aegir
user) because they leverage Provision to write Apache virtualhosts and databases, which should never be allowed from the front-end.aegir
user.aegir
that has no extra permissions, except for the ability to call sudo apache2ctl
or sudo nginx
without a password, and the ability to connect to the root user of a MySQL database server.server_master
./var/aegir/config/apache.conf
contains includes to folders for the current server: