼¼°Æä×ÓĿ¼²»ÔÊÐíÖ´Ðнű¾£¨³ý·Ç±ØÒª£©£¬ÒÔ·ÀÖ¹Ô¶³Ì´úÂëÖ´Ðй¥»÷
- ÅäÖÃÎļþÓ¦ÉèÖÃΪ½öroot¿É¶Áд£¬±ÜÃâÃô¸ÐÐÅϢй¶
- ʹÓÃApache»òNginxµÄȨÏÞ¿ØÖƹ¦ÄÜ£¬ÏÞÖÆ¶ÔÌØ¶¨×ÊÔ´µÄ·ÃÎÊ
2.Óû§Ä¿Â¼¹ÜÀí£º - ÿ¸öÓû§Ó¦ÓжÀÁ¢µÄ¼ÒĿ¼£¬ÇÒ¼ÒĿ¼µÄȨÏÞÓ¦ÉèÖÃΪ755»ò¸üÑϸñ£¬ÒÔ±£»¤Óû§Êý¾Ý²»±»ÆäËûÓû§ÇáÒ×·ÃÎÊ
- Ãô¸ÐÎļþ£¨Èç˽Կ¡¢ÃÜÂëÎļþ£©Ó¦ÉèÖÃΪ½öÓû§±¾È˿ɶÁд£¨600ȨÏÞ£©
3.¹²ÏíĿ¼ÓëÐ×÷£º - ʹÓÃSGIDÉèÖù²ÏíĿ¼£¬È·±£Ð´´½¨µÄÎļþ¼Ì³Ð¸¸Ä¿Â¼µÄ×飬±ãÓÚÍŶÓÐ×÷
- ¸ù¾ÝÐèÒªÉèÖÃĿ¼µÄ¶ÁдȨÏÞ£¬È·±£Êý¾Ý¹²ÏíµÄͬʱ²»Ð¹Â¶Ãô¸ÐÐÅÏ¢
4.ϵͳÈÕÖ¾Ó밲ȫÉ󼯣º - ϵͳÈÕÖ¾ÎļþÓ¦ÉèÖÃΪ½öroot¿É¶Áд£¬ÒÔ·ÀÖ¹´Û¸Ä»òй¶
- ¶¨ÆÚÉó²éϵͳȨÏÞÉèÖã¬È·±£Ã»Óв»±ØÒªµÄ¿íËÉȨÏÞÅäÖÃ
5.¶¨ÆÚ±¸·ÝÓë»Ö¸´²ßÂÔ£º - ±¸·ÝÎļþÓ¦´æ´¢ÔÚ°²È«µÄλÖã¬ÇÒȨÏÞÉèÖÃÓ¦·Àֹδ¾ÊÚȨµÄ·ÃÎÊ
- ±¸·Ý»Ö¸´Ç°£¬¼ì²é»Ö¸´»·¾³µÄȨÏÞÉèÖã¬È·±£Êý¾Ý»Ö¸´ºó²»»áÒýÈëÐµİ²È«·çÏÕ
ËÄ¡¢Í¨¹ýȨÏÞ¹ÜÀíÌáÉýϵͳ°²È«ÐÔ 1.×îСȨÏÞÔÔò£ºÎªÃ¿¸öÓû§ºÍ·þÎñ·ÖÅä×îС±ØÒªÈ¨ÏÞ£¬¼õÉÙDZ