Posted Nov 30, 2006 13:14 UTC (Thu) by jospoortvliet
In reply to: File-based capabilities
Parent article: File-based capabilities
indeed. i guess it wouldn't be very hard to apply certain basic
restrictions, making the system more secure, without hampering it's use.
i do find it hard to grasp the (details of the) difference between SElinux
(and friends) and these capabilities, tough. as i read about it, i wonder
why SElinux couldn't use these capabilities?
to post comments)