My understanding of the setuid/setguid stanza's in upstart 1.4 is that they should emulate what start-stop-daemon/daemon and suchlike do with regards to dropping privileges.
At the moment the stanza's apply to all script blocks (not just the main exec one) which makes it hard to setup /var/run directories etc.. which normally need to be created by root, not the owner of the application.
My understanding of the setuid/setguid stanza's in upstart 1.4 is that they should emulate what start-stop- daemon/ daemon and suchlike do with regards to dropping privileges.
At the moment the stanza's apply to all script blocks (not just the main exec one) which makes it hard to setup /var/run directories etc.. which normally need to be created by root, not the owner of the application.