The capabilities-based solution
Posted Jan 17, 2005 23:17 UTC (Mon) by
Ross (subscriber, #4065)
In reply to:
The capabilities-based solution by giraffedata
Parent article:
Merging the realtime security module
One thing I have often wanted are capability flags for permissions which
aren't traditionally reserved for root. Things like opening sockets,
creating files, executing programs, running ptrace, forking, etc. I've
often wanted to take _away_ those capabilities but there really isn't a way
to do so...
(
Log in to post comments)