# sensitive data so needs non-standard permissions
chetcpasswd: non-standard-file-perm etc/chetcpasswd/chetcpasswd.allow 0400 != 0644

# setuid permissions to run
chetcpasswd: setuid-binary usr/lib/cgi-bin/chetcpasswd.cgi 4754 root/www-data
