Re: Filesystem Capabilities in 2.6?

From: Hacksaw (hacksaw@hacksaw.org)
Date: Sun Nov 03 2002 - 05:50:24 EST


>As a sysadmin, this should be about 20 seconds with your favourite editor
>to create a "setcap" shell script.

Ville Herva pointed out that it'd be modifying in core structures, so maybe it
is the right thing to do. I do like the idea of every setuid file needing to
be listed in one place.

I still find "mount --bind --capability=xx,yy /usr/bin/foo /usr/bin/foo" to be
a strange syntax. It implies that one is mounting /usr/bin/foo over
/usr/bin/foo, and adding the xx,yy capabilities.

-- 
What we hear is the way that we hear.
http://www.hacksaw.org -- http://www.privatecircus.com -- KB1FVD

- To unsubscribe from this list: send the line "unsubscribe linux-kernel" in the body of a message to majordomo@vger.kernel.org More majordomo info at http://vger.kernel.org/majordomo-info.html Please read the FAQ at http://www.tux.org/lkml/



This archive was generated by hypermail 2b29 : Thu Nov 07 2002 - 22:00:28 EST