PERFORCE change 148363 for review

Robert Watson rwatson at FreeBSD.org
Mon Aug 25 09:03:50 UTC 2008


http://perforce.freebsd.org/chv.cgi?CH=148363

Change 148363 by rwatson at rwatson_freebsd_capabilities on 2008/08/25 09:03:33

	Remove a todo item to add a privilege to escape from capability
	mode: that's not desired.

Affected files ...

.. //depot/projects/trustedbsd/capabilities/TODO#8 edit

Differences ...

==== //depot/projects/trustedbsd/capabilities/TODO#8 (text+ko) ====

@@ -38,8 +38,6 @@
   diverse set of rights.  Should we do something more fine-grained and
   request a specific capability based on arguments and other context?
 
-- Should there be a priv(9) privilege to expand capability rights?  (no)
-
 - Refine access control on sysctl infrastructure sysctls, such as name
   lookup, etc.
 


More information about the p4-projects mailing list